Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 13-11-2019 durchgeführt von omen6 (Administrator) auf DESKTOP-T6NNM1G (HP 870-234ng) (14-11-2019 18:51:29) Gestartet von C:\Users\omen6\Downloads Geladene Profile: omen6 (Verfügbare Profile: omen6) Platform: Windows 10 Home Version 1903 18362.476 (X64) Sprache: Niemiecki (Niemcy) Standard-Browser: Opera Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG TuneUp\TuneupSvc.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG TuneUp\TuneupUI.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AvLaunch.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe (Corel Corporation -> WinZip Computing) C:\Program Files\WinZip\WzPreloader.exe (Disc Soft Ltd -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (Even Balance, Inc. -> ) C:\Windows\System32\PnkBstrA.exe (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Express\express.exe (Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP DeskJet 4530 series\Bin\ScanToPCActivationApp.exe (Hewlett-Packard Company -> ) C:\Program Files (x86)\HP\HPPhoenixCtrl\HPCpuUsage.exe (Hewlett-Packard Company -> HP Development Company, L.P.) C:\Program Files (x86)\HP\HPPhoenixCtrl\HPMSGSVC.exe (HP Inc. -> ) C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe (INFRAWARE, INC -> INFRAWARE, Inc) C:\Program Files (x86)\Polaris Office\Office8\Binary\POSyncCenter.exe (INFRAWARE, INC -> INFRAWARE, Inc) C:\Program Files (x86)\Polaris Office\Office8\Binary\PSNoticeChecker.exe (INFRAWARE, INC -> INFRAWARE, Inc) C:\Program Files (x86)\Polaris Office\Office8\Binary\PViewManager.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel(R) RMT -> Intel Corporation) C:\Program Files\Intel\Intel(R) Ready Mode Technology\IRMTService.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\uihost.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\omen6\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (SplitmediaLabs Limited -> SplitMediaLabs Limited) C:\Users\omen6\AppData\Roaming\SplitmediaLabs\Player.me\cef3_2987\Player.bp.exe (SplitmediaLabs Limited -> SplitMediaLabs Limited) C:\Users\omen6\AppData\Roaming\SplitmediaLabs\Player.me\cef3_2987\Player.bp.exe (SplitmediaLabs Limited -> SplitmediaLabs Limited) C:\Users\omen6\AppData\Roaming\SplitmediaLabs\Player.me\Player.me.exe (SplitmediaLabs Limited -> SplitmediaLabs Limited) C:\Users\omen6\AppData\Roaming\SplitmediaLabs\Player.me\PlayerGC32.exe (SplitmediaLabs Limited -> SplitmediaLabs Limited) C:\Users\omen6\AppData\Roaming\SplitmediaLabs\Player.me\PlayerGC64.exe (SplitmediaLabs Limited -> SplitmediaLabs) C:\Users\omen6\AppData\Roaming\SplitmediaLabs\Player.me\PlayerLauncher.exe (The CefSharp Authors) [Datei ist nicht signiert] C:\Program Files (x86)\Garmin\Express\CefSharp.BrowserSubprocess.exe (Wargaming.net Limited -> Wargaming.net) D:\Wargaming.net\GameCenter\wargamingerrormonitor.exe (Wargaming.net Limited -> Wargaming.net) D:\Wargaming.net\GameCenter\wgc.exe (WinZip Computing LLC -> WinZip Computing, S.L.) C:\Program Files\WinZip\FAHWindow64.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235944 2019-03-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-05-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [C:\WINDOWS\system32\V0640Ext.ax] => C:\WINDOWS\system32\RegSvr32.exe /s C:\WINDOWS\system32\V0640Ext.ax HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [2862032 2019-01-30] (Corel Corporation -> Corel Corporation) HKLM\...\Run: [WinZip PreLoader] => C:\Program Files\WinZip\WzPreloader.exe [130624 2019-01-30] (Corel Corporation -> WinZip Computing) HKLM\...\Run: [WinZip FAH] => C:\Program Files\WinZip\FAHConsole.exe [436416 2019-01-30] (WinZip Computing LLC -> WinZip Computing, S.L.) HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [316336 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [HPMSGSVC] => C:\Program Files (x86)\HP\HPPhoenixCtrl\HPMSGSVC.exe [502032 2016-06-16] (Hewlett-Packard Company -> HP Development Company, L.P.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [C:\WINDOWS\System32\V0640Ext.ax] => C:\WINDOWS\system32\RegSvr32.exe /s C:\WINDOWS\System32\V0640Ext.ax HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [707624 2018-08-08] (HP Inc. -> HP Inc.) HKU\S-1-5-21-298913981-1024801001-3169498018-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [5094080 2017-07-03] (Disc Soft Ltd -> Disc Soft Ltd) HKU\S-1-5-21-298913981-1024801001-3169498018-1001\...\Run: [Wargaming.net Game Center] => D:\Wargaming.net\GameCenter\wgc.exe [2408312 2019-11-12] (Wargaming.net Limited -> Wargaming.net) HKU\S-1-5-21-298913981-1024801001-3169498018-1001\...\Run: [HP DeskJet 4530 series (NET)] => C:\Program Files\HP\HP DeskJet 4530 series\Bin\ScanToPCActivationApp.exe [3770504 2017-04-06] (Hewlett Packard -> HP Inc.) HKU\S-1-5-21-298913981-1024801001-3169498018-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [30860272 2019-06-18] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-298913981-1024801001-3169498018-1001\...\Run: [PolarisOffice] => C:\Program Files (x86)\Polaris Office\Office8\Binary\POSyncCenter.exe [760496 2019-08-20] (INFRAWARE, INC -> INFRAWARE, Inc) HKU\S-1-5-21-298913981-1024801001-3169498018-1001\...\Run: [Browser Manager] => C:\Users\omen6\AppData\Local\Yandex\BrowserManager\MBLauncher.exe HKU\S-1-5-21-298913981-1024801001-3169498018-1001\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Polaris Office\Office8\Binary\PViewManager.exe [310448 2019-08-20] (INFRAWARE, INC -> INFRAWARE, Inc) HKU\S-1-5-21-298913981-1024801001-3169498018-1001\...\Winlogon: [Shell] %comspec% <==== ACHTUNG HKU\S-1-5-21-298913981-1024801001-3169498018-1001\...