SHARE
TWEET

LOGI OTL

a guest Jul 18th, 2018 276 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. OTL logfile created on: 18.07.2018 20:19:37 - Run 1
  2. OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\norbi\Downloads
  3. 64bit- An unknown product  (Version = 6.2.9200) - Type = NTWorkstation
  4. Internet Explorer (Version = 9.11.17134.0)
  5. Locale: 00000415 | Country: Polska | Language: PLK | Date Format: dd.MM.yyyy
  6.  
  7. 7,88 Gb Total Physical Memory | 4,80 Gb Available Physical Memory | 60,95% Memory free
  8. 9,38 Gb Paging File | 5,48 Gb Available in Paging File | 58,41% Paging File free
  9. Paging file location(s): ?:\pagefile.sys [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
  12. Drive C: | 930,40 Gb Total Space | 643,32 Gb Free Space | 69,14% Space Free | Partition Type: NTFS
  13.  
  14. Computer Name: NORBIK | User Name: norbi | Logged in as Administrator.
  15. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
  16. Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
  17.  
  18. [color=#E56717]========== Processes (SafeList) ==========[/color]
  19.  
  20. PRC - File not found --
  21. PRC - [2018.07.18 20:16:49 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\norbi\Downloads\OTL.exe
  22. PRC - [2018.07.18 19:22:12 | 000,288,848 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
  23. PRC - [2018.07.16 19:44:05 | 010,828,504 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
  24. PRC - [2018.05.07 23:04:43 | 000,468,824 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
  25. PRC - [2018.05.07 21:17:06 | 000,520,672 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
  26. PRC - [2018.04.12 01:34:51 | 000,661,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\fontdrvhost.exe
  27. PRC - [2017.11.23 12:57:07 | 009,105,112 | ---- | M] (Acer Cloud Technology) -- C:\Program Files\WindowsApps\AcerIncorporated.AcerPortal_1.1.9.0_x86__48frkmn4z8aw4\Acer Portal\acer\ccd.exe
  28. PRC - [2017.06.07 10:05:29 | 002,272,472 | ---- | M] (Acer Incorporated) -- C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
  29. PRC - [2017.06.06 10:26:12 | 000,419,984 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  30. PRC - [2017.06.06 10:22:50 | 000,197,264 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
  31. PRC - [2017.06.02 07:27:08 | 000,347,024 | ---- | M] (Windows (R) Win 7 DDK provider) -- C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
  32. PRC - [2017.04.10 00:34:38 | 000,194,048 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
  33.  
  34.  
  35. [color=#E56717]========== Modules (No Company Name) ==========[/color]
  36.  
  37. MOD - [2018.07.16 19:41:32 | 000,483,544 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\streamback.dll
  38. MOD - [2018.07.16 19:40:17 | 000,282,840 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
  39. MOD - [2018.04.17 11:00:15 | 067,126,928 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
  40.  
  41.  
  42. [color=#E56717]========== Services (SafeList) ==========[/color]
  43.  
  44. SRV:[b]64bit:[/b] - [2018.07.16 19:41:06 | 000,322,464 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
  45. SRV:[b]64bit:[/b] - [2018.07.16 19:40:41 | 007,780,400 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe -- (aswbIDSAgent)
  46. SRV:[b]64bit:[/b] - [2018.07.06 15:51:20 | 001,364,992 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\bcastdvruserservice.dll -- (BcastDVRUserService)
  47. SRV:[b]64bit:[/b] - [2018.07.06 09:25:47 | 000,885,856 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\CoreMessaging.dll -- (CoreMessagingRegistrar)
  48. SRV:[b]64bit:[/b] - [2018.07.06 08:58:32 | 000,091,136 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\moshost.dll -- (MapsBroker)
  49. SRV:[b]64bit:[/b] - [2018.07.06 08:56:06 | 000,784,896 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ngcsvc.dll -- (NgcSvc)
  50. SRV:[b]64bit:[/b] - [2018.07.06 08:55:30 | 001,395,712 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TokenBroker.dll -- (TokenBroker)
  51. SRV:[b]64bit:[/b] - [2018.06.15 07:21:57 | 000,761,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SecurityHealthService.exe -- (SecurityHealthService)
  52. SRV:[b]64bit:[/b] - [2018.06.15 06:42:29 | 003,392,512 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc)
  53. SRV:[b]64bit:[/b] - [2018.06.15 06:41:49 | 000,235,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
  54. SRV:[b]64bit:[/b] - [2018.06.15 06:41:36 | 000,266,752 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\CapabilityAccessManager.dll -- (camsvc)
  55. SRV:[b]64bit:[/b] - [2018.06.15 06:40:59 | 000,827,392 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\Windows.Internal.Management.dll -- (DmEnrollmentSvc)
  56. SRV:[b]64bit:[/b] - [2018.06.15 06:40:51 | 001,487,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\InstallService.dll -- (InstallService)
  57. SRV:[b]64bit:[/b] - [2018.06.15 06:39:52 | 000,684,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
  58. SRV:[b]64bit:[/b] - [2018.06.15 06:39:49 | 000,847,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
  59. SRV:[b]64bit:[/b] - [2018.06.15 06:38:03 | 000,949,248 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
  60. SRV:[b]64bit:[/b] - [2018.06.15 06:37:45 | 001,374,208 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\usocore.dll -- (UsoSvc)
  61. SRV:[b]64bit:[/b] - [2018.06.08 18:06:33 | 000,976,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\Spectrum.exe -- (spectrum)
  62. SRV:[b]64bit:[/b] - [2018.06.08 11:29:32 | 004,970,360 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\Windows.StateRepository.dll -- (StateRepository)
  63. SRV:[b]64bit:[/b] - [2018.06.08 11:00:02 | 000,149,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dssvc.dll -- (DsSvc)
  64. SRV:[b]64bit:[/b] - [2018.06.08 10:59:09 | 000,673,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FrameServer.dll -- (FrameServer)
  65. SRV:[b]64bit:[/b] - [2018.06.08 10:56:37 | 000,858,112 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FlightSettings.dll -- (wisvc)
  66. SRV:[b]64bit:[/b] - [2018.06.08 10:55:25 | 002,248,192 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
  67. SRV:[b]64bit:[/b] - [2018.06.08 10:55:04 | 000,667,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness)
  68. SRV:[b]64bit:[/b] - [2018.06.05 17:07:17 | 001,456,640 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WpcDesktopMonSvc.dll -- (WpcMonSvc)
  69. SRV:[b]64bit:[/b] - [2018.06.05 17:07:17 | 000,835,584 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\PhoneService.dll -- (PhoneSvc)
  70. SRV:[b]64bit:[/b] - [2018.06.05 17:07:11 | 003,086,336 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack)
  71. SRV:[b]64bit:[/b] - [2018.05.07 23:04:43 | 000,522,688 | ---- | M] (NVIDIA Corporation) [On_Demand | Stopped] -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -- (NvContainerNetworkService)
  72. SRV:[b]64bit:[/b] - [2018.05.07 23:04:43 | 000,522,688 | ---- | M] (NVIDIA Corporation) [On_Demand | Stopped] -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -- (NvContainerLocalSystem)
  73. SRV:[b]64bit:[/b] - [2018.05.07 21:17:06 | 000,520,672 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe -- (NVDisplay.ContainerLocalSystem)
  74. SRV:[b]64bit:[/b] - [2018.04.12 01:35:21 | 000,681,984 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\RDXService.dll -- (RetailDemo)
  75. SRV:[b]64bit:[/b] - [2018.04.12 01:35:21 | 000,427,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WalletService.dll -- (WalletService)
  76. SRV:[b]64bit:[/b] - [2018.04.12 01:35:21 | 000,400,896 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\Windows.Devices.Picker.dll -- (DevicePickerUserSvc)
  77. SRV:[b]64bit:[/b] - [2018.04.12 01:34:44 | 001,359,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lpasvc.dll -- (wlpasvc)
  78. SRV:[b]64bit:[/b] - [2018.04.12 01:34:43 | 000,824,832 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NaturalAuth.dll -- (NaturalAuthentication)
  79. SRV:[b]64bit:[/b] - [2018.04.12 01:34:43 | 000,637,440 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WFDSConMgrSvc.dll -- (WFDSConMgrSvc)
  80. SRV:[b]64bit:[/b] - [2018.04.12 01:34:43 | 000,590,336 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SmsRouterSvc.dll -- (SmsRouter)
  81. SRV:[b]64bit:[/b] - [2018.04.12 01:34:43 | 000,121,344 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
  82. SRV:[b]64bit:[/b] - [2018.04.12 01:34:42 | 000,712,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SharedRealitySvc.dll -- (SharedRealitySvc)
  83. SRV:[b]64bit:[/b] - [2018.04.12 01:34:41 | 000,088,064 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
  84. SRV:[b]64bit:[/b] - [2018.04.12 01:34:40 | 000,013,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
  85. SRV:[b]64bit:[/b] - [2018.04.12 01:34:39 | 000,219,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DiagSvc.dll -- (diagsvc)
  86. SRV:[b]64bit:[/b] - [2018.04.12 01:34:38 | 000,671,744 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
  87. SRV:[b]64bit:[/b] - [2018.04.12 01:34:37 | 000,303,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\TieringEngineService.exe -- (TieringEngineService)
  88. SRV:[b]64bit:[/b] - [2018.04.12 01:34:37 | 000,198,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum)
  89. SRV:[b]64bit:[/b] - [2018.04.12 01:34:34 | 001,273,344 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SensorDataService.exe -- (SensorDataService)
  90. SRV:[b]64bit:[/b] - [2018.04.12 01:34:33 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\PrintWorkflowService.dll -- (PrintWorkflowUserSvc)
  91. SRV:[b]64bit:[/b] - [2018.04.12 01:34:33 | 000,153,600 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\RMapi.dll -- (RmSvc)
  92. SRV:[b]64bit:[/b] - [2018.04.12 01:34:32 | 000,507,392 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
  93. SRV:[b]64bit:[/b] - [2018.04.12 01:34:25 | 000,058,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
  94. SRV:[b]64bit:[/b] - [2018.04.12 01:34:24 | 001,027,584 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\usermgr.dll -- (UserManager)
  95. SRV:[b]64bit:[/b] - [2018.04.12 01:34:24 | 000,081,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
  96. SRV:[b]64bit:[/b] - [2018.04.12 01:34:24 | 000,027,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC)
  97. SRV:[b]64bit:[/b] - [2018.04.12 01:34:23 | 000,167,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
  98. SRV:[b]64bit:[/b] - [2018.04.12 01:34:23 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe -- (diagnosticshub.standardcollector.service)
  99. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,773,632 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
  100. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,335,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NetSetupSvc.dll -- (NetSetupSvc)
  101. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,089,088 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
  102. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\svchost.exe -- (WpnUserService_325f0)
  103. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_325f0)
  104. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_325f0)
  105. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (PrintWorkflowUserSvc_325f0)
  106. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_325f0)
  107. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_325f0)
  108. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_325f0)
  109. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (DevicesFlowUserSvc_325f0)
  110. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (DevicePickerUserSvc_325f0)
  111. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\svchost.exe -- (CDPUserSvc_325f0)
  112. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (BluetoothUserService_325f0)
  113. SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,051,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (BcastDVRUserService_325f0)
  114. SRV:[b]64bit:[/b] - [2018.04.12 01:34:19 | 000,750,080 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\DevicesFlowBroker.dll -- (DevicesFlowUserSvc)
  115. SRV:[b]64bit:[/b] - [2018.04.12 01:34:19 | 000,195,584 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\Windows.SharedPC.AccountManager.dll -- (shpamsvc)
  116. SRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,712,192 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SensorService.dll -- (SensorService)
  117. SRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,514,048 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\BTAGService.dll -- (BTAGService)
  118. SRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,395,264 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\BthAvctpSvc.dll -- (BthAvctpSvc)
  119. SRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,057,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dmwappushsvc.dll -- (dmwappushservice)
  120. SRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,023,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\smphost.dll -- (smphost)
  121. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 001,495,040 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\UserDataService.dll -- (UserDataSvc)
  122. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 001,220,096 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\Unistore.dll -- (UnistoreSvc)
  123. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,582,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NgcCtnrSvc.dll -- (NgcCtnrSvc)
  124. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,463,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
  125. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,392,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WaaSMedicSvc.dll -- (WaaSMedicSvc)
  126. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,345,600 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
  127. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,307,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\EnterpriseAppMgmtSvc.dll -- (EntAppSvc)
  128. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,281,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
  129. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,280,576 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wpnservice.dll -- (WpnService)
  130. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,241,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tetheringservice.dll -- (icssvc)
  131. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,185,856 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\PimIndexMaintenance.dll -- (PimIndexMaintenanceSvc)
  132. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,176,128 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBrokerSvc)
  133. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,096,768 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\WpnUserService.dll -- (WpnUserService)
  134. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,058,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\xboxgipsvc.dll -- (XboxGipSvc)
  135. SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,044,544 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lfsvc.dll -- (lfsvc)
  136. SRV:[b]64bit:[/b] - [2018.04.12 01:34:10 | 001,248,768 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\SEMgrSvc.dll -- (SEMgrSvc)
  137. SRV:[b]64bit:[/b] - [2018.04.12 01:34:10 | 000,376,832 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService)
  138. SRV:[b]64bit:[/b] - [2018.04.12 01:34:10 | 000,262,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\PushToInstall.dll -- (PushToInstall)
  139. SRV:[b]64bit:[/b] - [2018.04.12 01:34:10 | 000,048,640 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\LicenseManagerSvc.dll -- (LicenseManager)
  140. SRV:[b]64bit:[/b] - [2018.04.12 01:34:10 | 000,033,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DevQueryBroker.dll -- (DevQueryBroker)
  141. SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 001,458,176 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dosvc.dll -- (DoSvc)
  142. SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 001,308,672 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XblGameSave.dll -- (XblGameSave)
  143. SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 000,167,424 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\embeddedmodesvc.dll -- (embeddedmode)
  144. SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\GraphicsPerfSvc.dll -- (GraphicsPerfSvc)
  145. SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 000,059,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\xbgmsvc.exe -- (xbgm)
  146. SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 000,031,744 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\Windows.WARP.JITService.dll -- (WarpJITSvc)
  147. SRV:[b]64bit:[/b] - [2018.04.12 01:34:07 | 001,115,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XblAuthManager.dll -- (XblAuthManager)
  148. SRV:[b]64bit:[/b] - [2018.04.12 01:34:07 | 000,092,160 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\tzautoupdate.dll -- (tzautoupdate)
  149. SRV:[b]64bit:[/b] - [2018.04.12 01:34:06 | 001,033,584 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ClipSVC.dll -- (ClipSVC)
  150. SRV:[b]64bit:[/b] - [2018.04.12 01:34:06 | 000,632,320 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cdpsvc.dll -- (CDPSvc)
  151. SRV:[b]64bit:[/b] - [2018.04.12 01:34:06 | 000,453,120 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\cdpusersvc.dll -- (CDPUserSvc)
