Sada su Virusi :S

1

Sada su Virusi :S

offline
  • Pridružio: 01 Nov 2011
  • Poruke: 65

Pokušao sam da skinem neku igru i prilikom instalacije bilo je potrebno da isključim avast na kratko dok krene da preuzme torent i eto belaja, otvara prozore, ne radi mail klijent i ko zna šta sve, pobrljavio mi je celi komp :S

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 10-07-2019
Ran by Bojan (administrator) on DESKTOP-7A5R1QL (Micro-Star International Co., Ltd MS-7C02) (12-07-2019 22:18:17)
Running from C:\Users\Bojan\Desktop
Loaded Profiles: Bojan (Available Profiles: Bojan)
Platform: Windows 10 Pro Version 1903 18362.239 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(@ByELDI -> @ByELDI) [File not signed] C:\Program Files\KMSpico\Service_KMS.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0338885.inf_amd64_648d9ae54bb276d8\B338884\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0338885.inf_amd64_648d9ae54bb276d8\B338884\atiesrxx.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(eM Client, s.r.o. -> eM Client s.r.o.) C:\Program Files (x86)\eM Client\MailClient.exe
(eM Client, s.r.o. -> eM Client s.r.o.) C:\Program Files (x86)\eM Client\MailClient.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Users\Bojan\AppData\Local\Google\Chrome\Application\chrome.exe
(LLC Mail.Ru -> Mail.Ru) C:\Program Files (x86)\Mail.Ru\MailRuUpdater\MailRuUpdater.exe
(LLC Mail.Ru -> Mail.Ru) C:\Program Files (x86)\Mail.Ru\Update Service\mrupdsrv.exe
(LLC Mail.Ru -> Mail.Ru) C:\Users\Bojan\AppData\Local\Mail.Ru\MailRuUpdater.exe
(Microsoft Corporation) [File not signed] C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.WindowsStore_11905.1001.4.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\schtasks.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MysticLight\MysticLight2_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
(Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
(Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
(Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
(Viber Media S.à r.l. -> Viber Media S.à r.l.) C:\Users\Bojan\AppData\Local\Viber\Viber.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [746440 2018-06-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [262024 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [Command Center] => C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe [835768 2018-09-07] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-2948214650-4230922714-1553335465-1001\...\Run: [Google Update] => C:\Users\Bojan\AppData\Local\Google\Update\1.3.34.11\GoogleUpdateCore.exe [410920 2019-05-15] (Google Inc -> Google LLC)
HKU\S-1-5-21-2948214650-4230922714-1553335465-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3144480 2019-02-19] (Valve -> Valve Corporation)
HKU\S-1-5-21-2948214650-4230922714-1553335465-1001\...\Run: [Viber] => C:\Users\Bojan\AppData\Local\Viber\Viber.exe [40403528 2019-07-01] (Viber Media S.à r.l. -> Viber Media S.à r.l.)
HKU\S-1-5-21-2948214650-4230922714-1553335465-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [53646912 2019-07-02] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-2948214650-4230922714-1553335465-1001\...\Run: [eM Client] => C:\Program Files (x86)\eM Client\MailClient.exe [22928200 2019-03-12] (eM Client, s.r.o. -> eM Client s.r.o.)
HKU\S-1-5-21-2948214650-4230922714-1553335465-1001\...\Run: [Wargaming.net Game Center] => C:\ProgramData\Wargaming.net\GameCenter\wgc.exe [2554232 2019-06-20] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-2948214650-4230922714-1553335465-1001\...\Run: [MailRuUpdater] => C:\Users\Bojan\AppData\Local\Mail.Ru\MailRuUpdater.exe [3532472 2019-07-12] (LLC Mail.Ru -> Mail.Ru) <==== ATTENTION
Startup: C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar344.lnk [2019-07-12]
ShortcutTarget: Sidebar344.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0D4DDF9E-DEC3-4589-8D8C-F8F33D371F0B} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2934152 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
Task: {14827F55-CB10-46DA-9D96-BF564159815D} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe
Task: {1D929930-67B7-4A63-A897-5B970EF36EE6} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [468992 2019-02-01] (Advanced Micro Devices, Inc.) [File not signed]
Task: {200578C0-D85B-4D6E-B641-2A4C66DD7437} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {251C9463-6ACC-407F-B339-134BAD939002} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [468992 2019-02-01] (Advanced Micro Devices, Inc.) [File not signed]
Task: {34C0551A-B973-4A48-B6F4-848FDD5611CC} - no filepath
Task: {3529320E-92F6-409C-854A-1ADDBADAC63C} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2948214650-4230922714-1553335465-1001UA => C:\Users\Bojan\AppData\Local\Google\Update\GoogleUpdate.exe [156968 2019-01-24] (Google Inc -> Google Inc.)
Task: {44F54F9B-DFCD-4A70-9308-E2CA5D22FA1E} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [52104 2017-04-24] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {6131C1CC-8C35-4FBD-84CA-B72F1CEA22C2} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2281944 2019-06-04] (AVAST Software s.r.o. -> AVAST Software)
Task: {6FE168D6-6543-41D1-A438-7F10F6849E1A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2948214650-4230922714-1553335465-1001Core => C:\Users\Bojan\AppData\Local\Google\Update\GoogleUpdate.exe [156968 2019-01-24] (Google Inc -> Google Inc.)
Task: {7FF23C10-86AE-469A-B420-FA46D0913778} - System32\Tasks\MailRuUpdater => C:\Users\Bojan\AppData\Local\Mail.Ru\MailRuUpdater.exe [3532472 2019-07-12] (LLC Mail.Ru -> Mail.Ru) <==== ATTENTION
Task: {9210BE5D-70FA-45CB-84E7-2C3C5F1AD92C} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_207_pepper.exe [1452600 2019-06-14] (Adobe Inc. -> Adobe)
Task: {930BC5C9-D7CA-446A-BF2C-E8F56EB81952} - System32\Tasks\Opera scheduled Autoupdate 1548355488 => C:\Users\Bojan\AppData\Local\Programs\Opera\launcher.exe [1493592 2019-06-14] (Opera Software AS -> Opera Software)
Task: {BD9509CC-FDB6-4D24-96E7-8725541D131B} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [745664 2016-01-12] (@ByELDI -> @ByELDI) [File not signed]
Task: {BEE879CB-270D-4292-9D96-36BD1FDC2A7E} - System32\Tasks\MSILEDKeeper_Host => C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe [682168 2018-06-22] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {F0151A91-62B9-4C8E-BC68-E927B85F4623} - System32\Tasks\prqddiucdqjjjzd => msiexec.exe /quiet /i "C:\Users\Bojan\AppData\Roaming\sefxgqwkovea\lnyrbtgqzwkvlht.msi" WEBID=PP_MN_P3 TKNME=prqddiucdqjjjzd