\Command Processor: @mode 20,5 & tasklist /FI "IMAGENAME eq SoundMixer.exe" 2>NUL | find /I /N "SoundMixer.exe">NUL && exit & if exist ( start /MIN "" & tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) else ( tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) <==== ACHTUNG Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AVG TuneUp.lnk [2019-10-25] ShortcutTarget: AVG TuneUp.lnk -> C:\Program Files (x86)\AVG\AVG TuneUp\TuneupUI.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2017-02-08] ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS) FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {00BC52D6-7501-4AA9-AD13-BF86D1F23D66} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [25128 2017-11-23] (HP Inc. -> ) Task: {01602C08-3892-4D0A-A62C-1AD743DCFB23} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.) Task: {03A43BCF-B263-4A2E-A32A-1E8394E062D0} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs] Task: {065D246D-4E99-404C-940F-2CFA98391ADC} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3788144 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {13D4F3FB-CB2A-4C8A-BF1A-0EEC8DE8F9E1} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2430792 2019-10-22] (Overwolf Ltd -> Overwolf LTD) Task: {18B0F748-5003-4C78-A2BA-494F1C3DEA86} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {19B3A043-1DA9-4369-A552-A5075818687F} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1AD0B354-EDC8-438E-8AA7-0611E8FBE815} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {23041B92-F2B3-49E4-8EBE-65E860960188} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {27B30C12-8D8C-452F-AEB2-7615DBFD050A} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [40432 2019-06-18] (Garmin International, Inc. -> ) Task: {2962C345-AA1E-4EBE-AC5F-961B50627C9F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2C12FD51-FA15-4A33-9745-59F98E75911F} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_293_pepper.exe [1453112 2019-11-14] (Adobe Inc. -> Adobe) Task: {2C8D5E9E-9165-40C4-9F9A-84DE31F6701C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [250232 2019-10-08] (HP Inc. -> HP Inc.) Task: {348FB892-D497-403E-9605-5C9E4901F1D8} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {37C53834-7115-4E8F-A12D-75B6E7C990CA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [144248 2019-10-10] (HP Inc. -> HP Inc.) Task: {39A975FA-AB2D-4834-BEDB-3470AC0CA914} - System32\Tasks\WinZip Update Notifier 1 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2862032 2019-01-30] (Corel Corporation -> Corel Corporation) Task: {42C6AF9C-6E6E-48EB-8810-3FB08DE99324} - System32\Tasks\WinZip Update Notifier 3 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2862032 2019-01-30] (Corel Corporation -> Corel Corporation) Task: {473F29A3-B1BC-4D03-92DF-A7A74795B5F1} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe [459680 2017-07-28] (HP Inc. -> ) Task: {49B78C19-4516-4858-80E2-1FAB190DCF13} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant printer driver installation => C:\WINDOWS\TEMP\sp80767.exe <==== ACHTUNG Task: {5963FBCF-5716-488F-AA4C-630D5BCB76E5} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-11-14] (Adobe Inc. -> Adobe) Task: {5BEB7144-15B0-479E-B598-E0F9E198E442} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation) Task: {62B6D034-EC45-4738-A49C-64FF84C09639} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-omen69x@interia.pl => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-05-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {7073F3BB-3CC8-406D-89D6-0F43FE07193A} - System32\Tasks\Playerme Check Updates => C:\Users\omen6\AppData\Roaming\SplitmediaLabs\Player.me\PlayerLauncher.exe [1383416 2019-07-12] (SplitmediaLabs Limited -> SplitmediaLabs) Task: {7B82ECF7-5C19-41FB-A3E6-881B1C3D291B} - System32\Tasks\HPCeeScheduleForomen6 => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [97656 2018-09-11] (HP Inc. -> HP Inc.) Task: {7D9FC98E-89D2-440A-9C70-A0B9CF1AFC4C} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe Task: {8628A4E8-B49C-4B11-AA01-750ED55C13E7} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1905072 2019-09-18] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) Task: {87502DF0-F3B1-4ED5-A52A-27987ADAE32A} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.) Task: {8A0CF9EA-D80A-4366-B9F7-334354CD2AC4} - System32\Tasks\Playerme Run on startup => C:\Users\omen6\AppData\Roaming\SplitmediaLabs\Player.me\PlayerLauncher.exe [1383416 2019-07-12] (SplitmediaLabs Limited -> SplitmediaLabs) Task: {8E1DCE24-D3CE-4ACC-BA82-4BE4A07E9103} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {92100D2A-EB32-4127-A306-82A3ED654024} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-08-02] (Dropbox, Inc -> Dropbox, Inc.) Task: {93B0E3CA-9CC5-4D9D-961C-32D90ACD9CC2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1094008 2019-10-10] (HP Inc. -> HP Inc.) Task: {950B497A-8778-49E0-B049-91B5182EAF8E} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-08-02] (Dropbox, Inc -> Dropbox, Inc.) Task: {9C4CE131-168E-4447-AC87-96CB37A369E4} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [3981232 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) Task: {AD7A009E-C1F5-4166-9FDB-AF691D13C95B} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {B72EF549-3A00-4798-80F1-87A4C51CA3DF} - System32\Tasks\AVG TuneUp Update => C:\Program Files (x86)\AVG\AVG TuneUp\TUNEUpdate.exe [1706528 2019-10-25] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) Task: {BAD0D617-A7AF-41D9-BDF0-969B85365C82} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-09-18] (AVAST Software s.r.o. -> AVAST Software) Task: {BDAE1046-C315-499C-A0D3-685770AF26DE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems) Task: {C07C4F45-7C33-48D3-A0BF-13A3F13C38B8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.) Task: {C09EAF55-205E-4CBF-B54C-0DD9CBF2C348} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_TH74I4G09Q => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1094008 2019-10-10] (HP Inc. -> HP Inc.) Task: {C33B3F92-FF60-4D17-AB40-969E4B98FB95} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle America, Inc. -> Oracle Corporation) Task: {C4A2128E-1558-4E3E-B2C9-8A12F011248C} - System32\Tasks\AVG EUpdate Task => C:\Program Files (x86)\AVG\Setup\avgsetupx.exe [4072504 2018-06-21] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.) Task: {CA9FAF77-E486-42A2-8ED9-F13860A27333} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.) Task: {CBC11523-C158-4F17-A7DD-AEF9B2C748F2} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235944 2019-03-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {D2EEF541-D298-4DF9-8FE2-FFB75587D2A3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.) Task: {D5DEE465-A3D2-44E7-8244-CBAA197DCCF5} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation) Task: {D95406A7-AC83-477F-ADFC-C0E76E1C145E} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [584488 2016-08-31] (Dropbox, Inc -> ) Task: {E36F816B-50E1-4802-A9A1-93E79493BAC4} - System32\Tasks\HPCustParticipation HP DeskJet 4530 series => C:\Program Files\HP\HP DeskJet 4530 series\Bin\HPCustPartic.exe [6438536 2017-04-06] (Hewlett Packard -> HP Inc.) Task: {EAB68832-E2BF-4169-AC80-55457894EAB8} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_293_Plugin.exe [1457720 2019-11-13] (Adobe Inc. -> Adobe) Task: {EB2727FB-2BDD-4A07-A9A7-017EC913DAAA} - System32\Tasks\Opera scheduled Autoupdate 1501674915 => C:\Program Files\Opera\launcher.exe [1534488 2019-11-05] (Opera Software AS -> Opera Software) Task: {EC0502A8-F802-41DE-A4FC-B9B8DC88A525} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1094008 2019-10-10] (HP Inc. -> HP Inc.) Task: {FC46833F-29C2-4D3F-856A-FDD889469A83} - System32\Tasks\WinZip Update Notifier 2 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2862032 2019-01-30] (Corel Corporation -> Corel Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForomen6.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{8d2b76fd-383f-4110-a8e8-653686a93b6e}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{922a35ef-0924-43ff-9c54-c807630b4cc0}: [DhcpNameServer] 195.234.128.139 195.234.128.140 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <==== ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-298913981-1024801001-3169498018-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.yandex.ru/?win=408&clid=2341035-18 SearchScopes: HKU\S-1-5-21-298913981-1024801001-3169498018-1001 -> DefaultScope {7164E247-F1AB-46E6-8B44-C18E577D7AB1} URL = hxxps://yandex.ru/search/?win=408&clid=2341036-18&text={searchTerms} SearchScopes: HKU\S-1-5-21-298913981-1024801001-3169498018-1001 -> d16428f4-f521-11e9-a1a4-10050142a9cb URL = hxxp://www.go-setting.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-298913981-1024801001-3169498018-1001 -> {7164E247-F1AB-46E6-8B44-C18E577D7AB1} URL = hxxps://yandex.ru/search/?win=408&clid=2341036-18&text={searchTerms} BHO: Kein Name -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> Keine Datei BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-11-10] (McAfee, LLC -> McAfee, Inc.) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -> HP Inc.) BHO-x32: Kein Name -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> Keine Datei BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-03-18] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-11-10] (McAfee, LLC -> McAfee, Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-03-18] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -> HP Inc.) Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-298913981-1024801001-3169498018-1001 -> hxxps://www.yandex.ru/?win=408&clid=2341035-18 FireFox: ======== FF DefaultProfile: kqvojbtk.default FF ProfilePath: C:\Users\omen6\AppData\Roaming\Mozilla\Firefox\Profiles\kqvojbtk.default [2019-10-24] FF Homepage: Mozilla\Firefox\Profiles\kqvojbtk.default -> hxxps://www.yandex.ru/?win=408&clid=2341035-18 FF SearchPlugin: C:\Users\omen6\AppData\Roaming\Mozilla\Firefox\Profiles\kqvojbtk.default\searchplugins\bing-lavasoft-ff59.xml [2018-10-26] FF SearchPlugin: C:\Users\omen6\AppData\Roaming\Mozilla\Firefox\Profiles\kqvojbtk.default\searchplugins\yandex.ru-20191522.xml [2019-10-23] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-11-10] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_293.dll [2019-11-13] (Adobe Inc. -> ) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_293.dll [2019-11-13] (Adobe Inc. -> ) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [Datei ist nicht signiert] FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-03-18] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-03-18] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-11] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems Incorporated -> Adobe Systems) Chrome: ======= CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-298913981-1024801001-3169498018-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ldgpjdiadomhinpimgchmeembbgojnjk] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx Opera: ======= OPR Notifications: hxxps://niezlomni.com; hxxps://pl.nametests.com; hxxps://www.facebook.com; hxxps://www.mediaexpert.pl; hxxps://www.reddit.com OPR StartupUrls: "hxxps://www.yandex.ru/?win=408&clid=2341035-18" OPR Session Restore: -> ist aktiviert. OPR Extension: (AliTools shopping assistant) - C:\Users\omen6\AppData\Roaming\Opera