  152. SRV:[b]64bit:[/b] - [2018.04.12 01:34:06 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AJRouter.dll -- (AJRouter)
  153. SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 001,148,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XboxNetApiSvc.dll -- (XboxNetApiSvc)
  154. SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,411,256 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\vac.dll -- (VacSvc)
  155. SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,356,352 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dusmsvc.dll -- (DusmSvc)
  156. SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,199,680 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\LanguageOverlayServer.dll -- (LxpSvc)
  157. SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,163,336 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SgrmBroker.exe -- (SgrmBroker)
  158. SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,052,224 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\MessagingService.dll -- (MessagingService)
  159. SRV:[b]64bit:[/b] - [2018.04.12 01:34:02 | 000,464,384 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\Microsoft.Bluetooth.UserService.dll -- (BluetoothUserService)
  160. SRV:[b]64bit:[/b] - [2018.04.12 01:34:02 | 000,063,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ipxlatcfg.dll -- (IpxlatCfgSvc)
  161. SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 002,197,408 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc)
  162. SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,309,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvcext.dll -- (vmicvss)
  163. SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,309,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvcext.dll -- (vmicrdv)
  164. SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvmsession)
  165. SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
  166. SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
  167. SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
  168. SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
  169. SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface)
  170. SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,060,320 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hvhostsvc.dll -- (HvHost)
  171. SRV:[b]64bit:[/b] - [2018.04.12 01:33:47 | 003,441,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
  172. SRV:[b]64bit:[/b] - [2018.04.10 23:05:00 | 000,324,608 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\APHostService.dll -- (OneSyncSvc)
  173. SRV:[b]64bit:[/b] - [2018.03.10 20:20:00 | 000,495,616 | ---- | M] () [Disabled | Stopped] -- C:\Windows\SysNative\OpenSSH\ssh-agent.exe -- (ssh-agent)
  174. SRV:[b]64bit:[/b] - [2017.08.01 03:25:46 | 000,613,368 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\igdlh64.inf_amd64_420c659363620fe7\IntelCpHDCPSvc.exe -- (cplspcon)
  175. SRV:[b]64bit:[/b] - [2017.08.01 03:25:46 | 000,397,304 | ---- | M] (Intel Corporation) [On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\igdlh64.inf_amd64_420c659363620fe7\IntelCpHeciSvc.exe -- (cphs)
  176. SRV:[b]64bit:[/b] - [2017.08.01 03:25:40 | 000,415,224 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\igdlh64.inf_amd64_420c659363620fe7\igfxCUIService.exe -- (igfxCUIService2.0.0.0)
  177. SRV:[b]64bit:[/b] - [2017.05.23 17:54:52 | 000,299,824 | ---- | M] (acer) [On_Demand | Stopped] -- C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe -- (UEIPSvc)
  178. SRV:[b]64bit:[/b] - [2017.04.10 00:34:38 | 000,194,048 | ---- | M] (Dolby Laboratories, Inc.) [Auto | Running] -- C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe -- (Dolby DAX2 API Service)
  179. SRV:[b]64bit:[/b] - [2017.02.25 03:21:10 | 000,548,648 | ---- | M] (Intel(R) Corporation) [Auto | Stopped] -- C:\Program Files\Intel\iCLS Client\TPMProvisioningService.exe -- (Intel(R)
  180. SRV:[b]64bit:[/b] - [2017.02.25 03:19:58 | 000,732,448 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
  181. SRV:[b]64bit:[/b] - [2012.11.08 12:34:30 | 000,126,856 | ---- | M] (HP) [Auto | Running] -- C:\Windows\SysNative\HPSIsvc.exe -- (HPSIService)
  182. SRV - [2018.07.18 19:14:55 | 000,194,512 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
  183. SRV - [2018.07.06 09:16:47 | 000,567,144 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\CoreMessaging.dll -- (CoreMessagingRegistrar)
  184. SRV - [2018.07.06 08:54:41 | 000,999,936 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\TokenBroker.dll -- (TokenBroker)
  185. SRV - [2018.06.20 14:07:36 | 006,875,688 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\BattlEye\BEService.exe -- (BEService)
  186. SRV - [2018.06.15 06:46:52 | 000,593,408 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Windows.Internal.Management.dll -- (DmEnrollmentSvc)
  187. SRV - [2018.06.15 06:43:37 | 001,110,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\InstallService.dll -- (InstallService)
  188. SRV - [2018.06.08 11:09:43 | 004,469,832 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\Windows.StateRepository.dll -- (StateRepository)
  189. SRV - [2018.06.08 10:54:26 | 000,729,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\FlightSettings.dll -- (wisvc)
  190. SRV - [2018.06.01 21:02:10 | 001,672,992 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
  191. SRV - [2018.05.07 23:04:43 | 000,468,824 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe -- (NvTelemetryContainer)
  192. SRV - [2018.04.18 10:47:45 | 000,775,296 | ---- | M] (EasyAntiCheat Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe -- (EasyAntiCheat)
  193. SRV - [2018.04.15 12:44:50 | 004,633,248 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.14.17613.18039-0\NisSrv.exe -- (WdNisSvc)
  194. SRV - [2018.04.15 12:44:50 | 000,104,680 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.14.17613.18039-0\MsMpEng.exe -- (WinDefend)
  195. SRV - [2018.04.12 01:35:22 | 000,312,832 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysWOW64\Windows.Devices.Picker.dll -- (DevicePickerUserSvc)
  196. SRV - [2018.04.12 01:34:57 | 000,138,240 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysWOW64\PrintWorkflowService.dll -- (PrintWorkflowUserSvc)
  197. SRV - [2018.04.12 01:34:45 | 000,965,632 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysWOW64\Unistore.dll -- (UnistoreSvc)
  198. SRV - [2018.04.12 01:34:45 | 000,072,192 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysWOW64\tzautoupdate.dll -- (tzautoupdate)
  199. SRV - [2018.04.12 01:34:45 | 000,020,992 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\smphost.dll -- (smphost)
  200. SRV - [2018.04.12 01:33:47 | 003,441,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
  201. SRV - [2017.08.01 03:25:46 | 000,613,368 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_420c659363620fe7\IntelCpHDCPSvc.exe -- (cplspcon)
  202. SRV - [2017.08.01 03:25:46 | 000,397,304 | ---- | M] (Intel Corporation) [On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_420c659363620fe7\IntelCpHeciSvc.exe -- (cphs)
  203. SRV - [2017.08.01 03:25:40 | 000,415,224 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_420c659363620fe7\igfxCUIService.exe -- (igfxCUIService2.0.0.0)
  204. SRV - [2017.06.09 00:45:44 | 002,413,720 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\IAStorAfsService\iaStorAfsService.exe -- (iaStorAfsService)
  205. SRV - [2017.06.07 10:05:29 | 002,272,472 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe -- (CCDMonitorService)
  206. SRV - [2017.06.06 10:26:12 | 000,419,984 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
  207. SRV - [2017.06.06 10:22:50 | 000,197,264 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)
  208. SRV - [2017.06.02 07:27:08 | 000,347,024 | ---- | M] (Windows (R) Win 7 DDK provider) [Auto | Running] -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe -- (AtherosSvc)
  209.  
  210.  
  211. [color=#E56717]========== Driver Services (SafeList) ==========[/color]
  212.  
  213. DRV:[b]64bit:[/b] - [2018.07.16 19:42:06 | 000,211,160 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswStm.sys -- (aswStm)
  214. DRV:[b]64bit:[/b] - [2018.07.16 19:42:05 | 000,463,080 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
  215. DRV:[b]64bit:[/b] - [2018.07.16 19:42:05 | 000,381,584 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
  216. DRV:[b]64bit:[/b] - [2018.07.16 19:42:04 | 000,159,640 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
  217. DRV:[b]64bit:[/b] - [2018.07.16 19:42:04 | 000,085,968 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
  218. DRV:[b]64bit:[/b] - [2018.07.16 19:42:04 | 000,046,976 | ---- | M] (AVAST Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)
  219. DRV:[b]64bit:[/b] - [2018.07.16 19:42:03 | 000,197,160 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswArPot.sys -- (aswArPot)
  220. DRV:[b]64bit:[/b] - [2018.07.16 19:42:03 | 000,015,360 | ---- | M] (AVAST Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\aswElam.sys -- (aswElam)
  221. DRV:[b]64bit:[/b] - [2018.07.16 19:42:00 | 000,111,872 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
  222. DRV:[b]64bit:[/b] - [2018.07.16 19:40:49 | 001,027,728 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
  223. DRV:[b]64bit:[/b] - [2018.07.16 19:40:23 | 000,239,680 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswHdsKe.sys -- (aswHdsKe)
  224. DRV:[b]64bit:[/b] - [2018.07.16 19:40:10 | 000,346,664 | ---- | M] (AVAST Software) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\aswbloga.sys -- (aswblog)
  225. DRV:[b]64bit:[/b] - [2018.07.16 19:40:10 | 000,201,328 | ---- | M] (AVAST Software) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\aswbidsha.sys -- (aswbidsh)
  226. DRV:[b]64bit:[/b] - [2018.07.16 19:40:10 | 000,059,592 | ---- | M] (AVAST Software) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\aswbuniva.sys -- (aswbuniv)
  227. DRV:[b]64bit:[/b] - [2018.07.16 19:40:09 | 000,229,392 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswbidsdrivera.sys -- (aswbidsdriver)
  228. DRV:[b]64bit:[/b] - [2018.06.15 09:11:00 | 000,611,232 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport)
  229. DRV:[b]64bit:[/b] - [2018.06.15 09:10:52 | 000,048,544 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storufs.sys -- (storufs)
  230. DRV:[b]64bit:[/b] - [2018.06.15 07:08:16 | 001,921,944 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\SysNative\drivers\refs.sys -- (ReFS)
  231. DRV:[b]64bit:[/b] - [2018.06.15 07:08:14 | 000,072,768 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\WindowsTrustedRT.sys -- (WindowsTrustedRT)
  232. DRV:[b]64bit:[/b] - [2018.06.15 07:08:05 | 000,945,568 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\SysNative\drivers\refsv1.sys -- (ReFSv1)
  233. DRV:[b]64bit:[/b] - [2018.06.15 06:44:07 | 000,295,424 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xboxgip.sys -- (xboxgip)
  234. DRV:[b]64bit:[/b] - [2018.06.08 12:31:08 | 000,029,600 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI)
  235. DRV:[b]64bit:[/b] - [2018.06.08 11:31:16 | 000,226,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Ucx01000.sys -- (Ucx01000)
  236. DRV:[b]64bit:[/b] - [2018.06.08 11:30:50 | 000,565,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3)
  237. DRV:[b]64bit:[/b] - [2018.06.08 11:29:39 | 000,164,768 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS)
  238. DRV:[b]64bit:[/b] - [2018.06.08 10:58:46 | 000,781,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WdiWiFi.sys -- (wdiwifi)
  239. DRV:[b]64bit:[/b] - [2018.06.05 17:07:11 | 000,382,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS)
  240. DRV:[b]64bit:[/b] - [2018.06.05 17:07:11 | 000,105,368 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme)
  241. DRV:[b]64bit:[/b] - [2018.05.15 23:53:52 | 000,031,000 | ---- | M] (Acer Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMDriver.sys -- (LMDriver)
  242. DRV:[b]64bit:[/b] - [2018.05.15 23:53:52 | 000,025,368 | ---- | M] (Acer Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RadioShim.sys -- (RadioShim)
  243. DRV:[b]64bit:[/b] - [2018.05.08 23:22:24 | 017,168,744 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\nvaci.inf_amd64_cc52f31649b86d4b\nvlddmkm.sys -- (nvlddmkm)
  244. DRV:[b]64bit:[/b] - [2018.05.07 23:04:43 | 000,059,240 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible)
  245. DRV:[b]64bit:[/b] - [2018.05.07 23:04:43 | 000,058,816 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvhci.sys -- (nvvhci)
  246. DRV:[b]64bit:[/b] - [2018.05.07 23:04:43 | 000,031,168 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms)
  247. DRV:[b]64bit:[/b] - [2018.04.26 14:06:58 | 000,035,560 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AppleLowerFilter.sys -- (AppleLowerFilter)
  248. DRV:[b]64bit:[/b] - [2018.04.26 14:06:58 | 000,020,640 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AppleKmdfFilter.sys -- (AppleKmdfFilter)
  249. DRV:[b]64bit:[/b] - [2018.04.15 12:44:51 | 000,311,848 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wd\WdFilter.sys -- (WdFilter)
  250. DRV:[b]64bit:[/b] - [2018.04.15 12:44:51 | 000,060,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wd\WdNisDrv.sys -- (WdNisDrv)
  251. DRV:[b]64bit:[/b] - [2018.04.15 12:44:51 | 000,046,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wd\WdBoot.sys -- (WdBoot)
  252. DRV:[b]64bit:[/b] - [2018.04.12 17:53:58 | 000,037,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
  253. DRV:[b]64bit:[/b] - [2018.04.12 17:53:57 | 000,057,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpatialGraphFilter.sys -- (SpatialGraphFilter)
  254. DRV:[b]64bit:[/b] - [2018.04.12 17:53:55 | 000,030,616 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
  255. DRV:[b]64bit:[/b] - [2018.04.12 01:34:43 | 000,119,808 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\irda.sys -- (irda)
  256. DRV:[b]64bit:[/b] - [2018.04.12 01:34:40 | 000,091,544 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam)
  257. DRV:[b]64bit:[/b] - [2018.04.12 01:34:40 | 000,060,320 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\bam.sys -- (bam)
  258. DRV:[b]64bit:[/b] - [2018.04.12 01:34:32 | 000,128,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform)
  259. DRV:[b]64bit:[/b] - [2018.04.12 01:34:32 | 000,084,480 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp)
  260. DRV:[b]64bit:[/b] - [2018.04.12 01:34:32 | 000,039,424 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\afunix.sys -- (afunix)
  261. DRV:[b]64bit:[/b] - [2018.04.12 01:34:32 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus)
  262. DRV:[b]64bit:[/b] - [2018.04.12 01:34:28 | 000,254,464 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache)
  263. DRV:[b]64bit:[/b] - [2018.04.12 01:34:25 | 000,088,472 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass)
  264. DRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,175,104 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NetAdapterCx.sys -- (NetAdapterCx)
  265. DRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,034,208 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\WINDOWS\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
  266. DRV:[b]64bit:[/b] - [2018.04.12 01:34:20 | 000,414,208 | ---- | M] (Microsoft Corporation) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\cldflt.sys -- (CldFlt)
  267. DRV:[b]64bit:[/b] - [2018.04.12 01:34:20 | 000,217,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt)
  268. DRV:[b]64bit:[/b] - [2018.04.12 01:34:20 | 000,209,816 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\WINDOWS\SysNative\drivers\wof.sys -- (Wof)
  269. DRV:[b]64bit:[/b] - [2018.04.12 01:34:19 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\applockerfltr.sys -- (applockerfltr)
  270. DRV:[b]64bit:[/b] - [2018.04.12 01:34:15 | 000,021,408 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdmCompanionFilter.sys -- (WdmCompanionFilter)
  271. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,282,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ufx01000.sys -- (Ufx01000)
  272. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,154,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2)
  273. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,152,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UcmTcpciCx.sys -- (UcmTcpciCx0101)
  274. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,151,960 | ---- | M] (Microsoft Corporation) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\wcifs.sys -- (wcifs)
  275. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,128,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UcmCx.sys -- (UcmCx0101)
  276. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,082,944 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wcnfs.sys -- (wcnfs)
  277. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,075,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx)
  278. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,067,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urscx01000.sys -- (UrsCx01000)
  279. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,039,328 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\cnghwassist.sys -- (cnghwassist)
  280. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IndirectKmd.sys -- (IndirectKmd)
  281. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshwnclx.sys -- (HwNClx0101)
  282. DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf)