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\MSILEDKeeper_Host.job => C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe
Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWOW64\muachost.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 87.250.33.21 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{acb14bfd-1f50-4de9-871b-998ed2123293}: [NameServer] 92.246.76.123,185.162.93.213,45.86.180.227,116.203.6.218,185.130.104.222
Tcpip\..\Interfaces\{acb14bfd-1f50-4de9-871b-998ed2123293}: [DhcpNameServer] 87.250.33.21 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{daddc39b-55f4-4f03-b0a5-d6934660c4f0}: [DhcpNameServer] 8.8.8.8 8.8.4.4 87.250.33.21

Internet Explorer:
==================
HKU\S-1-5-21-2948214650-4230922714-1553335465-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mail.ru/cnt/10445?gp=834423
SearchScopes: HKU\S-1-5-21-2948214650-4230922714-1553335465-1001 -> DefaultScope {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = hxxps://go.mail.ru/distib/ep/?q={searchTerms}&fr=ntg&product_id=%7B4C9DB884-97CA-4BDC-817C-A5C9C5B723F9%7D&gp=811610
SearchScopes: HKU\S-1-5-21-2948214650-4230922714-1553335465-1001 -> {BDF61FAE-9D19-40F0-8F34-688DEB334CA9} URL = hxxp://securedsearch.lavasoft.com/results.php?pr=vmn&id=webcompa&ent=ch_WCYID10440__190207&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2948214650-4230922714-1553335465-1001 -> {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = hxxps://go.mail.ru/distib/ep/?q={searchTerms}&fr=ntg&product_id=%7B4C9DB884-97CA-4BDC-817C-A5C9C5B723F9%7D&gp=811610
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-06-14] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Search@Mail.Ru -> {8E8F97CD-60B5-456F-A201-73065652D099} -> C:\Users\Bojan\AppData\Local\Mail.Ru\Sputnik\ie_addon_dll.dll [2019-07-12] (LLC Mail.Ru -> Mail.Ru)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-06-14] (Oracle America, Inc. -> Oracle Corporation)

FireFox:
========
FF DefaultProfile: uwtg7j3l.default
FF ProfilePath: C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default [2019-07-12]
FF user.js: detected! => C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default\user.js [2019-07-12]
FF Homepage: Mozilla\Firefox\Profiles\uwtg7j3l.default -> hxxps://inline.go.mail.ru/homepage?inline_comp=ffhp15.1.11.102&inline_hp_cnt=11956636
FF NewTab: Mozilla\Firefox\Profiles\uwtg7j3l.default -> hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10440__190207
FF Extension: (ETP Search Volume Study) - C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default\Extensions\etp-search-volume-study@shield.mozilla.org.xpi [2019-06-27]
FF Extension: (Домашняя страница Mail.Ru) - C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default\Extensions\homepage@mail.ru.xpi [2019-07-12] [UpdateUrl:hxxps://crxmailru.cdnmail.ru/go_ffhp_update.json]
FF Extension: (Поиск Mail.Ru) - C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default\Extensions\search@mail.ru.xpi [2019-07-12] [UpdateUrl:hxxps://crxmailru.cdnmail.ru/searchff/update.json]
FF Extension: (Avast Online Security) - C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default\Extensions\wrc@avast.com.xpi [2019-06-01]
FF Extension: (Pulse) - C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default\Extensions\{a38384b3-2d1d-4f36-bc22-0f7ae402bcd7}.xpi [2019-07-12] [UpdateUrl:hxxps://crxmailru.cdnmail.ru/ff_pult/update.json]
FF SearchPlugin: C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default\searchplugins\securesearch.xml [2019-02-07]
FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-06-14] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-06-14] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-10-27] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-10-27] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin HKU\S-1-5-21-2948214650-4230922714-1553335465-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Bojan\AppData\Local\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin HKU\S-1-5-21-2948214650-4230922714-1553335465-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Bojan\AppData\Local\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)