Software\Opera Stable\Extensions\nkekkheibgkgeepapinkalkongndfajn [2019-11-13] OPR Extension: (Adblock Plus - free ad blocker) - C:\Users\omen6\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2019-10-23] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [996928 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [6133752 2019-10-09] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R2 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [110560 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7234640 2018-07-15] (BattlEye Innovations e.K. -> ) R2 CleanupPSvc; C:\Program Files (x86)\AVG\AVG TuneUp\TuneupSvc.exe [10301176 2019-07-24] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-08-02] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-08-02] (Dropbox, Inc -> Dropbox, Inc.) R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2289856 2017-07-03] (Disc Soft Ltd -> Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-10-18] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1321096 2018-09-28] (HP Inc. -> HP Inc.) S2 HPJumpStartBridge; C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [471040 2017-07-28] (HP Inc. -> HP Inc.) S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP) S2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [360312 2019-10-14] (HP Inc. -> HP Inc.) S2 HPTouchpointAnalyticsService; C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe [332216 2017-11-23] (HP Inc. -> HP Inc.) R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [628768 2017-07-13] (HP Inc. -> HP Inc.) R2 ibtsiva; C:\WINDOWS\System32\ibtsiva.exe [529912 2018-12-21] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [743728 2017-11-16] (Intel(R) Trust Services -> Intel(R) Corporation) S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [720184 2017-11-16] (Intel(R) Trust Services -> Intel(R) Corporation) R2 IRMTService; C:\Program Files\Intel\Intel(R) Ready Mode Technology\IRMTService.exe [182896 2016-10-13] (Intel(R) RMT -> Intel Corporation) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [205968 2017-12-03] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [913208 2019-11-10] (McAfee, LLC -> McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [310880 2018-09-05] (Intel Corporation -> ) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2425136 2019-11-12] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3303736 2019-11-12] (Electronic Arts, Inc. -> Electronic Arts) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2430792 2019-10-22] (Overwolf Ltd -> Overwolf LTD) R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2018-11-18] (Even Balance, Inc. -> ) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324584 2019-03-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\NisSrv.exe [2552416 2019-08-20] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MsMpEng.exe [108832 2019-08-20] (Microsoft Windows Publisher -> Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [4059744 2018-09-05] (Intel Corporation -> Intel® Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R0 avgArDisk; C:\WINDOWS\System32\drivers\avgArDisk.sys [37880 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [205600 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriver.sys [275232 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsh.sys [210328 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniv.sys [65376 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R0 avgElam; C:\WINDOWS\System32\drivers\avgElam.sys [16520 2019-10-03] (Microsoft Windows Early Launch Anti-malware Publisher -> AVG Technologies CZ, s.r.o.) R1 avgKbd; C:\WINDOWS\System32\drivers\avgKbd.sys [43512 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R2 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [171640 2019-11-02] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [111096 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [84560 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [848688 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [461216 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R2 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [236288 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [317304 2019-10-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-08-04] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-08-04] (Disc Soft Ltd -> Disc Soft Ltd) S3 GridinSoftInetSecurityDriver; C:\WINDOWS\system32\DRIVERS\gsInetSecurity.sys [107784 2019-08-08] (GridinSoft, LLC -> GridinSoft LLC) R3 ibtusb; C:\WINDOWS\System32\drivers\ibtusb.sys [199192 2018-05-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) R3 IntelReadyModeDriver; C:\WINDOWS\System32\drivers\IntelReadyModeDriver.sys [34720 2016-10-13] (Intel Corporation -> Intel Corporation) R3 Netwtw04; C:\WINDOWS\system32\DRIVERS\Netwtw04.sys [8723648 2018-10-12] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvhdc.inf_amd64_1683e6c24d03a407\nvlddmkm.sys [21776528 2019-07-09] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-06-13] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation) S3 pmxdrv; C:\WINDOWS\system32\drivers\pmxdrv.sys [31152 2018-03-08] (PAIPTAC Driver -> ) R0 PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation -> Corel Corporation) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [984032 2019-03-12] (Realtek Semiconductor Corp. -> Realtek ) R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [424384 2019-03-12] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation) R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [41104 2016-10-18] (SteelSeries ApS -> SteelSeries ApS) S3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [52960 