  283. DRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,169,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101)
  284. DRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,092,056 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bindflt.sys -- (bindflt)
  285. DRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,082,432 | ---- | M] (Microsoft Corporation) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\storqosflt.sys -- (storqosflt)
  286. DRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,082,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx)
  287. DRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,055,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv)
  288. DRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,128,000 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu)
  289. DRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,063,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SgrmAgent.sys -- (SgrmAgent)
  290. DRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,058,272 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iorate.sys -- (iorate)
  291. DRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,043,520 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\mmcss.sys -- (MMCSS)
  292. DRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\gpuenergydrv.sys -- (GpuEnergyDrv)
  293. DRV:[b]64bit:[/b] - [2018.04.12 01:33:58 | 000,030,112 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr)
  294. DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,227,840 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winnat.sys -- (WinNat)
  295. DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,140,192 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc)
  296. DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,127,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex)
  297. DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,073,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hvservice.sys -- (hvservice)
  298. DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,063,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
  299. DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,055,808 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\filecrypt.sys -- (FileCrypt)
  300. DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Udecx.sys -- (UdeCx)
  301. DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,039,840 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\ramdisk.sys -- (Ramdisk)
  302. DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,035,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vhf.sys -- (vhf)
  303. DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ipt.sys -- (IPT)
  304. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,434,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI)
  305. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,287,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
  306. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,232,352 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
  307. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,097,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor)
  308. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UcmUcsi.sys -- (UcmUcsi)
  309. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,054,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c)
  310. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,050,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32)
  311. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,050,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidinterrupt.sys -- (hidinterrupt)
  312. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,046,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xinputhid.sys -- (xinputhid)
  313. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\buttonconverter.sys -- (buttonconverter)
  314. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,026,112 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig)
  315. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic)
  316. DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,018,472 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\WindowsTrustedRTProxy.sys -- (WindowsTrustedRTProxy)
  317. DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,144,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ufxsynopsys.sys -- (ufxsynopsys)
  318. DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,112,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum)
  319. DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,098,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UfxChipidea.sys -- (UfxChipidea)
  320. DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,086,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys -- (BthLEEnum)
  321. DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,029,088 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urschipidea.sys -- (UrsChipidea)
  322. DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,028,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urssynopsys.sys -- (UrsSynopsys)
  323. DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\genericusbfn.sys -- (genericusbfn)
  324. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 001,836,952 | ---- | M] (Chelsio Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\cht4vx64.sys -- (cht4vbd)
  325. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,885,144 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAVC.sys -- (iaStorAVC)
  326. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,842,648 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mlx4_bus.sys -- (mlx4_bus)
  327. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,526,232 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ibbus.sys -- (ibbus)
  328. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,505,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mausbhost.sys -- (mausbhost)
  329. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,321,432 | ---- | M] (Chelsio Communications) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\cht4sx64.sys -- (cht4iscsi)
  330. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,305,560 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID)
  331. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,197,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netvsc.sys -- (netvsc)
  332. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,156,056 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci)
  333. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,128,416 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\scmbus.sys -- (scmbus)
  334. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,108,952 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ndfltr.sys -- (ndfltr)
  335. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,105,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pmem.sys -- (pmem)
  336. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,104,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvdimm.sys -- (nvdimm)
  337. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,079,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor)
  338. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,075,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci)
  339. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,072,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
  340. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,064,920 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winverbs.sys -- (WinVerbs)
  341. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,064,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Synth3dVsc.sys -- (Synth3dVsc)
  342. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,063,488 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay)
  343. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,061,848 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\percsas3i.sys -- (percsas3i)
  344. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,058,776 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\percsas2i.sys -- (percsas2i)
  345. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,056,736 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mausbip.sys -- (mausbip)
  346. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,047,104 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
  347. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,038,304 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bttflt.sys -- (bttflt)
  348. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,035,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
  349. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,034,816 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender)
  350. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,033,184 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\hvcrash.sys -- (hvcrash)
  351. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,033,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SDFRd.sys -- (SDFRd)
  352. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,032,152 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winmad.sys -- (WinMad)
  353. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,031,128 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
  354. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,028,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HyperVideo.sys -- (HyperVideo)
  355. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,018,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\swenum.inf_amd64_ea7b19c04e7a8136\swenum.sys -- (swenum)
  356. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,016,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd)
  357. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,016,288 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\volume.sys -- (volume)
  358. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime)
  359. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,013,312 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter)
  360. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr)
  361. DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgid.sys -- (vmgid)
  362. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 003,419,032 | ---- | M] (QLogic Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
  363. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 001,135,520 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX)
  364. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,533,912 | ---- | M] (QLogic Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
  365. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,259,480 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
  366. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,177,192 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep)
  367. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,145,816 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\ItSas35i.sys -- (ItSas35i)
  368. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,128,408 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3i.sys -- (LSI_SAS3i)
  369. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,124,312 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2i.sys -- (LSI_SAS2i)
  370. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,123,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\capimg.sys -- (CapImg)
  371. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,107,416 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware)
  372. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,104,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rhproxy.sys -- (rhproxy)
  373. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,083,360 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
  374. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,082,848 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS)
  375. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,082,328 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\megasas35i.sys -- (megasas35i)
  376. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,075,160 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\MegaSas2i.sys -- (megasas2i)
  377. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,064,408 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
  378. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,063,904 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis)
  379. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,038,128 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO)
  380. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,027,032 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
  381. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,020,480 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AcpiDev.sys -- (AcpiDev)
  382. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,016,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pnpmem.sys -- (PNPMEM)
  383. DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,009,728 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2)
  384. DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,174,592 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C_BXT_P.sys -- (iaLPSS2i_I2C_BXT_P)
  385. DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,171,520 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C.sys -- (iaLPSS2i_I2C)
  386. DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,118,680 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
  387. DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,113,152 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C)
  388. DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,091,648 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iai2c.sys -- (iai2c)
  389. DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,088,576 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2_BXT_P.sys -- (iaLPSS2i_GPIO2_BXT_P)
  390. DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,079,360 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2.sys -- (iaLPSS2i_GPIO2)
  391. DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,060,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CAD.sys -- (CAD)
  392. DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\compositebus.inf_amd64_bcb89b3386563bd7\CompositeBus.sys -- (CompositeBus)
  393. DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,036,864 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iagpio.sys -- (iagpio)
  394. DRV:[b]64bit:[/b] - [2017.08.01 03:25:28 | 012,843,000 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\igdlh64.inf_amd64_420c659363620fe7\igdkmd64.sys -- (igfx)
  395. DRV:[b]64bit:[/b] - [2017.06.09 00:45:44 | 000,894,952 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA)
  396. DRV:[b]64bit:[/b] - [2017.06.09 00:45:44 | 000,070,632 | ---- | M] (Intel Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaStorAfs.sys -- (iaStorAfs)
  397. DRV:[b]64bit:[/b] - [2017.06.08 18:09:34 | 000,825,344 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
  398. DRV:[b]64bit:[/b] - [2017.06.02 07:27:24 | 002,413,968 | ---- | M] (Qualcomm Atheros, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Qcamain10x64.sys -- (Qcamain10x64)
  399. DRV:[b]64bit:[/b] - [2017.06.02 07:27:00 | 000,605,584 | ---- | M] (Qualcomm) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter)
  400. DRV:[b]64bit:[/b] - [2017.05.21 16:39:16 | 000,759,880 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcOED.sys -- (IntcOED)
  401. DRV:[b]64bit:[/b] - [2017.05.21 16:39:16 | 000,244,296 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcAudioBus.sys -- (IntcAudioBus)
  402. DRV:[b]64bit:[/b] - [2017.04.17 17:05:10 | 000,954,368 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rt640x64.sys -- (rt640x64)
  403. DRV:[b]64bit:[/b] - [2017.04.11 13:35:44 | 000,205,432 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverW8x64.sys -- (MEIx64)
  404. DRV:[b]64bit:[/b] - [2017.04.11 06:28:14 | 000,782,304 | ---- | M] (Realsil Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsPer.sys -- (RTSPER)
  405. DRV:[b]64bit:[/b] - [2017.01.21 04:14:54 | 000,278,304 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSS2_UART2.sys -- (iaLPSS2_UART2)
  406. DRV:[b]64bit:[/b] - [2017.01.21 04:14:54 | 000,142,624 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSS2_SPI.sys -- (iaLPSS2_SPI)
  407. DRV:[b]64bit:[/b] - [2015.10.07 20:16:48 | 000,050,304 | ---- | M] (Daiyuu Nobori, University of Tsukuba, Japan) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\Win10Pcap.sys -- (Win10Pcap)
  408. DRV:[b]64bit:[/b] - [2012.11.08 05:00:47 | 000,019,968 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mvusbews.sys -- (mvusbews)
  409. DRV - [2018.05.08 23:22:24 | 017,168,744 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_cc52f31649b86d4b\nvlddmkm.sys -- (nvlddmkm)
  410. DRV - [2018.04.12 01:34:58 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysWOW64\drivers\afunix.sys -- (afunix)
  411. DRV - [2018.04.12 01:33:49 | 000,018,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_amd64_ea7b19c04e7a8136\swenum.sys -- (swenum)
  412. DRV - [2018.04.12 01:33:45 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_bcb89b3386563bd7\CompositeBus.sys -- (CompositeBus)
  413. DRV - [2017.08.01 03:25:28 | 012,843,000 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_420c659363620fe7\igdkmd64.sys -- (igfx)
  414.  