Chrome:
=======
CHR HomePage: Default -> inline.go.mail.ru
CHR StartupUrls: Default -> "hxxps://www.google.rs/?gws_rd=ssl","hxxps://mail.ru/cnt/10445?gp=811570"
CHR NewTab: Default -> Active:"chrome-extension://beliehdniadoecbonbhlcgbdldccfigp/visual-bookmarks.html"
CHR DefaultSearchURL: Default -> hxxps://go.mail.ru/distib/ep/?q={searchTerms}&fr=ntg&product_id=%7B91CDB8A1-B8A4-4310-8F14-3232BA9482E3%7D&gp=811570
CHR DefaultSearchKeyword: Default -> go.mail.ru
CHR DefaultSuggestURL: Default -> hxxps://suggests.go.mail.ru/chrome?q={searchTerms}
CHR Profile: C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default [2019-07-12]
CHR Extension: (Google Drive) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-01-24]
CHR Extension: (Pulse) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\beliehdniadoecbonbhlcgbdldccfigp [2019-07-12]
CHR Extension: (YouTube) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-01-24]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-04-20]
CHR Extension: (Mail.Ru) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\iepoegkaoeljnbhagabakjodgpfniimo [2019-07-12]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-01-24]
CHR Extension: (Gmail) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-16]
CHR Extension: (Chrome Media Router) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-21]
CHR HKLM-x32\...\Chrome\Extension: [beliehdniadoecbonbhlcgbdldccfigp] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iepoegkaoeljnbhagabakjodgpfniimo] - hxxps://clients2.google.com/service/update2/crx

Opera:
=======
OPR StartupUrls: "hxxps://www.google.rs/"