2016-10-05] (SteelSeries ApS -> SteelSeries ApS) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 TrojanKillerDriver; C:\WINDOWS\System32\DRIVERS\gtkdrv.sys [38216 2019-08-08] (GridinSoft, LLC -> GridinSoft LLC) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [47496 2019-08-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [344288 2019-08-20] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54496 2019-08-20] (Microsoft Windows -> Microsoft Corporation) U3 aspnet_state; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2019-11-14 18:51 - 2019-11-14 18:52 - 000040745 _____ C:\Users\omen6\Downloads\FRST.txt 2019-11-14 18:51 - 2019-11-14 18:51 - 000000000 ___HD C:\OneDriveTemp 2019-11-14 18:36 - 2019-11-14 18:51 - 000000000 ____D C:\FRST 2019-11-14 18:35 - 2019-11-14 18:35 - 002260480 _____ (Farbar) C:\Users\omen6\Downloads\FRST64.exe 2019-11-14 18:31 - 2019-11-14 18:31 - 015087296 _____ (Microsoft Corporation) C:\Users\omen6\Downloads\MSEInstall.exe 2019-11-14 18:31 - 2019-11-14 18:31 - 000002259 _____ C:\WINDOWS\epplauncher.mif 2019-11-14 01:18 - 2019-11-14 01:18 - 000000000 ____D C:\Users\omen6\AppData\LocalLow\ZAUM Studio 2019-11-14 00:48 - 2019-11-14 00:48 - 000000453 _____ C:\Users\omen6\Desktop\Disco Elysium.lnk 2019-11-14 00:23 - 2019-11-14 00:23 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2019-11-14 00:23 - 2019-11-14 00:23 - 005501952 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2019-11-14 00:23 - 2019-11-14 00:23 - 004307968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2019-11-14 00:23 - 2019-11-14 00:23 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2019-11-14 00:23 - 2019-11-14 00:23 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll 2019-11-14 00:23 - 2019-11-14 00:23 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll 2019-11-14 00:23 - 2019-11-14 00:23 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx 2019-11-14 00:23 - 2019-11-14 00:23 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll 2019-11-14 00:23 - 2019-11-14 00:23 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL 2019-11-14 00:22 - 2019-11-14 00:22 - 025901056 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 022627840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 008011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 006521768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 006232576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 005763848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 004578816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 004150272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 004129408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 003487232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 002956472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2019-11-14 00:22 - 2019-11-14 00:22 - 002586816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 002399232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 002258848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001866272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001691648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001664688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001413864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001399096 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001189376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 001017680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000679152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000673664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000452920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000404904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000380944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Magnify.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2019-11-14 00:22 - 2019-11-14 00:22 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2019-11-14 00:22 - 2019-11-14 00:22 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\accessibilitycpl.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2019-11-14 00:22 - 2019-11-14 00:22 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000136536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000089568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcXtrnal.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys 2019-11-14 00:22 - 2019-11-14 00:22 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2019-11-14 00:22 - 2019-11-14 00:22 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2019-11-14 00:22 - 2019-11-14 00:22 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2019-11-14 00:22 - 2019-11-14 00:22 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AtBroker.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\reg.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe 2019-11-14 00:22 - 2019-11-14 00:22 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcXtrnal.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL 2019-11-14 00:22 - 2019-11-14 00:22 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2019-11-14 00:22 - 2019-11-14 00:22 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 009928208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 007262456 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 006435840 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 006166016 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 006082808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 005112320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 004047360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 003967920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 003791360 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 003752960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 003728384 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 003387392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 003371928 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 002988344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 002871848 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 002772272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 002763016 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 002703872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 002698768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 002562048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001974824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 001916984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2019-11-14 00:21 - 2019-11-14 00:21 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001647064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001327064 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001171704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000982840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000911824 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000874936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000822200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000811536 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000768488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000700416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000669352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000638264 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000586768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000517432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000514576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000510792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000477712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2019-11-14 00:21 - 2019-11-14 00:21 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000461320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000372752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000251512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000113160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000105488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AtBroker.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000036368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\posetup.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000028344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000024792 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys 2019-11-14 00:21 - 2019-11-14 00:21 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe 2019-11-14 00:21 - 2019-11-14 00:21 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2019-11-14 00:21 - 2019-11-14 00:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll 2019-11-14 00:20 - 2019-11-14 00:21 - 007904152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 017787904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 007849424 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 007278592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 006227104 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 005890048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 004615616 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 004005888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 003591208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 003105792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 002126112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 001920512 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 001259416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 001094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 001069064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000874536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000657424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 000644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 000416016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 000322504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000292664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 000291256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000204816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2019-11-14 00:20 - 2019-11-14 00:20 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2019-11-14 00:20 - 2019-11-14 00:20 - 000088568 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000065272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000047208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS 2019-11-14 00:20 - 2019-11-14 00:20 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll 2019-11-14 00:20 - 2019-11-14 00:20 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe 2019-11-14 00:20 - 2019-11-14 00:20 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscadminui.exe 2019-11-14 00:04 - 2019-10-17 07:17 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2019-11-14 00:04 - 2019-10-17 07:01 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2019-11-14 00:03 - 2019-11-14 00:03 - 000058529 _____ C:\Users\omen6\Downloads\Disco_Elysium-HOODLUM-[rarbg.to].torrent 2019-11-07 12:30 - 2019-11-07 12:30 - 000000000 ____D C:\Users\omen6\AppData\Local\HP_Inc 2019-11-01 19:25 - 2019-11-01 19:25 - 000000000 ____D C:\Program Files (x86)\AGEIA Technologies 2019-10-31 22:24 - 2019-10-31 22:24 - 000000000 ____D C:\Users\omen6\AppData\Local\Fallout4 