  415.  
  416. [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
  417.  
  418.  
  419. [color=#E56717]========== Internet Explorer ==========[/color]
  420.  
  421. IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {93723AF5-3686-4284-8D3D-F0062176FB1E}
  422. IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
  423. IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{93723AF5-3686-4284-8D3D-F0062176FB1E}: "URL" = http://www.bing.com/search?q={searchTerms}&form=PRACE1&src=IE11TR&pc=ACTE
  424. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
  425. IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
  426. IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
  427. IE - HKLM\..\SearchScopes\{93723AF5-3686-4284-8D3D-F0062176FB1E}: "URL" = http://www.bing.com/search?q={searchTerms}&form=PRACE1&src=IE11TR&pc=ACTE
  428.  
  429. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer17win10.msn.com/?pc=ACTE
  430. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
  431. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = https://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoGk3GzeHhcr-ccZ7nfUoH_iGI9Op8jJSn9VQJJWW130s8GBlDoJHwTfv6EdBiJc45bgMQ0o_w86zUYd9m5MjWlfGoLKEqHLkYMFsGdpl69B92lIk-Sjk9loKnv1-rM96G0cMH7QTrkuc-4sV9o6KrvUwS_A3LztQutHYHC6ZTw,,&q={searchTerms}
  432. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoGk3GzeHhcr-ccZ7nfUoH_iGI9Op8jJSn9VQJJWW130s8GBlDoJHwTfv6EdBiJc45bgMQ0o_w86zUYd9m5MjWlfGoLKEqHLkYMFsGdpl69B92lIk-Sjk9loKnv1-rM96G0cMH7QTrkuc-4sV9o6KrvUwS_A3LztQutHYHC6ZTw,,&q={searchTerms}
  433. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
  434. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?pc=UE01&ocid=UE01DHP
  435. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = pl
  436. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 3B 85 D0 27 8F 04 D4 01  [binary data]
  437. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = 1F 69 E1 1C 8F 04 D4 01  [binary data]
  438. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = 01 00 00 00 49 00 00 00 54 64 5A 30 AF B5 CD EE 1D 0F E8 EF 1E 59 62 25 31 7C 57 66 C8 CF 74 6B BC 0B BE 1A 22 4B 58 1E F5 E5 DC 97 9F 44 D6 75 9F B8 89 DF 85 4C 4F 30 19 3A A4 A4 45 87 48 19 CF 41 B2 16 D3 17 C4 49 80 7A 65 C0 27 66 1E 53 2E 02 00 00 00 0E 00 00 00 36 6E 66 6D 32 37 75 4D 62 42 59 25 33 64  [Binary data over 200 bytes]
  439. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = https://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoGk3GzeHhcr-ccZ7nfUoH_iGI9Op8jJSn9VQJJWW130s8GBlDoJHwTfv6EdBiJc45bgMQ0o_w86zUYd9m5MjWlfGoLKEqHLkYMFsGdpl69B92lIk-Sjk9loKnv1-rM96G0cMH7QTrkuc-4sV9o6KrvUwS_A3LztQutHYHC6ZTw,,&q={searchTerms}
  440. IE - HKCU\..\SearchScopes,DefaultScope = {93723AF5-3686-4284-8D3D-F0062176FB1E}
  441. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
  442.  
  443. [color=#E56717]========== FireFox ==========[/color]
  444.  
  445. FF - prefs.js..browser.search.countryCode: "PL"
  446. FF - prefs.js..browser.search.region: "PL"
  447. FF - prefs.js..browser.search.reset.status: "silent"
  448. FF - prefs.js..browser.search.widget.inNavBar: true
  449. FF - prefs.js..browser.startup.homepage: "google.com"
  450. FF - user.js - File not found
  451.  
  452. FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL (Microsoft Corporation)
  453. FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.3: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
  454. FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
  455. FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL (Microsoft Corporation)
  456. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll (Google Inc.)
  457. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll (Google Inc.)
  458.  
  459. 64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 61.0.1\extensions\\Components: C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\COMPONENTS
  460. 64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 61.0.1\extensions\\Plugins: C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\PLUGINS [2018.05.11 23:13:36 | 000,000,000 | ---D | M]
  461. FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 61.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
  462. FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 61.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2018.05.11 23:13:36 | 000,000,000 | ---D | M]
  463.  
  464. [2018.04.10 14:03:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\Extensions
  465. [2018.06.15 11:55:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\SystemExtensionsDev
  466. [2018.06.15 11:55:09 | 000,000,000 | ---D | M] (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\Firefox\Profiles\cuq6ogzb.default\browser-extension-data
  467. [2018.07.16 13:35:46 | 000,000,000 | ---D | M] (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\Firefox\Profiles\cuq6ogzb.default\browser-extension-data\extension@browser-safety.org
  468. [2018.04.17 11:30:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\Firefox\Profiles\cuq6ogzb.default\browser-extension-data\screenshots@mozilla.org
  469. [2018.07.18 19:21:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\Firefox\Profiles\cuq6ogzb.default\browser-extension-data\sp@avast.com
  470. [2018.07.18 19:21:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\Firefox\Profiles\cuq6ogzb.default\browser-extension-data\wrc@avast.com
  471. [2018.07.18 19:13:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\Firefox\Profiles\cuq6ogzb.default\extensions
  472. [2018.04.10 14:03:19 | 000,000,000 | ---D | M] (Mozilla Partner Defaults) -- C:\Users\norbi\AppData\Roaming\mozilla\Firefox\Profiles\cuq6ogzb.default\extensions\partnerdefaults@mozilla.com
  473. [2018.07.18 19:13:42 | 000,418,192 | ---- | M] () (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\firefox\profiles\cuq6ogzb.default\extensions\langpack-pl@firefox.mozilla.org.xpi
  474. [2018.07.18 19:13:40 | 002,457,020 | ---- | M] () (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\firefox\profiles\cuq6ogzb.default\extensions\sp@avast.com.xpi
  475. [2018.07.16 19:40:50 | 000,789,048 | ---- | M] () (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\firefox\profiles\cuq6ogzb.default\extensions\wrc@avast.com.xpi
  476. [2018.07.18 19:13:42 | 000,006,251 | ---- | M] () (No name found) -- C:\Users\norbi\AppData\Roaming\mozilla\firefox\profiles\cuq6ogzb.default\features\{ca389118-153d-470a-b84b-c0faafea604d}\tls13-version-fallback-rollout-bug1462099@mozilla.org.xpi
  477. [2018.04.10 13:54:17 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions
  478. [2017.11.23 12:39:24 | 000,000,000 | ---D | M] (Amazon Assistant for Firefox) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com
  479. [2017.11.23 12:39:30 | 000,000,000 | ---D | M] ("Polski Language Pack") -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\langpack-pl@firefox.mozilla.org
  480. [2017.11.23 12:39:21 | 000,000,000 | ---D | M] (Mozilla Partner Defaults) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\partnerdefaults@mozilla.com
  481. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension
  482. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\bootstrapper
  483. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\client
  484. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\configuration
  485. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\contextual
  486. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\firstRun
  487. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\firstTimeSetup
  488. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\gateway
  489. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\hub
  490. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\locale
  491. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\messaging
  492. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\migration
  493. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\panel
  494. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\platform
  495. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\process
  496. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\runtime
  497. [2017.03.01 05:31:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\abb-acer@amazon.com\ubp\extension\storage
  498. [2017.11.23 12:39:30 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\distribution\extensions\langpack-pl@firefox.mozilla.org\chrome\pl\locale\pl\mozapps\extensions
  499. [2018.04.10 10:51:28 | 000,048,528 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll
  500.  
  501. [color=#E56717]========== Chrome  ==========[/color]
  502.  
  503. CHR - Extension: No name found = C:\Users\norbi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.10_0\
  504. CHR - Extension: No name found = C:\Users\norbi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.10_0\
  505. CHR - Extension: No name found = C:\Users\norbi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0\
  506. CHR - Extension: No name found = C:\Users\norbi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0\
  507. CHR - Extension: No name found = C:\Users\norbi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.2_0\
  508. CHR - Extension: No name found = C:\Users\norbi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_1\
  509. CHR - Extension: No name found = C:\Users\norbi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\12.0.626_0\
  510. CHR - Extension: No name found = C:\Users\norbi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.4_0\
  511. CHR - Extension: No name found = C:\Users\norbi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\
  512. CHR - Extension: No name found = C:\Users\norbi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6718.423.0.0_0\
  513.  
  514. O1 HOSTS File: ([2018.04.17 10:17:18 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
  515. O2 - BHO: (Microsoft OneDrive for Business Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office16\GROOVEEX.DLL (Microsoft Corporation)
  516. O4:[b]64bit:[/b] - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvLaunch.exe (AVAST Software)
  517. O4:[b]64bit:[/b] - HKLM..\Run: [DAX2_APP] C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe ()
  518. O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVBg_ASC] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
  519. O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVBg_CTPreset] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
  520. O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVBg_Dolby] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
  521. O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
  522. O4:[b]64bit:[/b] - HKLM..\Run: [SecurityHealth] C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Corporation)
  523. O4 - HKCU..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
  524. O4 - HKCU..\Run: [EpicGamesLauncher] C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (Epic Games, Inc.)
  525. O4 - HKCU..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation)
  526. O4 - HKCU..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
  527. O4 - HKCU..\Run: [SteamServerBrowser] C:\Program Files (x86)\SteamServerBrowser\SteamServerBrowser.exe ()
  528. O4 - HKCU..\Run: [uTorrent] C:\Users\norbi\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
  529. O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
  530. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
  531. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
  532. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
  533. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
  534. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DSCAutomationHostEnabled = 2
  535. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
  536. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableFullTrustStartupTasks = 2
  537. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUwpStartupTasks = 2
  538. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SupportFullTrustStartupTasks = 1
  539. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SupportUwpStartupTasks = 1
  540. O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
  541. O8:[b]64bit:[/b] - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 File not found
  542. O8:[b]64bit:[/b] - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE/3000 File not found
  543. O8:[b]64bit:[/b] - Extra context menu item: Se&nd to OneNote - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll/105 File not found
  544. O8:[b]64bit:[/b] - Extra context menu item: Wyślij &do programu OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 File not found
  545. O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 File not found
  546. O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE/3000 File not found
  547. O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll/105 File not found
  548. O8 - Extra context menu item: Wyślij &do programu OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 File not found
  549. O13[b]64bit:[/b] - gopher Prefix: missing
  550. O13 - gopher Prefix: missing
  551. O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 192.168.0.2
  552. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2fa46e70-352c-4210-b3e6-52dd18a8fd10}: NameServer = 62.179.1.62,62.179.1.63
  553. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7e0fc2c7-a2fb-4ec8-873f-697f8f5763c7}: DhcpNameServer = 192.168.0.1 192.168.0.2
  554. O18:[b]64bit:[/b] - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
  555. O18:[b]64bit:[/b] - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
  556. O18 - Protocol\Handler\ms-help - No CLSID value found
  557. O18 - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
  558. O18 - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
  559. O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
  560. O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
  561. O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation)
  562. O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
  563. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
  564. O32 - HKLM CDRom: AutoRun - 1
  565. O33 - MountPoints2\{31f92ed6-6e49-11e8-a5ea-9822ef706bbe}\Shell - "" = AutoRun
  566. O33 - MountPoints2\{31f92ed6-6e49-11e8-a5ea-9822ef706bbe}\Shell\AutoRun\command - "" = "D:\SISetup.exe"
  567. O34 - HKLM BootExecute: (autocheck autochk *)
  568. O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
  569. O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
  570. O35 - HKLM\..comfile [open] -- "%1" %*
  571. O35 - HKLM\..exefile [open] -- "%1" %*
  572. O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
  573. O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
  574. O37 - HKLM\...com [@ = comfile] -- "%1" %*
  575. O37 - HKLM\...exe [@ = exefile] -- "%1" %*
  576. O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
  577. O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
  578.  
  579. [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
  580.  