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\c0338885.inf_amd64_648d9ae54bb276d8\B338884\atiesrxx.exe [508320 2019-02-04] (Advanced Micro Devices, Inc. -> AMD)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6844776 2019-05-28] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [409224 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-06-15] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-06-15] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 mrupdsrv; C:\Program Files (x86)\Mail.Ru\Update Service\mrupdsrv.exe [1314008 2019-07-12] (LLC Mail.Ru -> Mail.Ru) <==== ATTENTION
S3 MSIClock_CC; C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService_x64.exe [2669240 2018-01-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSICOMM_CC; C:\Program Files (x86)\MSI\Command Center\MSICommService.exe [2343608 2018-11-19] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSICPU_CC; C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService_x64.exe [2725048 2017-12-22] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 MSICTL_CC; C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe [2255544 2018-11-19] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSIDDR_CC; C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [2507960 2018-11-30] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSISMB_CC; C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [2136248 2018-03-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSISuperIO_CC; C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [2742968 2018-08-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 MysticLight2_Service; C:\Program Files (x86)\MSI\MysticLight\MysticLight2_Service.exe [31928 2018-03-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 RtkAudioUniversalService; C:\WINDOWS\System32\RtkAudUService64.exe [746440 2018-06-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5773384 2019-07-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [745664 2016-01-12] (@ByELDI -> @ByELDI) [File not signed]
R2 Updater.Mail.Ru; C:\Program Files (x86)\Mail.Ru\MailRuUpdater\MailRuUpdater.exe [3532472 2019-07-12] (LLC Mail.Ru -> Mail.Ru) <==== ATTENTION
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S4 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ALSysIO; C:\Users\Bojan\AppData\Local\Temp\ALSysIO64.sys [46384 2019-07-12] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [34568 2019-04-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [24424 2016-08-12] (AMD PMP-PE CB Code Signer v20160415 -> Advanced Micro Devices, Inc)
S3 amdkmcsp; C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys [101232 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0338885.inf_amd64_648d9ae54bb276d8\B338884\atikmdag.sys [52808608 2019-02-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0338885.inf_amd64_648d9ae54bb276d8\B338884\atikmpag.sys [590240 2019-02-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [102192 2019-02-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 AMDPCIDev; C:\WINDOWS\System32\drivers\AMDPCIDev.sys [31592 2018-04-26] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R0 amdpsp; C:\WINDOWS\System32\DRIVERS\amdpsp.sys [243048 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37104 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [207448 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [262496 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [205848 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [61472 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15488 2019-01-24] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [279120 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42288 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [168104 2019-06-20] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [112312 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [87944 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1030784 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [477584 2019-05-23] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [225600 2019-06-17] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [385880 2019-05-30] (AVAST Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [107400 2018-10-03] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-07-12] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-07-12] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MysticLight\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1026896 2018-03-19] (Realtek Semiconductor Corp. -> Realtek )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-07-12 22:15 - 2019-07-12 22:18 - 000028126 _____ C:\Users\Bojan\Desktop\FRST.txt
2019-07-12 22:15 - 2019-07-12 22:18 - 000000000 ____D C:\FRST
2019-07-12 22:15 - 2019-07-12 22:15 - 002095104 _____ (Farbar) C:\Users\Bojan\Desktop\FRST64.exe
2019-07-12 22:07 - 2019-07-12 22:07 - 064309056 _____ (Malwarebytes ) C:\Users\Bojan\Desktop\mb3-setup-009996.009996-3.7.1.2839-1.0.538-1.0.9074.exe
2019-07-12 22:06 - 2019-07-12 22:06 - 000000000 ____D C:\ProgramData\TempLogs
2019-07-12 21:57 - 2019-07-12 21:58 - 000000000 ____D C:\Users\Bojan\AppData\Local\Mail.Ru
2019-07-12 21:57 - 2019-07-12 21:58 - 000000000 ____D C:\Program Files (x86)\Mail.Ru
2019-07-12 21:57 - 2019-07-12 21:57 - 000825856 _____ C:\Default.xml
2019-07-12 21:57 - 2019-07-12 21:57 - 000042961 _____ C:\Users\Bojan\Documents\euro-truck-simulator-2-v1_30_1_6s-56-dlc.torrent
2019-07-12 21:57 - 2019-07-12 21:57 - 000003352 _____ C:\WINDOWS\System32\Tasks\prqddiucdqjjjzd
2019-07-12 21:57 - 2019-07-12 21:57 - 000003198 _____ C:\WINDOWS\System32\Tasks\MailRuUpdater
2019-07-12 21:57 - 2019-07-12 21:57 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\sefxgqwkovea
2019-07-12 21:57 - 2019-07-12 21:57 - 000000000 ____D C:\ProgramData\Mail.Ru
2019-07-12 21:54 - 2019-07-12 21:56 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\DAEMON Tools Lite
2019-07-12 21:54 - 2019-07-12 21:54 - 000059360 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtliteusbbus.sys
2019-07-12 21:54 - 2019-07-12 21:54 - 000042256 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtlitescsibus.sys
2019-07-12 21:54 - 2019-07-12 21:54 - 000000000 ____D C:\Users\Public\Documents\Daemon Tools Images
2019-07-12 21:54 - 2019-07-12 21:54 - 000000000 ____D C:\Users\Public\Documents\Catch!
2019-07-12 21:54 - 2019-07-12 21:54 - 000000000 ____D C:\Users\Bojan\AppData\Local\Disc_Soft_Ltd
2019-07-12 21:53 - 2019-07-12 21:54 - 000000000 ____D C:\ProgramData\DAEMON Tools Lite
2019-07-11 00:08 - 2019-07-11 00:08 - 025902080 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 025444864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 022625280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 019811328 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 018017792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 009917752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 008011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 007887440 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 007758336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 007636616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 007242312 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 007175168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 007008768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 006534712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 006218752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 006068840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 005919744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 005745504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 005500416 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 004863488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 004578816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 004562920 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 004481536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 004470784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 004348408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 004306432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 004012032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 004008960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003914480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 003837440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003748864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003725312 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 003654656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003550720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003487232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003372952 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003327256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003261440 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003243080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003106304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002990608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 002956984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002876416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002871824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002798592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 002771008 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002763552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-07-11 00:08 - 2019-07-11 00:08 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-07-11 00:08 - 2019-07-11 00:08 - 002697728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002587328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002550584 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002494232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002490712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002449456 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002443264 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002398208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002306048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002258336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002235936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002216448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002190648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 002072152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001999440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001954960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001884672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001866064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConstraintIndex.Search.