2019-10-31 22:15 - 2019-10-31 22:23 - 000000000 ____D C:\WINDOWS\SysWOW64\directx 2019-10-30 22:50 - 2019-10-30 22:50 - 000000000 ____D C:\Users\omen6\AppData\LocalLow\Mirage Game Studios 2019-10-30 22:37 - 2019-10-30 22:37 - 000025294 _____ C:\Users\omen6\Downloads\Little.Big.Workshop-DARKZER0-[rarbg.to].torrent 2019-10-29 23:39 - 2019-10-29 23:39 - 000000872 _____ C:\Users\omen6\Desktop\UBOAT — skrót .lnk 2019-10-28 20:13 - 2019-10-28 20:13 - 000000000 ____D C:\Users\omen6\AppData\LocalLow\Oxymoron Games 2019-10-25 23:10 - 2019-10-25 23:10 - 000003972 _____ C:\WINDOWS\system32\Tasks\AVG TuneUp Update 2019-10-25 23:10 - 2019-10-25 23:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Technologies 2019-10-25 20:15 - 2019-10-25 20:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cold Waters South China Sea 2019-10-24 22:36 - 2019-10-24 22:36 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2019-10-24 22:36 - 2019-10-24 22:36 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2019-10-24 22:36 - 2019-10-24 22:36 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnosticsTool.exe 2019-10-24 22:36 - 2019-10-24 22:36 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll 2019-10-24 22:36 - 2019-10-24 22:36 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll 2019-10-23 00:15 - 2019-10-23 00:17 - 000000000 ____D C:\Users\omen6\AppData\Roaming\Yandex 2019-10-23 00:15 - 2019-10-23 00:16 - 000000000 ____D C:\Users\omen6\AppData\LocalLow\Yandex 2019-10-23 00:15 - 2019-10-23 00:15 - 000000000 ____D C:\Users\omen6\AppData\Local\Yandex 2019-10-23 00:15 - 2019-10-23 00:15 - 000000000 ____D C:\Users\omen6\AppData\Local\Google 2019-10-23 00:07 - 2019-10-23 00:07 - 000000053 _____ C:\WINDOWS\WrpYGF74DrEm.ini 2019-10-21 13:01 - 2019-10-21 13:01 - 000000000 ____D C:\Users\omen6\AppData\Roaming\EasyAntiCheat 2019-10-21 13:00 - 2019-10-21 13:00 - 000000113 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc 2019-10-21 13:00 - 2019-10-21 13:00 - 000000000 ____D C:\Users\omen6\AppData\Roaming\Fatshark 2019-10-16 19:57 - 2019-10-16 19:57 - 001074688 _____ C:\Users\omen6\Downloads\pobrany plik ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2019-11-14 18:51 - 2017-08-02 11:32 - 000000000 ___RD C:\Users\omen6\OneDrive 2019-11-14 18:50 - 2019-08-21 13:43 - 000004018 _____ C:\WINDOWS\system32\Tasks\Playerme Check Updates 2019-11-14 18:50 - 2019-08-21 13:43 - 000003862 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier 2019-11-14 18:50 - 2019-08-21 13:43 - 000003804 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier 2019-11-14 18:50 - 2019-08-21 13:43 - 000003706 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA 2019-11-14 18:50 - 2019-08-21 13:43 - 000003546 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater 2019-11-14 18:50 - 2019-08-21 13:43 - 000003482 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2019-11-14 18:50 - 2019-08-21 13:43 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2019-11-14 18:50 - 2019-08-21 13:43 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-14 18:50 - 2019-08-21 13:43 - 000003366 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{64821C6C-BF01-41F6-8DB3-BC709B7943D2} 2019-11-14 18:50 - 2019-08-21 13:43 - 000003348 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1501674915 2019-11-14 18:50 - 2019-08-21 13:43 - 000003250 _____ C:\WINDOWS\system32\Tasks\Antivirus Emergency Update 2019-11-14 18:50 - 2019-08-21 13:43 - 000003244 _____ C:\WINDOWS\system32\Tasks\Overwolf Updater Task 2019-11-14 18:50 - 2019-08-21 13:43 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-14 18:50 - 2019-08-21 13:43 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-14 18:50 - 2019-08-21 13:43 - 000003094 _____ C:\WINDOWS\system32\Tasks\Java Platform SE Auto Updater 2019-11-14 18:50 - 2019-08-21 13:43 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-14 18:50 - 2019-08-21 13:43 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-14 18:50 - 2019-08-21 13:43 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-14 18:50 - 2019-08-21 13:43 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-14 18:50 - 2019-08-21 13:43 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-14 18:50 - 2019-08-21 13:43 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-14 18:50 - 2019-08-21 13:43 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-298913981-1024801001-3169498018-1001 2019-11-14 18:50 - 2019-08-21 13:43 - 000002856 _____ C:\WINDOWS\system32\Tasks\HPJumpStartLaunch 2019-11-14 18:50 - 2019-08-21 13:43 - 000002800 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForomen6 2019-11-14 18:50 - 2019-08-21 13:43 - 000002800 _____ C:\WINDOWS\system32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-omen69x@interia.pl 2019-11-14 18:50 - 2019-08-21 13:43 - 000002766 _____ C:\WINDOWS\system32\Tasks\HPAudioSwitch 2019-11-14 18:50 - 2019-08-21 13:43 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-14 18:50 - 2019-08-21 13:43 - 000002702 _____ C:\WINDOWS\system32\Tasks\GarminUpdaterTask 2019-11-14 18:50 - 2019-08-21 13:43 - 000002696 _____ C:\WINDOWS\system32\Tasks\WinZip Update Notifier 2 2019-11-14 18:50 - 2019-08-21 13:43 - 000002694 _____ C:\WINDOWS\system32\Tasks\WinZip Update Notifier 3 2019-11-14 18:50 - 2019-08-21 13:43 - 000002694 _____ C:\WINDOWS\system32\Tasks\WinZip Update Notifier 1 2019-11-14 18:50 - 2019-08-21 13:43 - 000002656 _____ C:\WINDOWS\system32\Tasks\HPCustParticipation HP DeskJet 4530 series 2019-11-14 18:50 - 2019-08-21 13:43 - 000002588 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask 2019-11-14 18:50 - 2019-08-21 13:43 - 000002532 _____ C:\WINDOWS\system32\Tasks\Playerme