  581. [2018.07.16 19:55:13 | 000,000,000 | ---D | C] -- C:\Users\norbi\AppData\Local\AVAST Software
  582. [2018.07.16 19:43:14 | 001,027,728 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswSnx.sys
  583. [2018.07.16 19:43:14 | 000,463,080 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswSP.sys
  584. [2018.07.16 19:43:14 | 000,381,584 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswVmm.sys
  585. [2018.07.16 19:43:14 | 000,346,664 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswbloga.sys
  586. [2018.07.16 19:43:14 | 000,239,680 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswHdsKe.sys
  587. [2018.07.16 19:43:14 | 000,229,392 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswbidsdrivera.sys
  588. [2018.07.16 19:43:14 | 000,211,160 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswStm.sys
  589. [2018.07.16 19:43:14 | 000,201,328 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswbidsha.sys
  590. [2018.07.16 19:43:14 | 000,197,160 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswArPot.sys
  591. [2018.07.16 19:43:14 | 000,159,640 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswMonFlt.sys
  592. [2018.07.16 19:43:14 | 000,111,872 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswRdr2.sys
  593. [2018.07.16 19:43:14 | 000,085,968 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswRvrt.sys
  594. [2018.07.16 19:43:14 | 000,059,592 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswbuniva.sys
  595. [2018.07.16 19:43:14 | 000,046,976 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswHwid.sys
  596. [2018.07.16 19:43:14 | 000,015,360 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswElam.sys
  597. [2018.07.16 19:42:37 | 000,378,072 | ---- | C] (AVAST Software) -- C:\WINDOWS\SysNative\aswBoot.exe
  598. [2018.07.16 19:28:01 | 000,000,000 | ---D | C] -- C:\FRST
  599. [2018.07.16 19:20:43 | 002,412,544 | ---- | C] (Farbar) -- C:\Users\norbi\Desktop\FRST64.exe
  600. [2018.07.16 11:01:49 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Sports Interactive
  601. [2018.07.16 11:01:49 | 000,000,000 | ---D | C] -- C:\Users\norbi\AppData\Local\Sports Interactive
  602. [2018.07.16 10:02:58 | 000,000,000 | ---D | C] -- C:\Users\norbi\AppData\Roaming\REVOLT
  603. [2018.07.15 16:44:12 | 000,000,000 | ---D | C] -- C:\Users\norbi\AppData\Local\CrashRpt
  604. [2018.07.15 16:44:07 | 000,000,000 | ---D | C] -- C:\Users\norbi\AppData\Local\DiskDrill
  605. [2018.07.15 16:44:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CleverFiles
  606. [2018.07.15 15:58:19 | 000,000,000 | ---D | C] -- C:\Program Files\Recuva
  607. [2018.07.15 12:38:38 | 000,000,000 | ---D | C] -- C:\ProgramData\X360CE
  608. [2018.07.12 10:36:46 | 000,000,000 | --SD | C] -- C:\WINDOWS\SysWow64\Microsoft
  609. [2018.07.12 10:36:34 | 000,835,064 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
  610. [2018.07.12 10:36:34 | 000,179,704 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
  611. [2018.07.11 18:11:08 | 007,519,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Protection.PlayReady.dll
  612. [2018.07.11 18:11:07 | 006,572,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll
  613. [2018.07.11 18:11:01 | 025,845,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll
  614. [2018.07.11 18:10:52 | 023,863,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Hydrogen.dll
  615. [2018.07.11 18:10:40 | 022,006,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
  616. [2018.07.11 18:10:39 | 019,525,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\HologramCompositor.dll
  617. [2018.07.11 18:10:37 | 007,436,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll
  618. [2018.07.11 18:10:37 | 001,213,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ClipUp.exe
  619. [2018.07.11 18:10:33 | 007,579,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll
  620. [2018.07.11 18:10:32 | 004,706,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdp.dll
  621. [2018.07.11 18:10:31 | 003,392,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
  622. [2018.07.11 18:10:30 | 006,043,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windows.storage.dll
  623. [2018.07.11 18:10:29 | 009,147,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
  624. [2018.07.11 18:10:27 | 007,057,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mos.dll
  625. [2018.07.11 18:10:25 | 002,371,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msmpeg2vdec.dll
  626. [2018.07.11 18:10:25 | 002,331,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msmpeg2vdec.dll
  627. [2018.07.11 18:10:24 | 004,371,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeContent.dll
  628. [2018.07.11 18:10:23 | 005,779,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll
  629. [2018.07.11 18:10:23 | 004,867,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
  630. [2018.07.11 18:10:22 | 004,708,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.pcshell.dll
  631. [2018.07.11 18:10:22 | 001,611,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfnetsrc.dll
  632. [2018.07.11 18:10:21 | 006,817,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.dll
  633. [2018.07.11 18:10:21 | 001,710,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfnetsrc.dll
  634. [2018.07.11 18:10:21 | 001,145,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfnetcore.dll
  635. [2018.07.11 18:10:20 | 001,288,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmpeg2srcsnk.dll
  636. [2018.07.11 18:10:19 | 003,652,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
  637. [2018.07.11 18:10:19 | 001,784,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfasfsrcsnk.dll
  638. [2018.07.11 18:10:18 | 004,788,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfcore.dll
  639. [2018.07.11 18:10:18 | 001,144,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfnetcore.dll
  640. [2018.07.11 18:10:17 | 006,528,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.dll
  641. [2018.07.11 18:10:16 | 004,403,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfcore.dll
  642. [2018.07.11 18:10:14 | 004,561,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFMediaEngine.dll
  643. [2018.07.11 18:10:14 | 001,798,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.appcore.dll
  644. [2018.07.11 18:10:13 | 001,610,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appraiser.dll
  645. [2018.07.11 18:10:13 | 001,020,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmpeg2srcsnk.dll
  646. [2018.07.11 18:10:13 | 000,689,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aeinv.dll
  647. [2018.07.11 18:10:13 | 000,462,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aepic.dll
  648. [2018.07.11 18:10:12 | 009,084,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BingMaps.dll
  649. [2018.07.11 18:10:11 | 002,395,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVCORE.DLL
  650. [2018.07.11 18:10:11 | 002,367,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WebRuntimeManager.dll
  651. [2018.07.11 18:10:11 | 001,817,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpncore.dll
  652. [2018.07.11 18:10:10 | 003,932,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
  653. [2018.07.11 18:10:10 | 003,320,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll
  654. [2018.07.11 18:10:10 | 002,571,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KernelBase.dll
  655. [2018.07.11 18:10:10 | 002,548,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\smartscreen.exe
  656. [2018.07.11 18:10:09 | 005,883,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mos.dll
  657. [2018.07.11 18:10:09 | 002,868,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aitstatic.exe
  658. [2018.07.11 18:10:07 | 008,623,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
  659. [2018.07.11 18:10:07 | 003,611,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe
  660. [2018.07.11 18:10:06 | 002,900,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll
  661. [2018.07.11 18:10:06 | 001,034,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ApplyTrustOffline.exe
  662. [2018.07.11 18:10:06 | 000,380,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aepic.dll
  663. [2018.07.11 18:10:05 | 001,380,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfasfsrcsnk.dll
  664. [2018.07.11 18:10:03 | 000,792,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\generaltel.dll
  665. [2018.07.11 18:10:02 | 001,659,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ContentDeliveryManager.Utilities.dll
  666. [2018.07.11 18:10:02 | 001,395,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBroker.dll
  667. [2018.07.11 18:10:02 | 001,254,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettings.Handlers.dll
  668. [2018.07.11 18:10:01 | 002,962,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cdp.dll
  669. [2018.07.11 18:10:01 | 001,487,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InstallService.dll
  670. [2018.07.11 18:10:01 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CPFilters.dll
  671. [2018.07.11 18:10:01 | 000,704,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CPFilters.dll
  672. [2018.07.11 18:10:00 | 004,333,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFMediaEngine.dll
  673. [2018.07.11 18:10:00 | 002,051,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_fs.dll
  674. [2018.07.11 18:10:00 | 000,943,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BingOnlineServices.dll
  675. [2018.07.11 18:09:59 | 002,825,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapGeocoder.dll
  676. [2018.07.11 18:09:59 | 001,374,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usocore.dll
  677. [2018.07.11 18:09:58 | 001,946,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfplat.dll
  678. [2018.07.11 18:09:58 | 001,462,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.appcore.dll
  679. [2018.07.11 18:09:58 | 001,376,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ole32.dll
  680. [2018.07.11 18:09:58 | 001,175,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ucrtbase.dll
  681. [2018.07.11 18:09:58 | 000,949,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmsvc.dll
  682. [2018.07.11 18:09:57 | 003,381,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapRouter.dll
  683. [2018.07.11 18:09:57 | 002,546,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UpdateAgent.dll
  684. [2018.07.11 18:09:57 | 001,632,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enterprisecsps.dll
  685. [2018.07.11 18:09:57 | 001,214,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NotificationController.dll
  686. [2018.07.11 18:09:57 | 001,018,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ucrtbase.dll
  687. [2018.07.11 18:09:57 | 000,451,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\invagent.dll
  688. [2018.07.11 18:09:56 | 002,563,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmp4srcsnk.dll
  689. [2018.07.11 18:09:56 | 002,535,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmp4srcsnk.dll
  690. [2018.07.11 18:09:56 | 001,787,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_health.dll
  691. [2018.07.11 18:09:56 | 001,364,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcastdvruserservice.dll
  692. [2018.07.11 18:09:56 | 001,209,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AudioSes.dll
  693. [2018.07.11 18:09:56 | 000,612,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devinv.dll
  694. [2018.07.11 18:09:54 | 006,647,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BingMaps.dll
  695. [2018.07.11 18:09:54 | 000,847,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bisrv.dll
  696. [2018.07.11 18:09:54 | 000,491,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mf.dll
  697. [2018.07.11 18:09:53 | 001,724,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Input.Inking.dll
  698. [2018.07.11 18:09:53 | 001,153,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Sensors.dll
  699. [2018.07.11 18:09:53 | 000,894,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webplatstorageserver.dll
  700. [2018.07.11 18:09:52 | 001,945,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntdll.dll
  701. [2018.07.11 18:09:52 | 001,934,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AudioEng.dll
  702. [2018.07.11 18:09:52 | 001,148,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsvr.dll
  703. [2018.07.11 18:09:52 | 000,813,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeManager.dll
  704. [2018.07.11 18:09:51 | 002,172,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.onecore.dll
  705. [2018.07.11 18:09:51 | 001,567,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpeechPal.dll
  706. [2018.07.11 18:09:50 | 007,987,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
  707. [2018.07.11 18:09:50 | 001,305,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Audio.dll
  708. [2018.07.11 18:09:50 | 000,550,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mf.dll
  709. [2018.07.11 18:09:49 | 001,931,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgeangle.dll
  710. [2018.07.11 18:09:49 | 000,480,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcntel.dll
  711. [2018.07.11 18:09:48 | 001,303,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.Vpn.dll
  712. [2018.07.11 18:09:48 | 001,264,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\JpMapControl.dll
  713. [2018.07.11 18:09:47 | 002,895,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32kfull.sys
  714. [2018.07.11 18:09:47 | 001,559,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfplat.dll
  715. [2018.07.11 18:09:47 | 000,784,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcsvc.dll
  716. [2018.07.11 18:09:46 | 002,236,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
  717. [2018.07.11 18:09:46 | 000,827,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Management.dll
  718. [2018.07.11 18:09:45 | 002,163,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsrcsnk.dll
  719. [2018.07.11 18:09:45 | 001,742,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winmde.dll
  720. [2018.07.11 18:09:45 | 000,884,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapControlCore.dll
  721. [2018.07.11 18:09:45 | 000,884,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NMAA.dll
  722. [2018.07.11 18:09:45 | 000,835,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapi.dll
  723. [2018.07.11 18:09:44 | 002,062,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsrcsnk.dll
  724. [2018.07.11 18:09:44 | 001,581,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.PointOfService.dll
  725. [2018.07.11 18:09:44 | 001,070,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Streaming.dll
  726. [2018.07.11 18:09:44 | 000,916,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapi.dll
  727. [2018.07.11 18:09:43 | 001,457,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.efi
  728. [2018.07.11 18:09:43 | 001,110,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InstallService.dll
  729. [2018.07.11 18:09:43 | 000,988,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsvr.dll
  730. [2018.07.11 18:09:43 | 000,717,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_StorageSense.dll
  731. [2018.07.11 18:09:43 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
  732. [2018.07.11 18:09:42 | 001,251,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ContentDeliveryManager.Utilities.dll
  733. [2018.07.11 18:09:42 | 001,225,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsStore.dll
  734. [2018.07.11 18:09:42 | 001,112,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfds.dll
  735. [2018.07.11 18:09:42 | 000,930,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWAHost.exe
  736. [2018.07.11 18:09:42 | 000,761,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecurityHealthService.exe
  737. [2018.07.11 18:09:41 | 001,036,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\modernexecserver.dll
  738. [2018.07.11 18:09:41 | 000,684,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AudioEndpointBuilder.dll
  739. [2018.07.11 18:09:41 | 000,594,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\audiodg.exe
  740. [2018.07.11 18:09:41 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DiagnosticLogCSP.dll
  741. [2018.07.11 18:09:40 | 000,625,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PsmServiceExtHost.dll
  742. [2018.07.11 18:09:40 | 000,505,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgeIso.dll
  743. [2018.07.11 18:09:40 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BioCredProv.dll
  744. [2018.07.11 18:09:39 | 000,788,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DHolographicDisplay.dll
  745. [2018.07.11 18:09:39 | 000,740,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LogonController.dll
  746. [2018.07.11 18:09:39 | 000,309,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acmigration.dll
  747. [2018.07.11 18:09:38 | 002,401,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AcGenral.dll
  748. [2018.07.11 18:09:38 | 000,713,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BingOnlineServices.dll
  749. [2018.07.11 18:09:38 | 000,338,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AudioSrvPolicyManager.dll
  750. [2018.07.11 18:09:38 | 000,144,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CompatTelRunner.exe
  751. [2018.07.11 18:09:37 | 001,550,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.desktop.dll
  752. [2018.07.11 18:09:37 | 000,999,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBroker.dll
  753. [2018.07.11 18:09:37 | 000,910,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.dll
  754. [2018.07.11 18:09:37 | 000,770,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfds.dll
  755. [2018.07.11 18:09:37 | 000,670,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadcloudap.dll
  756. [2018.07.11 18:09:37 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AcGenral.dll
  757. [2018.07.11 18:09:37 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
  758. [2018.07.11 18:09:36 | 002,449,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapRouter.dll
  759. [2018.07.11 18:09:36 | 001,258,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.exe
  760. [2018.07.11 18:09:36 | 001,174,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvix64.exe
  761. [2018.07.11 18:09:36 | 000,542,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
  762. [2018.07.11 18:09:36 | 000,510,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\policymanager.dll
  763. [2018.07.11 18:09:36 | 000,483,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ucrtbase_enclave.dll
  764. [2018.07.11 18:09:36 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provengine.dll
  765. [2018.07.11 18:09:35 | 001,986,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapGeocoder.dll
  766. [2018.07.11 18:09:35 | 001,356,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.dll
  767. [2018.07.11 18:09:35 | 001,342,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Audio.dll
  768. [2018.07.11 18:09:35 | 001,140,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.efi
  769. [2018.07.11 18:09:35 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcWebFilter.dll
  770. [2018.07.11 18:09:35 | 000,829,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WWAHost.exe