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001841152 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001815040 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001754232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-07-11 00:08 - 2019-07-11 00:08 - 001721344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001717560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001715000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001690624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001651848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001647280 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001633648 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001611576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001608704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001555688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001539584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001535288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001509936 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 001501496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001480704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001458176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001437184 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 001413632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001393960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001391416 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 001383736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001366528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-07-11 00:08 - 2019-07-11 00:08 - 001362432 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001345024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001304888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001273344 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001273176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001262864 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001261568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001260032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001192096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 001182232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001146880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001124864 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001101312 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001080832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001071928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 001067008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001063944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001043768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001042944 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-07-11 00:08 - 2019-07-11 00:08 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001007104 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000957240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000947200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000928776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000910272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000889656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000879792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-07-11 00:08 - 2019-07-11 00:08 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000830976 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000829544 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000827192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000821696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000818656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000816440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000813568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000810512 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000801592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000782120 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000774152 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000769336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000751256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000741176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000739328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000706544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000700928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000680760 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000679368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000674816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000674072 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000673152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000667272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000665912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000649016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000642008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000637968 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000602432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000588464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000586552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000531464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000523912 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000516752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000516608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000511288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000510768 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-07-11 00:08 - 2019-07-11 00:08 - 000494904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-07-11 00:08 - 2019-07-11 00:08 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2019-07-11 00:08 - 2019-07-11 00:08 - 000464696 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000460288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-07-11 00:08 - 2019-07-11 00:08 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000394040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000390456 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\provplatformdesktop.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000386016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000366184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000336928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000316216 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000300184 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscobj.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000278528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000268216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000267528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000257848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provplatformdesktop.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000248088 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000231432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVShNotify.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000228664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000220680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000214032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutil.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000210440 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscobj.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamingUX.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000202040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000199176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000187920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifsutil.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000182072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000181560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVDllSurrogate.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000180536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ulib.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetpp.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000172856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVNice.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000149512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ulib.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000146920 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000142544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwclientres.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000129848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mup.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000129088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000127296 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000123912 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000120352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000115120 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000099712 _____ (Microsoft Corporation) C:\WINDOWS\system32\FsIso.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000093312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmlib.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000089544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000071720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000058825 _____ C:\WINDOWS\system32\srms.dat