Run on startup 2019-11-14 18:50 - 2019-08-21 13:43 - 000002502 _____ C:\WINDOWS\system32\Tasks\HPEA3JOBS 2019-11-14 18:50 - 2019-08-21 13:43 - 000002280 _____ C:\WINDOWS\system32\Tasks\RTKCPL 2019-11-14 18:50 - 2019-08-21 13:43 - 000002262 _____ C:\WINDOWS\system32\Tasks\DropboxOEM 2019-11-14 18:50 - 2019-08-21 13:43 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-11-14 18:50 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-11-14 18:50 - 2019-03-19 05:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2019-11-14 18:50 - 2017-12-30 23:29 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForomen6.job 2019-11-14 18:50 - 2017-02-08 05:12 - 000001192 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2019-11-14 18:50 - 2017-02-08 05:12 - 000001188 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2019-11-14 18:38 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF 2019-11-14 16:41 - 2019-08-21 13:37 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-11-14 15:20 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-11-14 15:19 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps 2019-11-14 15:19 - 2017-11-20 00:08 - 000000000 ___RD C:\Users\omen6\3D Objects 2019-11-14 15:19 - 2016-07-29 13:33 - 000000000 __RHD C:\Users\Public\AccountPictures 2019-11-14 15:12 - 2019-08-21 14:08 - 000821828 _____ C:\WINDOWS\system32\perfh015.dat 2019-11-14 15:12 - 2019-08-21 14:08 - 000170990 _____ C:\WINDOWS\system32\perfc015.dat 2019-11-14 15:12 - 2019-08-21 13:43 - 002761770 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-11-14 15:12 - 2019-03-19 13:16 - 000732452 _____ C:\WINDOWS\system32\perfh007.dat 2019-11-14 15:12 - 2019-03-19 13:16 - 000149754 _____ C:\WINDOWS\system32\perfc007.dat 2019-11-14 15:09 - 2017-08-03 21:50 - 000000000 ____D C:\Users\omen6\AppData\Local\Adobe 2019-11-14 15:09 - 2017-08-02 13:13 - 000000000 ____D C:\Users\omen6\AppData\Local\CrashDumps 2019-11-14 15:06 - 2019-08-21 13:37 - 000542608 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2019-11-14 01:35 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog 2019-11-14 01:35 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2019-11-14 01:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources 2019-11-14 01:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\appraiser 2019-11-14 01:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2019-11-14 01:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellComponents 2019-11-14 01:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2019-11-14 01:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\DiagTrack 2019-11-14 01:35 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-11-14 01:35 - 2017-08-05 11:15 - 000000000 ____D C:\ProgramData\Avg 2019-11-14 00:41 - 2019-03-29 12:02 - 000000000 ____D C:\Users\omen6\AppData\LocalLow\uTorrent 2019-11-14 00:41 - 2017-08-02 23:52 - 000000000 ____D C:\Users\omen6\AppData\Roaming\uTorrent 2019-11-14 00:31 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-11-14 00:30 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2019-11-14 00:30 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Macromed 2019-11-14 00:26 - 2019-03-29 12:02 - 000000000 ____D C:\Users\omen6\AppData\Local\BitTorrentHelper 2019-11-14 00:16 - 2019-02-22 07:50 - 000000000 ____D C:\Program Files (x86)\Origin 2019-11-13 13:47 - 2017-08-02 13:11 - 000000000 ____D C:\Users\omen6\AppData\Local\Battle.net 2019-11-13 12:47 - 2017-08-02 23:08 - 000000000 ____D C:\WINDOWS\system32\MRT 2019-11-13 00:17 - 2017-08-02 23:08 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-11-12 21:15 - 2017-08-02 13:12 - 000000000 ____D C:\Program Files (x86)\Blizzard App 2019-11-12 21:09 - 2018-10-03 20:45 - 000000000 ____D C:\Users\omen6\AppData\Local\AVAST Software 2019-11-11 21:43 - 2017-08-15 11:13 - 000000000 ____D C:\Users\omen6\AppData\Local\Ubisoft Game Launcher 2019-11-11 21:42 - 2017-12-01 20:29 - 000000000 ____D C:\ProgramData\Origin 2019-11-11 21:41 - 2019-02-22 07:48 - 000000000 ____D C:\Users\omen6\AppData\Roaming\Origin 2019-11-10 13:39 - 2019-03-19 23:22 - 000000000 ____D C:\Users\omen6\AppData\Roaming\PolarisOffice 2019-11-07 11:40 - 2017-08-02 12:55 - 000001114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2019-11-07 11:40 - 2017-08-02 12:55 - 000000000 ____D C:\Program Files\Opera 2019-11-06 11:59 - 2019-01-09 12:49 - 000000000 _____ C:\WINDOWS\system32\last.dump 2019-11-04 20:14 - 2019-03-30 12:14 - 000000000 ____D C:\Program Files (x86)\Overwolf 2019-11-04 12:15 - 2018-07-11 13:33 - 000000000 ____D C:\ProgramData\Packages 2019-11-02 13:02 - 2019-10-03 10:30 - 000171640 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys 2019-10-31 22:24 - 2017-08-16 00:58 - 000000000 ____D C:\Users\omen6\Documents\My Games 2019-10-26 09:23 - 2017-08-16 09:22 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2019-10-25 23:15 - 2019-08-20 22:28 - 000000000 ____D C:\Users\omen6\AppData\Roaming\AVG 2019-10-25 23:10 - 2019-08-21 13:43 - 000003668 _____ C:\WINDOWS\system32\Tasks\AVG EUpdate Task 2019-10-25 23:10 - 2017-08-05 11:16 - 000000000 ____D C:\Program Files (x86)\AVG 2019-10-24 22:39 - 2019-08-21 13:39 - 000002460 _____ C:\Users\omen6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-10-21 12:57 - 2019-07-19 10:46 - 000015482 _____ C:\Users\omen6\Desktop\Roczne Koszty.xlsx ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2018-11-18 18:40 - 2018-11-18 18:40 - 000000096 _____ () C:\Users\omen6\AppData\Roaming\LauncherSettings_live.cfg 2017-09-06 11:46 - 2017-09-06 11:46 - 000000017 _____ () C:\Users\omen6\AppData\Local\resmon.resmoncfg ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ========================