  771. [2018.07.11 18:09:35 | 000,596,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatehandlers.dll
  772. [2018.07.11 18:09:34 | 001,129,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msvproc.dll
  773. [2018.07.11 18:09:34 | 001,097,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvproc.dll
  774. [2018.07.11 18:09:34 | 000,753,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\evr.dll
  775. [2018.07.11 18:09:34 | 000,661,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\evr.dll
  776. [2018.07.11 18:09:34 | 000,593,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Internal.Management.dll
  777. [2018.07.11 18:09:34 | 000,562,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storport.sys
  778. [2018.07.11 18:09:33 | 001,308,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_health.dll
  779. [2018.07.11 18:09:33 | 001,012,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvax64.exe
  780. [2018.07.11 18:09:33 | 001,004,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clusapi.dll
  781. [2018.07.11 18:09:33 | 000,983,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.exe
  782. [2018.07.11 18:09:33 | 000,267,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\browserbroker.dll
  783. [2018.07.11 18:09:32 | 001,114,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.PointOfService.dll
  784. [2018.07.11 18:09:32 | 000,978,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\JpMapControl.dll
  785. [2018.07.11 18:09:32 | 000,814,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieproxy.dll
  786. [2018.07.11 18:09:32 | 000,757,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msfeeds.dll
  787. [2018.07.11 18:09:32 | 000,500,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFCaptureEngine.dll
  788. [2018.07.11 18:09:32 | 000,260,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfps.dll
  789. [2018.07.11 18:09:31 | 001,535,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
  790. [2018.07.11 18:09:31 | 000,811,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Gaming.Input.dll
  791. [2018.07.11 18:09:31 | 000,614,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EdgeManager.dll
  792. [2018.07.11 18:09:31 | 000,426,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotification.exe
  793. [2018.07.11 18:09:31 | 000,070,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32appinventorycsp.dll
  794. [2018.07.11 18:09:30 | 001,452,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_fs.dll
  795. [2018.07.11 18:09:30 | 000,766,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnsapi.dll
  796. [2018.07.11 18:09:30 | 000,567,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcblaunch.exe
  797. [2018.07.11 18:09:30 | 000,530,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapConfiguration.dll
  798. [2018.07.11 18:09:30 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.Diagnostics.dll
  799. [2018.07.11 18:09:30 | 000,326,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExecModelClient.dll
  800. [2018.07.11 18:09:30 | 000,324,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wow64.dll
  801. [2018.07.11 18:09:29 | 001,307,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSVPXENC.dll
  802. [2018.07.11 18:09:29 | 000,992,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.Vpn.dll
  803. [2018.07.11 18:09:29 | 000,676,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Devices.dll
  804. [2018.07.11 18:09:29 | 000,675,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.dll
  805. [2018.07.11 18:09:29 | 000,472,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFCaptureEngine.dll
  806. [2018.07.11 18:09:29 | 000,444,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\policymanager.dll
  807. [2018.07.11 18:09:29 | 000,272,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SgrmEnclave.dll
  808. [2018.07.11 18:09:29 | 000,269,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SgrmEnclave_secure.dll
  809. [2018.07.11 18:09:29 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceSetupManager.dll
  810. [2018.07.11 18:09:29 | 000,105,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncryptsslp.dll
  811. [2018.07.11 18:09:28 | 000,604,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\securekernel.exe
  812. [2018.07.11 18:09:28 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BioCredProv.dll
  813. [2018.07.11 18:09:27 | 001,921,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\refs.sys
  814. [2018.07.11 18:09:27 | 000,615,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\resutils.dll
  815. [2018.07.11 18:09:26 | 001,397,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSVP9DEC.dll
  816. [2018.07.11 18:09:26 | 001,054,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\HelpPane.exe
  817. [2018.07.11 18:09:26 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\xboxgip.sys
  818. [2018.07.11 18:09:25 | 000,945,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\refsv1.sys
  819. [2018.07.11 18:09:25 | 000,735,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dsreg.dll
  820. [2018.07.11 18:09:25 | 000,453,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cloudAP.dll
  821. [2018.07.11 18:09:25 | 000,129,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfps.dll
  822. [2018.07.11 18:09:25 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcimage.dll
  823. [2018.07.11 18:09:24 | 000,873,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Streaming.dll
  824. [2018.07.11 18:09:24 | 000,228,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecurityHealthAgent.dll
  825. [2018.07.11 18:09:23 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncryptprov.dll
  826. [2018.07.11 18:09:21 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VideoHandlers.dll
  827. [2018.07.11 18:09:20 | 001,605,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcorets.dll
  828. [2018.07.11 18:09:20 | 000,729,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NMAA.dll
  829. [2018.07.11 18:09:20 | 000,392,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapConfiguration.dll
  830. [2018.07.11 18:09:20 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AcLayers.dll
  831. [2018.07.11 18:09:20 | 000,247,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RESAMPLEDMO.DLL
  832. [2018.07.11 18:09:20 | 000,118,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncryptsslp.dll
  833. [2018.07.11 18:09:19 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Gaming.Input.dll
  834. [2018.07.11 18:09:19 | 000,232,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RESAMPLEDMO.DLL
  835. [2018.07.11 18:09:18 | 001,063,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecConfig.efi
  836. [2018.07.11 18:09:18 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WpcWebFilter.dll
  837. [2018.07.11 18:09:17 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provhandlers.dll
  838. [2018.07.11 18:09:17 | 000,331,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgeIso.dll
  839. [2018.07.11 18:09:17 | 000,330,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncryptprov.dll
  840. [2018.07.11 18:09:17 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CredProv2faHelper.dll
  841. [2018.07.11 18:09:16 | 000,642,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvcp_win.dll
  842. [2018.07.11 18:09:16 | 000,578,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webplatstorageserver.dll
  843. [2018.07.11 18:09:16 | 000,348,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotifyIcon.exe
  844. [2018.07.11 18:09:16 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmcertinst.exe
  845. [2018.07.11 18:09:16 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDMAppInstaller.exe
  846. [2018.07.11 18:09:15 | 001,150,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSVP9DEC.dll
  847. [2018.07.11 18:09:15 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusUpdateHandlers.dll
  848. [2018.07.11 18:09:15 | 000,567,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CoreMessaging.dll
  849. [2018.07.11 18:09:14 | 002,084,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
  850. [2018.07.11 18:09:14 | 001,708,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSPhotography.dll
  851. [2018.07.11 18:09:13 | 000,413,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AUDIOKSE.dll
  852. [2018.07.11 18:09:13 | 000,281,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExecModelClient.dll
  853. [2018.07.11 18:09:12 | 000,116,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DTUHandler.exe
  854. [2018.07.11 18:09:12 | 000,072,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\WindowsTrustedRT.sys
  855. [2018.07.11 18:09:09 | 000,057,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.ShellCommon.Broker.dll
  856. [2018.07.11 18:09:08 | 002,015,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
  857. [2018.07.11 18:09:08 | 000,265,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\psmsrv.dll
  858. [2018.07.11 18:09:08 | 000,134,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvloader.dll
  859. [2018.07.11 18:09:08 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceSoftwareInstallationClient.dll
  860. [2018.07.11 18:09:08 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tokenbinding.dll
  861. [2018.07.11 18:09:07 | 000,885,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CoreMessaging.dll
  862. [2018.07.11 18:09:07 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AcLayers.dll
  863. [2018.07.11 18:09:07 | 000,094,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpudd.dll
  864. [2018.07.11 18:09:06 | 000,611,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\spaceport.sys
  865. [2018.07.11 18:09:06 | 000,356,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcryptprimitives.dll
  866. [2018.07.11 18:09:06 | 000,335,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\moshostcore.dll
  867. [2018.07.11 18:09:06 | 000,093,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecurityHealthProxyStub.dll
  868. [2018.07.11 18:09:06 | 000,048,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storufs.sys
  869. [2018.07.11 18:09:05 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpd_ci.dll
  870. [2018.07.11 18:09:05 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fwpolicyiomgr.dll
  871. [2018.07.11 18:09:05 | 000,208,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provisioningcsp.dll
  872. [2018.07.11 18:09:05 | 000,035,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceCensus.exe
  873. [2018.07.11 18:09:03 | 000,311,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.System.Diagnostics.dll
  874. [2018.07.11 18:09:03 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ie4uinit.exe
  875. [2018.07.11 18:09:03 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fwpolicyiomgr.dll
  876. [2018.07.11 18:09:03 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tokenbinding.dll
  877. [2018.07.11 18:09:02 | 000,839,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Sensors.dll
  878. [2018.07.11 18:09:02 | 000,775,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clusapi.dll
  879. [2018.07.11 18:09:02 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\smartscreenps.dll
  880. [2018.07.11 18:09:02 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CredProv2faHelper.dll
  881. [2018.07.11 18:09:01 | 001,008,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.MixedRealityCapture.dll
  882. [2018.07.11 18:09:01 | 000,868,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.MixedRealityCapture.dll
  883. [2018.07.11 18:09:01 | 000,485,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\resutils.dll
  884. [2018.07.11 18:09:01 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\zipfldr.dll
  885. [2018.07.11 18:09:01 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shdocvw.dll
  886. [2018.07.11 18:09:01 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\perfnet.dll
  887. [2018.07.11 18:08:59 | 000,508,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Notifications.dll
  888. [2018.07.11 18:08:59 | 000,334,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NmaDirect.dll
  889. [2018.07.11 18:08:59 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotificationUx.exe
  890. [2018.07.11 18:08:58 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\perfnet.dll
  891. [2018.07.11 18:08:57 | 000,558,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\untfs.dll
  892. [2018.07.11 18:08:57 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mcbuilder.exe
  893. [2018.07.11 18:08:56 | 000,515,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\untfs.dll
  894. [2018.07.11 18:08:54 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DsmUserTask.exe
  895. [2018.07.11 18:08:53 | 000,953,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autochk.exe
  896. [2018.07.11 18:08:53 | 000,907,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autofmt.exe
  897. [2018.07.11 18:08:53 | 000,871,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\autochk.exe
  898. [2018.07.11 18:08:53 | 000,705,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapControlCore.dll
  899. [2018.07.11 18:08:52 | 000,932,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autoconv.exe
  900. [2018.07.11 18:08:52 | 000,831,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\autofmt.exe
  901. [2018.07.11 18:08:52 | 000,533,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\QuietHours.dll
  902. [2018.07.11 18:08:52 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InstallServiceTasks.dll
  903. [2018.07.11 18:08:51 | 000,851,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\autoconv.exe
  904. [2018.07.11 18:08:51 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieproxy.dll
  905. [2018.07.11 18:08:51 | 000,251,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msIso.dll
  906. [2018.07.11 18:08:51 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatecsp.dll
  907. [2018.07.11 18:08:51 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseDesktopAppMgmtCSP.dll
  908. [2018.07.11 18:08:50 | 000,740,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MCRecvSrc.dll
  909. [2018.07.11 18:08:50 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mcbuilder.exe
  910. [2018.07.11 18:08:49 | 000,978,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MCRecvSrc.dll
  911. [2018.07.11 18:08:49 | 000,409,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsEnvironment.Desktop.dll
  912. [2018.07.11 18:08:48 | 000,209,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXApplicabilityBlob.dll
  913. [2018.07.11 18:08:47 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\credprovhost.dll
  914. [2018.07.11 18:08:46 | 000,224,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\credprovhost.dll
  915. [2018.07.11 18:08:45 | 000,224,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RdpRelayTransport.dll
  916. [2018.07.11 18:08:44 | 001,361,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSPhotography.dll
  917. [2018.07.11 18:08:44 | 000,622,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dsreg.dll
  918. [2018.07.11 18:08:44 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceSetupManagerAPI.dll
  919. [2018.07.11 18:08:44 | 000,154,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakradiag.dll
  920. [2018.07.11 18:08:44 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DTUHandlerPS.dll
  921. [2018.07.11 18:08:43 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CapabilityAccessManager.dll
  922. [2018.07.11 18:08:43 | 000,224,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Cortana.dll
  923. [2018.07.11 18:08:43 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autopilot.dll
  924. [2018.07.11 18:08:43 | 000,151,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsBtSvc.dll
  925. [2018.07.11 18:08:43 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\smartscreenps.dll
  926. [2018.07.11 18:08:43 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakradiag.dll
  927. [2018.07.11 18:08:43 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NotificationControllerPS.dll
  928. [2018.07.11 18:08:43 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MosStorage.dll
  929. [2018.07.11 18:08:43 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iemigplugin.dll
  930. [2018.07.11 18:08:43 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlansvcpal.dll
  931. [2018.07.11 18:08:42 | 000,677,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winlogon.exe
  932. [2018.07.11 18:08:42 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ubpm.dll
  933. [2018.07.11 18:08:42 | 000,262,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NmaDirect.dll
  934. [2018.07.11 18:08:42 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Geolocation.dll
  935. [2018.07.11 18:08:42 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsCSP.dll
  936. [2018.07.11 18:08:42 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MosHostClient.dll
  937. [2018.07.11 18:08:42 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\moshost.dll
  938. [2018.07.11 18:08:42 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mapstoasttask.dll
  939. [2018.07.11 18:08:42 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cellulardatacapabilityhandler.dll
  940. [2018.07.11 18:08:42 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mapsupdatetask.dll
  941. [2018.07.11 18:08:42 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsTelemetry.dll
  942. [2018.07.11 18:08:42 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nativemap.dll
  943. [2018.07.11 18:08:42 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsBtSvcProxy.dll
  944. [2018.07.11 18:08:41 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Core.dll
  945. [2018.07.11 18:08:41 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Core.dll
  946. [2018.06.29 22:05:18 | 000,000,000 | ---D | C] -- C:\Users\norbi\Apple
  947. [2018.06.29 22:03:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
  948. [2018.06.29 22:03:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
  949. [2018.06.29 22:02:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Packages
  950. [2018.06.24 11:00:58 | 000,000,000 | ---D | C] -- C:\iVMS-4200
  951. [2018.06.19 14:03:14 | 000,000,000 | ---D | C] -- C:\Users\norbi\AppData\Roaming\vlc
  952. [2018.06.19 14:03:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
  953. [2018.04.17 10:16:35 | 001,814,528 | ---- | C] (TODO: <Company name>) -- C:\Users\norbi\AppData\Local\Kaykix.exe
  954. [2018.04.17 10:16:35 | 001,814,528 | ---- | C] (TODO: <Company name>) -- C:\Users\norbi\AppData\Local\Alphazap.exe
  955. [2018.04.12 01:34:52 | 000,178,688 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\mpOE.exe
  956. [2018.04.12 01:34:52 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\LKvaHIuaGFsrl.exe
  957. [2018.03.26 14:57:45 | 006,860,752 | ---- | C] (NeoSoft Tools                                               ) -- C:\Users\norbi\AppData\Roaming\cexplorer.exe
  958. [2 C:\WINDOWS\SysNative\*.tmp files -> C:\WINDOWS\SysNative\*.tmp -> ]
  959. [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
  960. [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
  961. [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
  962.  