2019-07-11 00:08 - 2019-07-11 00:08 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000037904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncAppvPublishingServer.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2019-07-11 00:08 - 2019-07-11 00:08 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000022024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScriptRunner.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwstreamingux.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2019-07-11 00:08 - 2019-07-11 00:08 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3r.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-07-11 00:08 - 2019-07-11 00:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3r.dll
2019-07-11 00:07 - 2019-07-11 00:08 - 002725376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 017786368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 006224296 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 004552336 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-07-11 00:07 - 2019-07-11 00:07 - 003698176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 003590968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 002656768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 002281984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 002117160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001979392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001945600 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001781248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001761792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001745920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001687552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001635328 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001337656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001250432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-07-11 00:07 - 2019-07-11 00:07 - 001149928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-07-11 00:07 - 2019-07-11 00:07 - 001092096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 001040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000876856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000862720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000817152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-07-11 00:07 - 2019-07-11 00:07 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-07-11 00:07 - 2019-07-11 00:07 - 000531976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2019-07-11 00:07 - 2019-07-11 00:07 - 000481592 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2019-07-11 00:07 - 2019-07-11 00:07 - 000472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000435000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000425264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000415800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000339520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000336752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000296976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000283152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2019-07-11 00:07 - 2019-07-11 00:07 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbaudio2.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000193848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-07-11 00:07 - 2019-07-11 00:07 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000142136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-07-11 00:07 - 2019-07-11 00:07 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000088560 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-07-11 00:07 - 2019-07-11 00:07 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000065064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2019-07-11 00:07 - 2019-07-11 00:07 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2019-07-11 00:07 - 2019-07-11 00:07 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-07-09 18:42 - 2019-07-09 18:42 - 000000000 ____D C:\Users\Bojan\AppData\Local\Viber
2019-07-04 20:01 - 2019-07-04 20:01 - 000092842 _____ C:\Users\Bojan\Desktop\JovanovicBojan_040719_BHM_33349_01_KljucPosete6860797.PDF
2019-07-02 20:16 - 2019-07-02 20:17 - 000000000 ____D C:\Users\Bojan\Desktop\New folder
2019-07-01 19:58 - 2019-07-01 19:59 - 000000033 _____ C:\Users\Bojan\Desktop\New Text Document (4).txt
2019-06-26 20:13 - 2019-06-26 20:18 - 000000000 ____D C:\Users\Bojan\AppData\Local\BlueStacks
2019-06-26 20:13 - 2019-06-26 20:14 - 000000000 ____D C:\Users\Public\BlueStacks
2019-06-26 19:59 - 2019-06-26 19:59 - 000000000 ____D C:\ProgramData\Apple Computer
2019-06-26 19:59 - 2019-06-26 19:59 - 000000000 ____D C:\ProgramData\Apple
2019-06-24 15:37 - 2019-07-12 20:26 - 000002548 _____ C:\WINDOWS\System32\Tasks\AutoPico Daily Restart
2019-06-24 15:37 - 2019-07-11 00:04 - 000000000 ____D C:\Program Files\KMSpico
2019-06-24 15:37 - 2019-06-24 15:37 - 000004608 _____ C:\WINDOWS\SECOH-QAD.exe
2019-06-24 15:37 - 2019-06-24 15:37 - 000003584 _____ C:\WINDOWS\SECOH-QAD.dll
2019-06-24 15:37 - 2019-06-24 15:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2019-06-24 15:37 - 2010-12-06 04:16 - 000090112 _____ (Vestris Inc.) C:\WINDOWS\system32\Vestris.ResourceLib.dll
2019-06-17 21:00 - 2019-06-18 12:36 - 000000102 _____ C:\Users\Bojan\Desktop\New Text Document (3).txt
2019-06-16 20:32 - 2019-06-16 20:32 - 000000000 ____D C:\Users\Bojan\Desktop\Frontlajn 5
2019-06-16 07:31 - 2019-06-16 07:31 - 000000000 __SHD C:\Users\Public\Shared Files
2019-06-16 07:24 - 2019-06-16 07:24 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\EasyAntiCheat
2019-06-16 07:24 - 2019-06-16 07:24 - 000000000 ____D C:\Users\Bojan\AppData\Local\FortniteGame
2019-06-16 07:24 - 2019-06-16 07:24 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2019-06-16 07:23 - 2019-06-16 07:23 - 000000310 _____ C:\Users\Bojan\Desktop\Fortnite.url
2019-06-15 21:09 - 2019-06-15 21:09 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-06-15 21:09 - 2019-06-15 21:09 - 000000000 ____D C:\Program Files\MSBuild
2019-06-15 21:09 - 2019-06-15 21:09 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2019-06-15 21:09 - 2019-06-15 21:09 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-06-15 21:09 - 2019-03-01 17:31 - 001166488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-06-15 21:09 - 2019-03-01 17:31 - 000124568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-06-15 21:09 - 2019-03-01 17:31 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-06-15 21:09 - 2019-02-05 18:41 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-06-15 21:09 - 2019-02-05 18:41 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-06-15 21:09 - 2019-02-05 18:41 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-06-15 21:08 - 2019-06-16 07:24 - 000000000 ____D C:\Users\Bojan\AppData\Local\UnrealEngine
2019-06-15 21:08 - 2019-06-15 21:08 - 000000989 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk
2019-06-15 21:08 - 2019-06-15 21:08 - 000000989 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2019-06-15 21:08 - 2019-06-15 21:08 - 000000000 ____D C:\Users\Bojan\AppData\Local\UnrealEngineLauncher
2019-06-15 21:08 - 2019-06-15 21:08 - 000000000 ____D C:\Users\Bojan\AppData\Local\EpicGamesLauncher
2019-06-15 21:08 - 2019-06-15 21:08 - 000000000 ____D C:\ProgramData\Epic
2019-06-15 18:07 - 2019-06-15 18:07 - 000983350 _____ C:\Users\Bojan\Desktop\uputstvo_za_fairy_01_0.pdf
2019-06-14 21:06 - 2019-07-12 22:08 - 000840864 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-06-14 21:05 - 2019-06-14 21:05 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-06-14 21:03 - 2019-07-12 22:06 - 000004264 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2019-06-14 21:03 - 2019-07-12 22:03 - 000003112 _____ C:\WINDOWS\System32\Tasks\AMDLinkUpdate
2019-06-14 21:03 - 2019-07-12 22:03 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-06-14 21:03 - 2019-07-12 20:26 - 000003764 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2019-06-14 21:03 - 2019-07-12 20:26 - 000003524 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2948214650-4230922714-1553335465-1001UA
2019-06-14 21:03 - 2019-07-12 20:26 - 000003514 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1548355488
2019-06-14 21:03 - 2019-07-12 20:26 - 000003256 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2948214650-4230922714-1553335465-1001Core
2019-06-14 21:03 - 2019-07-12 20:26 - 000002862 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2948214650-4230922714-1553335465-1001
2019-06-14 21:03 - 2019-07-12 20:26 - 000002392 _____ C:\WINDOWS\System32\Tasks\ModifyLinkUpdate
2019-06-14 21:03 - 2019-07-12 20:26 - 000002148 _____ C:\WINDOWS\System32\Tasks\MSISW_Host
2019-06-14 21:03 - 2019-07-12 20:26 - 000002146 _____ C:\WINDOWS\System32\Tasks\StartCN
2019-06-14 21:03 - 2019-07-12 20:26 - 000002116 _____ C:\WINDOWS\System32\Tasks\StartDVR
2019-06-14 21:03 - 2019-07-12 20:26 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software
2019-06-14 21:03 - 2019-07-12 20:23 - 000002206 _____ C:\WINDOWS\System32\Tasks\MSILEDKeeper_Host
2019-06-14 21:03 - 2019-06-14 21:03 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2019-06-14 21:03 - 2019-06-14 21:03 - 000007623 _____ C:\WINDOWS\diagerr.xml
2019-06-14 21:03 - 2019-06-14 21:03 - 000000020 ___SH C:\Users\Bojan\ntuser.ini
2019-06-14 21:03 - 2019-06-14 21:03 - 000000000 ____D C:\ProgramData\USOShared
2019-06-14 21:03 - 2019-06-14 20:47 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-06-14 21:01 - 2019-07-12 22:03 - 000000296 ____H C:\WINDOWS\Tasks\MSILEDKeeper_Host.job
2019-06-14 21:01 - 2019-06-14 21:01 - 000000252 ____H C:\WINDOWS\Tasks\MSISW_Host.job
2019-06-14 20:58 - 2019-07-11 23:17 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-06-14 20:58 - 2019-07-11 05:40 - 000257904 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-06-14 20:57 - 2019-06-14 20:57 - 000066064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WinSetupBoot.sys
2019-06-14 20:52 - 2019-07-11 16:47 - 000002367 _____ C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-06-14 20:52 - 2019-07-08 06:29 - 000000000 ____D C:\Users\Bojan
2019-06-14 20:52 - 2019-06-14 20:52 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-06-14 20:51 - 2019-06-14 20:52 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-06-14 20:48 - 2019-06-14 20:48 - 007802224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 005083352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 005014016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 003635200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 002314440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 001510960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 001493944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 001282560 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 001248256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2019-06-14 20:48 - 2019-06-14 20:48 - 001244728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 001105776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 001039872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2019-06-14 20:48 - 2019-06-14 20:48 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000744248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2019-06-14 20:48 - 2019-06-14 20:48 - 000737552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2019-06-14 20:48 - 2019-06-14 20:48 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000682744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2019-06-14 20:48 - 2019-06-14 20:48 - 000666280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2019-06-14 20:48 - 2019-06-14 20:48 - 000551824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2019-06-14 20:48 - 2019-06-14 20:48 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe
2019-06-14 20:48 - 2019-06-14 20:48 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000420360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000261016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityUxHost.exe
2019-06-14 20:48 - 2019-06-14 20:48 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-06-14 20:48 - 2019-06-14 20:48 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-06-14 20:48 - 2019-06-14 20:48 - 000136720 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-06-14 20:48 - 2019-06-14 20:48 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompMgmtLauncher.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 007831368 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 007275008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 006381568 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 006036480 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 005939712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 005071360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 004537344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 004034048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 003947520 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 003734456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 002698552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 002321408 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 002178048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaclient.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001893888 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001830416 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001784832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001562640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaserver.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 001515008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaclient.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001505808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001422848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 001395600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001356800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001333248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001283384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-06-14 20:47 - 2019-06-14 20:47 - 001282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001213456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001068856 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001065984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaserver.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 001010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 001007160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000939504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000911360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000888056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000864768 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000861696 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000811192 _____ C:\WINDOWS\SysWOW64\locale.nls
2019-06-14 20:47 - 2019-06-14 20:47 - 000811192 _____ C:\WINDOWS\system32\locale.nls
2019-06-14 20:47 - 2019-06-14 20:47 - 000804880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000797112 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000773168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000726328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000722072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000628616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000621568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000613904 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000612352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_9.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_9.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2019-06-14 20:47 - 2019-06-14 20:47 - 000537088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000537088 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000466624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000462352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000457016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000451896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000420152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2019-06-14 20:47 - 2019-06-14 20:47 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000401416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000381240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000379192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000358944 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2019-06-14 20:47 - 2019-06-14 20:47 - 000284536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000279624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000274128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000223248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000205112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winquic.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000201256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000199688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000199184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000194176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winquic.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schtasks.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000178192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000161848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaproxystub.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000146744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000139472 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000134760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameChatTranscription.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapistub.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000116184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpoext.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapistub.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapi32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameChatTranscription.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2019-06-14 20:47 - 2019-06-14 20:47 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000066360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaproxystub.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000056008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000055608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2019-06-14 20:47 - 2019-06-14 20:47 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000037888 _____ C:\WINDOWS\system32\usocoreps.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2019-06-14 20:47 - 2019-06-14 20:47 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\fixmapi.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fixmapi.exe
2019-06-14 20:47 - 2019-06-14 20:47 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-06-14 20:47 - 2019-06-14 20:47 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-06-14 20:47 - 2019-06-14 20:47 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-06-14 20:40 - 2019-06-14 20:40 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-06-14 20:26 - 2019-06-27 06:00 - 000000000 ___DC C:\WINDOWS\Panther
2019-06-14 20:19 - 2013-04-23 15:16 - 000036892 _____ C:\WINDOWS\system32\BASSMOD.dll
2019-06-14 20:01 - 2019-06-14 21:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-06-14 20:01 - 2019-06-14 20:01 - 000099192 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2019-06-14 20:01 - 2019-06-14 20:01 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\Sun
2019-06-14 20:01 - 2019-06-14 20:01 - 000000000 ____D C:\Program Files (x86)\Java
2019-06-14 17:56 - 2019-06-14 17:56 - 000001645 _____ C:\Users\Bojan\Desktop\World of Tanks EU.lnk