  963. [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
  964.  
  965. [2018.07.18 20:25:53 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
  966. [2018.07.18 19:29:59 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
  967. [2018.07.18 19:29:54 | 3383,795,712 | -HS- | M] () -- C:\hiberfil.sys
  968. [2018.07.18 19:22:41 | 000,002,344 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
  969. [2018.07.16 20:02:05 | 000,000,867 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
  970. [2018.07.16 19:42:06 | 000,211,160 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswStm.sys
  971. [2018.07.16 19:42:05 | 000,463,080 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswSP.sys
  972. [2018.07.16 19:42:05 | 000,381,584 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswVmm.sys
  973. [2018.07.16 19:42:04 | 000,159,640 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswMonFlt.sys
  974. [2018.07.16 19:42:04 | 000,085,968 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswRvrt.sys
  975. [2018.07.16 19:42:04 | 000,046,976 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswHwid.sys
  976. [2018.07.16 19:42:03 | 000,378,072 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\aswBoot.exe
  977. [2018.07.16 19:42:03 | 000,197,160 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswArPot.sys
  978. [2018.07.16 19:42:03 | 000,015,360 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswElam.sys
  979. [2018.07.16 19:42:00 | 000,111,872 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswRdr2.sys
  980. [2018.07.16 19:40:49 | 001,027,728 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswSnx.sys
  981. [2018.07.16 19:40:23 | 000,239,680 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswHdsKe.sys
  982. [2018.07.16 19:40:10 | 000,346,664 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswbloga.sys
  983. [2018.07.16 19:40:10 | 000,201,328 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswbidsha.sys
  984. [2018.07.16 19:40:10 | 000,059,592 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswbuniva.sys
  985. [2018.07.16 19:40:09 | 000,229,392 | ---- | M] (AVAST Software) -- C:\WINDOWS\SysNative\drivers\aswbidsdrivera.sys
  986. [2018.07.16 19:38:39 | 000,000,008 | RHS- | M] () -- C:\Users\norbi\ntuser.pol
  987. [2018.07.16 19:31:44 | 000,000,008 | RHS- | M] () -- C:\ProgramData\ntuser.pol
  988. [2018.07.16 19:20:48 | 002,412,544 | ---- | M] (Farbar) -- C:\Users\norbi\Desktop\FRST64.exe
  989. [2018.07.16 13:35:28 | 000,001,208 | ---- | M] () -- C:\Users\norbi\Desktop\Firefox.lnk
  990. [2018.07.16 09:19:22 | 000,000,002 | ---- | M] () -- C:\Users\norbi\AppData\Local\imw.ini
  991. [2018.07.15 20:19:09 | 000,001,583 | ---- | M] () -- C:\Users\norbi\Desktop\Grand Theft Auto V.lnk
  992. [2018.07.15 19:44:47 | 000,000,045 | ---- | M] () -- C:\WINDOWS\ddconfig.ini
  993. [2018.07.12 10:41:45 | 001,763,508 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI
  994. [2018.07.12 10:41:45 | 000,783,756 | ---- | M] () -- C:\WINDOWS\SysNative\perfh015.dat
  995. [2018.07.12 10:41:45 | 000,700,140 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat
  996. [2018.07.12 10:41:45 | 000,151,882 | ---- | M] () -- C:\WINDOWS\SysNative\perfc015.dat
  997. [2018.07.12 10:41:45 | 000,133,080 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat
  998. [2018.07.12 10:34:59 | 000,406,072 | ---- | M] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT
  999. [2018.07.06 16:20:55 | 000,792,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\generaltel.dll
  1000. [2018.07.06 16:20:50 | 001,610,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appraiser.dll
  1001. [2018.07.06 16:20:49 | 002,868,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aitstatic.exe
  1002. [2018.07.06 16:20:45 | 000,689,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aeinv.dll
  1003. [2018.07.06 16:20:45 | 000,451,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\invagent.dll
  1004. [2018.07.06 16:20:44 | 000,612,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devinv.dll
  1005. [2018.07.06 16:20:44 | 000,309,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acmigration.dll
  1006. [2018.07.06 16:20:43 | 000,144,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CompatTelRunner.exe
  1007. [2018.07.06 16:20:43 | 000,070,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32appinventorycsp.dll
  1008. [2018.07.06 16:17:10 | 003,932,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
  1009. [2018.07.06 15:56:43 | 004,708,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.pcshell.dll
  1010. [2018.07.06 15:53:56 | 000,386,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\zipfldr.dll
  1011. [2018.07.06 15:53:52 | 000,409,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsEnvironment.Desktop.dll
  1012. [2018.07.06 15:53:16 | 000,340,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AcGenral.dll
  1013. [2018.07.06 15:52:59 | 000,677,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winlogon.exe
  1014. [2018.07.06 15:52:15 | 001,787,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_health.dll
  1015. [2018.07.06 15:51:57 | 002,051,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_fs.dll
  1016. [2018.07.06 15:51:35 | 003,652,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
  1017. [2018.07.06 15:51:20 | 001,364,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcastdvruserservice.dll
  1018. [2018.07.06 15:51:10 | 001,004,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clusapi.dll
  1019. [2018.07.06 15:50:59 | 000,615,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\resutils.dll
  1020. [2018.07.06 15:49:37 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mcbuilder.exe
  1021. [2018.07.06 14:06:44 | 003,611,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe
  1022. [2018.07.06 13:54:36 | 000,485,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\resutils.dll
  1023. [2018.07.06 13:53:40 | 000,775,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clusapi.dll
  1024. [2018.07.06 13:52:47 | 001,308,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_health.dll
  1025. [2018.07.06 13:52:34 | 001,452,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_fs.dll
  1026. [2018.07.06 13:52:25 | 002,895,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32kfull.sys
  1027. [2018.07.06 13:51:26 | 002,401,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AcGenral.dll
  1028. [2018.07.06 13:51:10 | 000,080,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mcbuilder.exe
  1029. [2018.07.06 13:26:02 | 019,525,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\HologramCompositor.dll
  1030. [2018.07.06 13:25:19 | 023,863,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Hydrogen.dll
  1031. [2018.07.06 13:01:54 | 001,008,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.MixedRealityCapture.dll
  1032. [2018.07.06 09:32:09 | 000,480,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcntel.dll
  1033. [2018.07.06 09:31:58 | 000,462,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aepic.dll
  1034. [2018.07.06 09:31:57 | 000,035,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceCensus.exe
  1035. [2018.07.06 09:29:56 | 000,272,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SgrmEnclave.dll
  1036. [2018.07.06 09:29:55 | 000,269,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SgrmEnclave_secure.dll
  1037. [2018.07.06 09:27:29 | 001,174,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvix64.exe
  1038. [2018.07.06 09:27:27 | 001,063,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecConfig.efi
  1039. [2018.07.06 09:27:27 | 001,012,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvax64.exe
  1040. [2018.07.06 09:27:27 | 000,567,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcblaunch.exe
  1041. [2018.07.06 09:27:19 | 000,057,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.ShellCommon.Broker.dll
  1042. [2018.07.06 09:27:15 | 000,134,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvloader.dll
  1043. [2018.07.06 09:26:19 | 000,930,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWAHost.exe
  1044. [2018.07.06 09:26:01 | 001,148,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsvr.dll
  1045. [2018.07.06 09:26:00 | 000,766,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnsapi.dll
  1046. [2018.07.06 09:25:54 | 002,571,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KernelBase.dll
  1047. [2018.07.06 09:25:51 | 001,945,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntdll.dll
  1048. [2018.07.06 09:25:50 | 000,267,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\browserbroker.dll
  1049. [2018.07.06 09:25:48 | 000,335,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\moshostcore.dll
  1050. [2018.07.06 09:25:47 | 000,885,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CoreMessaging.dll
  1051. [2018.07.06 09:25:45 | 009,147,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
  1052. [2018.07.06 09:25:38 | 001,018,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ucrtbase.dll
  1053. [2018.07.06 09:25:38 | 000,483,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ucrtbase_enclave.dll
  1054. [2018.07.06 09:24:39 | 000,380,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aepic.dll
  1055. [2018.07.06 09:16:47 | 000,567,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CoreMessaging.dll
  1056. [2018.07.06 09:14:19 | 000,829,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WWAHost.exe
  1057. [2018.07.06 09:14:09 | 001,175,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ucrtbase.dll
  1058. [2018.07.06 09:14:09 | 000,988,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsvr.dll
  1059. [2018.07.06 09:10:15 | 025,845,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll
  1060. [2018.07.06 09:07:07 | 022,006,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
  1061. [2018.07.06 09:03:04 | 004,371,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeContent.dll
  1062. [2018.07.06 09:02:46 | 009,084,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BingMaps.dll
  1063. [2018.07.06 09:01:56 | 007,057,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mos.dll
  1064. [2018.07.06 09:01:23 | 005,883,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mos.dll
  1065. [2018.07.06 09:01:13 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsBtSvcProxy.dll
  1066. [2018.07.06 09:01:01 | 000,104,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NotificationControllerPS.dll
  1067. [2018.07.06 09:00:53 | 000,094,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsCSP.dll
  1068. [2018.07.06 09:00:41 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsTelemetry.dll
  1069. [2018.07.06 09:00:32 | 000,092,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MosHostClient.dll
  1070. [2018.07.06 09:00:22 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nativemap.dll
  1071. [2018.07.06 09:00:04 | 000,151,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsBtSvc.dll
  1072. [2018.07.06 09:00:03 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mapstoasttask.dll
  1073. [2018.07.06 08:59:58 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mapsupdatetask.dll
  1074. [2018.07.06 08:59:57 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MosStorage.dll
  1075. [2018.07.06 08:59:46 | 003,381,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapRouter.dll
  1076. [2018.07.06 08:59:39 | 000,453,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cloudAP.dll
  1077. [2018.07.06 08:59:35 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tokenbinding.dll
  1078. [2018.07.06 08:59:23 | 000,200,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Geolocation.dll
  1079. [2018.07.06 08:59:22 | 000,334,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NmaDirect.dll
  1080. [2018.07.06 08:59:15 | 006,647,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BingMaps.dll
  1081. [2018.07.06 08:59:00 | 001,153,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Sensors.dll
  1082. [2018.07.06 08:58:59 | 000,224,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Cortana.dll
  1083. [2018.07.06 08:58:59 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tokenbinding.dll
  1084. [2018.07.06 08:58:58 | 000,894,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webplatstorageserver.dll
  1085. [2018.07.06 08:58:54 | 001,307,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSVPXENC.dll
  1086. [2018.07.06 08:58:52 | 002,825,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapGeocoder.dll
  1087. [2018.07.06 08:58:49 | 000,236,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Core.dll
  1088. [2018.07.06 08:58:40 | 000,107,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CredProv2faHelper.dll
  1089. [2018.07.06 08:58:32 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\moshost.dll
  1090. [2018.07.06 08:58:31 | 000,154,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakradiag.dll
  1091. [2018.07.06 08:58:28 | 000,530,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapConfiguration.dll
  1092. [2018.07.06 08:58:17 | 000,670,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadcloudap.dll
  1093. [2018.07.06 08:58:11 | 004,867,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
  1094. [2018.07.06 08:58:02 | 001,931,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgeangle.dll
  1095. [2018.07.06 08:57:48 | 000,676,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Devices.dll
  1096. [2018.07.06 08:57:44 | 007,579,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll
  1097. [2018.07.06 08:57:42 | 005,779,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll
  1098. [2018.07.06 08:57:37 | 000,898,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcWebFilter.dll
  1099. [2018.07.06 08:57:37 | 000,262,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NmaDirect.dll
  1100. [2018.07.06 08:57:33 | 000,614,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EdgeManager.dll
  1101. [2018.07.06 08:57:32 | 000,839,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Sensors.dll
  1102. [2018.07.06 08:57:19 | 000,813,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeManager.dll
  1103. [2018.07.06 08:57:06 | 000,392,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapConfiguration.dll
  1104. [2018.07.06 08:56:56 | 001,986,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapGeocoder.dll
  1105. [2018.07.06 08:56:54 | 000,181,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Core.dll
  1106. [2018.07.06 08:56:49 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CredProv2faHelper.dll
  1107. [2018.07.06 08:56:48 | 000,331,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgeIso.dll
  1108. [2018.07.06 08:56:47 | 000,533,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\QuietHours.dll
  1109. [2018.07.06 08:56:46 | 000,814,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieproxy.dll
  1110. [2018.07.06 08:56:45 | 001,708,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSPhotography.dll
  1111. [2018.07.06 08:56:36 | 001,535,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
  1112. [2018.07.06 08:56:33 | 001,567,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpeechPal.dll
  1113. [2018.07.06 08:56:30 | 000,578,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webplatstorageserver.dll
  1114. [2018.07.06 08:56:27 | 000,508,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Notifications.dll
  1115. [2018.07.06 08:56:27 | 000,365,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieproxy.dll
  1116. [2018.07.06 08:56:26 | 000,330,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncryptprov.dll
  1117. [2018.07.06 08:56:16 | 000,327,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BioCredProv.dll
  1118. [2018.07.06 08:56:13 | 001,225,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsStore.dll
  1119. [2018.07.06 08:56:12 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakradiag.dll
  1120. [2018.07.06 08:56:06 | 000,784,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcsvc.dll
  1121. [2018.07.06 08:56:01 | 001,817,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpncore.dll
  1122. [2018.07.06 08:55:59 | 001,361,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSPhotography.dll
  1123. [2018.07.06 08:55:32 | 001,264,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\JpMapControl.dll
  1124. [2018.07.06 08:55:30 | 001,395,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBroker.dll
  1125. [2018.07.06 08:55:25 | 000,251,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msIso.dll
  1126. [2018.07.06 08:55:16 | 000,619,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WpcWebFilter.dll
  1127. [2018.07.06 08:54:56 | 000,275,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncryptprov.dll
  1128. [2018.07.06 08:54:54 | 001,214,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NotificationController.dll
  1129. [2018.07.06 08:54:50 | 002,236,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
  1130. [2018.07.06 08:54:41 | 000,999,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBroker.dll
  1131. [2018.07.06 08:54:41 | 000,884,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NMAA.dll
  1132. [2018.07.06 08:54:39 | 000,884,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapControlCore.dll
  1133. [2018.07.06 08:54:28 | 000,943,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BingOnlineServices.dll
  1134. [2018.07.06 08:54:28 | 000,254,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BioCredProv.dll
  1135. [2018.07.06 08:54:23 | 000,542,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
  1136. [2018.07.06 08:54:19 | 002,449,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapRouter.dll
  1137. [2018.07.06 08:54:18 | 000,505,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgeIso.dll
  1138. [2018.07.06 08:54:01 | 000,978,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\JpMapControl.dll
  1139. [2018.07.06 08:53:44 | 000,729,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NMAA.dll
  1140. [2018.07.06 08:53:23 | 000,705,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapControlCore.dll
  1141. [2018.07.06 08:53:07 | 000,713,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BingOnlineServices.dll
  1142. [2018.07.06 07:41:40 | 000,001,310 | ---- | M] () -- C:\WINDOWS\SysNative\tcbres.wim
  1143. [2018.06.29 06:16:23 | 000,868,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.MixedRealityCapture.dll
  1144. [2018.06.29 03:13:37 | 000,835,064 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
  1145. [2018.06.29 03:13:37 | 000,179,704 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
  1146. [2018.06.21 16:05:42 | 000,011,264 | -H-- | M] () -- C:\Users\norbi\Desktop\photothumb.db
  1147. [2 C:\WINDOWS\SysNative\*.tmp files -> C:\WINDOWS\SysNative\*.tmp -> ]
  1148. [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
  1149. [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
  1150. [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
  1151.  
  1152. [color=#E56717]========== Files Created - No Company Name ==========[/color]
  1153.  
  1154. [2018.07.18 19:22:41 | 000,002,385 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
  1155. [2018.07.18 19:22:41 | 000,002,344 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
  1156. [2018.07.16 19:38:39 | 000,000,008 | RHS- | C] () -- C:\Users\norbi\ntuser.pol
  1157. [2018.07.16 19:31:44 | 000,000,008 | RHS- | C] () -- C:\ProgramData\ntuser.pol
  1158. [2018.07.16 09:19:22 | 000,000,002 | ---- | C] () -- C:\Users\norbi\AppData\Local\imw.ini
  1159. [2018.07.15 19:44:10 | 000,000,045 | ---- | C] () -- C:\WINDOWS\ddconfig.ini
  1160. [2018.07.11 18:09:58 | 001,308,672 | ---- | C] () -- C:\WINDOWS\SysNative\FaceProcessor.dll
  1161. [2018.07.11 18:09:08 | 000,542,888 | ---- | C] () -- C:\WINDOWS\SysNative\FaceProcessorCore.dll
  1162. [2018.07.11 18:08:44 | 000,001,310 | ---- | C] () -- C:\WINDOWS\SysNative\tcbres.wim
  1163. [2018.07.11 18:08:37 | 000,058,524 | ---- | C] () -- C:\WINDOWS\SysNative\srms.dat
  1164. [2018.06.15 22:40:48 | 000,151,040 | ---- | C] () -- C:\WINDOWS\SysWow64\drivers\NpfDetect.dll
  1165. [2018.06.15 22:40:48 | 000,069,632 | ---- | C] () -- C:\WINDOWS\SysWow64\drivers\NpfDetectApp.exe
  1166. [2018.06.15 08:13:16 | 002,841,312 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.Mirage.dll
  1167. [2018.06.05 17:12:36 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
  1168. [2018.06.05 17:07:25 | 000,018,716 | ---- | C] () -- C:\WINDOWS\SysWow64\srms-apr.dat
  1169. [2018.05.21 15:02:21 | 000,828,216 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1.dll
  1170. [2018.05.21 15:02:21 | 000,575,800 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo.exe
  1171. [2018.04.17 11:34:14 | 000,004,608 | ---- | C] () -- C:\WINDOWS\SECOH-QAD.exe
  1172. [2018.04.17 11:34:14 | 000,003,584 | ---- | C] () -- C:\WINDOWS\SECOH-QAD.dll
  1173. [2018.04.17 10:16:42 | 001,895,384 | ---- | C] () -- C:\Users\norbi\AppData\Local\Warmtech.bin
  1174. [2018.04.17 10:16:36 | 007,602,176 | ---- | C] () -- C:\Users\norbi\AppData\Local\agent.dat
  1175. [2018.04.17 10:16:36 | 001,989,393 | ---- | C] () -- C:\Users\norbi\AppData\Local\Alphazap.tst
  1176. [2018.04.17 10:16:36 | 000,126,464 | ---- | C] () -- C:\Users\norbi\AppData\Local\noah.dat
  1177. [2018.04.17 10:16:36 | 000,070,896 | ---- | C] () -- C:\Users\norbi\AppData\Local\Config.xml
  1178. [2018.04.17 10:16:36 | 000,005,568 | ---- | C] () -- C:\Users\norbi\AppData\Local\md.xml
  1179. [2018.04.17 10:16:35 | 000,278,509 | ---- | C] () -- C:\Users\norbi\AppData\Local\Kaykix.tst
  1180. [2018.04.17 10:16:25 | 000,929,792 | ---- | C] () -- C:\Users\norbi\AppData\Local\sham.db
  1181. [2018.04.17 10:16:25 | 000,140,800 | ---- | C] () -- C:\Users\norbi\AppData\Local\installer.dat
  1182. [2018.04.12 01:38:34 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
  1183. [2018.04.12 01:38:34 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
  1184. [2018.04.12 01:34:55 | 000,518,144 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
  1185. [2018.04.12 01:34:50 | 000,054,272 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
  1186. [2018.04.12 01:34:49 | 000,002,404 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
  1187. [2018.04.12 01:34:47 | 000,364,200 | ---- | C] () -- C:\WINDOWS\SysWow64\InputHost.dll
  1188. [2018.04.12 01:34:46 | 003,575,808 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.Analysis.dll
  1189. [2018.04.12 01:34:46 | 000,025,600 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.WARP.JITService.exe
  1190. [2018.04.12 01:34:45 | 000,329,216 | ---- | C] () -- C:\WINDOWS\SysWow64\ssdm.dll
  1191. [2018.04.12 01:34:45 | 000,223,232 | ---- | C] () -- C:\WINDOWS\SysWow64\HeatCore.dll
  1192. [2018.04.12 01:34:45 | 000,167,640 | ---- | C] () -- C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat
  1193. [2018.04.12 01:34:45 | 000,111,616 | ---- | C] () -- C:\WINDOWS\SysWow64\WindowsDefaultHeatProcessor.dll
  1194. [2018.04.12 01:34:45 | 000,055,808 | ---- | C] () -- C:\WINDOWS\SysWow64\xboxgipsynthetic.dll
  1195. [2018.04.12 01:34:36 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
  1196. [2018.04.12 01:34:30 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
  1197. [2018.04.10 14:04:41 | 000,000,036 | ---- | C] () -- C:\WINDOWS\progress.ini
  1198. [2018.03.02 04:04:08 | 000,828,216 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1-1-1-70-0.dll
  1199. [2018.03.02 04:03:58 | 000,575,800 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo-1-1-1-70-0.exe
  1200. [2017.11.23 12:27:35 | 000,000,102 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.400.64.bc
  1201. [2017.02.25 01:23:24 | 000,525,600 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1-1-0-42-0.dll
  1202. [2017.02.25 01:23:20 | 000,233,760 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo-1-1-0-42-0.exe
  1203.  
  1204. [color=#E56717]========== ZeroAccess Check ==========[/color]
  1205.  
  1206.  
  1207. [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
  1208.  
  1209. [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
  1210.  
  1211. [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
  1212.  
  1213. [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
  1214.  
  1215. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
  1216. "" = C:\Windows\SysNative\windows.storage.dll -- [2018.06.15 07:09:39 | 007,436,120 | ---- | M] (Microsoft Corporation)
  1217. "ThreadingModel" = Apartment
  1218.  
  1219. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
  1220. "" = %SystemRoot%\system32\windows.storage.dll -- [2018.06.15 07:03:48 | 006,043,600 | ---- | M] (Microsoft Corporation)
  1221. "ThreadingModel" = Apartment
  1222.  
  1223. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
  1224. "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2018.04.12 01:34:40 | 000,973,312 | ---- | M] (Microsoft Corporation)
  1225. "ThreadingModel" = Free
  1226.  
  1227. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
  1228. "" = %systemroot%\system32\wbem\fastprox.dll -- [2018.04.12 01:34:55 | 000,785,408 | ---- | M] (Microsoft Corporation)
  1229. "ThreadingModel" = Free
  1230.  
  1231. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
  1232. "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2018.04.12 01:34:40 | 000,524,288 | ---- | M] (Microsoft Corporation)
  1233. "ThreadingModel" = Both
  1234.  
  1235. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
  1236.  
  1237. < End of report >
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
 
Top