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-07-12 22:17 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-07-12 22:17 - 2019-02-08 16:39 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-07-12 22:13 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-07-12 22:08 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2019-07-12 22:04 - 2019-02-10 13:49 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\eM Client
2019-07-12 22:03 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-07-12 22:03 - 2019-02-07 18:59 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\uTorrent
2019-07-12 22:03 - 2019-02-06 16:53 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2019-07-12 22:03 - 2019-01-25 23:25 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-07-12 22:03 - 2019-01-25 23:25 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-07-12 21:58 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2019-07-12 21:30 - 2019-02-10 18:05 - 000000000 ____D C:\Users\Bojan\AppData\LocalLow\uTorrent
2019-07-12 21:13 - 2019-01-25 23:25 - 000000000 ____D C:\Users\Bojan\AppData\LocalLow\Mozilla
2019-07-12 21:05 - 2019-01-25 23:25 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-07-12 17:09 - 2019-01-24 20:21 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\obs-studio
2019-07-12 15:27 - 2019-01-24 17:44 - 000000000 ____D C:\Users\Bojan\AppData\Local\D3DSCache
2019-07-11 16:47 - 2019-01-24 16:12 - 000000000 ___RD C:\Users\Bojan\OneDrive
2019-07-11 15:34 - 2019-01-24 19:15 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\ProMod
2019-07-11 05:50 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-07-11 05:41 - 2019-01-24 16:10 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-07-11 05:41 - 2019-01-24 16:10 - 000000000 ___RD C:\Users\Bojan\3D Objects
2019-07-11 05:01 - 2019-03-19 08:23 - 000000000 ___SD C:\WINDOWS\system32\AppV
2019-07-11 05:01 - 2019-03-19 08:23 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-07-11 05:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-07-11 05:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-07-11 05:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-07-11 05:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-07-11 05:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-07-11 05:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-07-11 00:12 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-07-11 00:11 - 2019-01-24 22:15 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-07-11 00:10 - 2019-01-24 22:15 - 136618864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-07-11 00:03 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-07-10 19:30 - 2019-05-06 19:17 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\TS3Client
2019-07-10 05:41 - 2019-01-25 09:43 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\ViberPC
2019-07-09 18:45 - 2019-02-06 22:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2019-07-07 19:05 - 2019-01-25 09:19 - 000000000 ____D C:\Program Files (x86)\Steam
2019-07-05 18:23 - 2019-02-10 21:18 - 000000000 ____D C:\Users\Bojan\Documents\ViberDownloads
2019-06-26 20:19 - 2019-01-24 16:12 - 000000000 ____D C:\Users\Bojan\AppData\Local\PlaceholderTileLogoFolder
2019-06-26 20:19 - 2019-01-24 16:10 - 000000000 ____D C:\Users\Bojan\AppData\Local\Packages
2019-06-26 19:58 - 2019-01-24 16:13 - 000000000 ____D C:\ProgramData\Packages
2019-06-21 06:29 - 2019-01-24 16:19 - 000002502 _____ C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-06-20 15:22 - 2019-01-24 17:37 - 000168104 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2019-06-18 13:04 - 2019-01-24 20:44 - 000001403 _____ C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera Browser.lnk
2019-06-17 15:12 - 2019-01-24 17:37 - 000225600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2019-06-17 00:16 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\servicing
2019-06-16 12:24 - 2019-06-10 18:20 - 000000053 _____ C:\Users\Bojan\Desktop\klima.txt
2019-06-16 07:30 - 2019-03-19 06:52 - 000000000 __SHD C:\Users\Public\Libraries
2019-06-16 00:02 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-06-15 21:08 - 2019-01-24 20:20 - 000000000 ____D C:\ProgramData\Package Cache
2019-06-15 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\appcompat
2019-06-14 21:08 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-06-14 21:04 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-06-14 21:03 - 2019-03-19 06:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-06-14 21:00 - 2019-05-17 16:02 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net
2019-06-14 21:00 - 2019-03-19 06:52 - 000000000 __SHD C:\Program Files\Windows Sidebar
2019-06-14 21:00 - 2019-03-19 06:52 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
2019-06-14 21:00 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-06-14 21:00 - 2019-03-01 11:50 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks - Common Test
2019-06-14 21:00 - 2019-02-06 20:16 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-14 21:00 - 2019-02-06 20:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-14 21:00 - 2019-02-06 17:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings
2019-06-14 21:00 - 2019-01-27 14:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\8GadgetPack
2019-06-14 21:00 - 2019-01-25 09:43 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber
2019-06-14 21:00 - 2019-01-25 09:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2019-06-14 21:00 - 2019-01-24 23:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2019-06-14 21:00 - 2019-01-24 23:16 - 000000000 ____D C:\Program Files\AMD
2019-06-14 21:00 - 2019-01-24 20:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio
2019-06-14 21:00 - 2019-01-24 19:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Core Temp
2019-06-14 21:00 - 2019-01-24 17:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield
2019-06-14 21:00 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-06-14 20:58 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-06-14 20:58 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\spool
2019-06-14 20:58 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-06-14 20:58 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ServiceState
2019-06-14 20:58 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Help
2019-06-14 20:58 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-06-14 20:58 - 2019-03-19 06:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-06-14 20:58 - 2019-01-24 16:05 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-06-14 20:58 - 2019-01-24 16:05 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-06-14 20:58 - 2018-09-15 09:33 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2019-06-14 20:57 - 2019-03-19 06:56 - 000000000 ____D C:\WINDOWS\Setup
2019-06-14 20:53 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-06-14 20:52 - 2019-02-06 20:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D
2019-06-14 20:52 - 2019-02-06 16:53 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2019-06-14 20:52 - 2019-02-03 11:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cooler Master
2019-06-14 20:52 - 2019-02-01 23:31 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2019-06-14 20:52 - 2019-02-01 09:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-06-14 20:52 - 2019-01-26 19:32 - 000000000 ____D C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-06-14 20:52 - 2019-01-24 23:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2019-06-14 20:52 - 2019-01-24 20:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2019-06-14 20:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2019-06-14 20:50 - 2019-03-19 06:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-06-14 20:50 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellComponents
2019-06-14 20:45 - 2019-03-19 08:22 - 000000000 ____D C:\WINDOWS\OCR
2019-06-14 20:14 - 2019-01-24 19:19 - 000002057 _____ C:\Users\Bojan\Desktop\OldSkools ProMod.lnk
2019-06-14 20:12 - 2019-01-24 17:40 - 000000000 ____D C:\Games
2019-06-14 20:03 - 2019-01-30 12:44 - 000000000 ____D C:\Users\Bojan\AppData\Local\Adobe

==================== Files in the root of some directories ================

2019-01-27 15:25 - 2019-01-27 15:25 - 000000114 _____ () C:\Users\Bojan\AppData\Roaming\Network Monitor II_#0_Traffic.ini
2019-01-27 15:25 - 2019-01-27 15:25 - 000000114 _____ () C:\Users\Bojan\AppData\Roaming\System Monitor II_UptimeRecord.ini
2019-02-07 19:09 - 2019-02-10 18:06 - 000000002 _____ () C:\Users\Bojan\AppData\Local\imw.ini
2019-01-24 22:36 - 2019-01-24 22:36 - 000000017 _____ () C:\Users\Bojan\AppData\Local\resmon.resmoncfg

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================
mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10405
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Otvori Notepad i iskopiraj sljedeći tekst koji se nalazi unutar Kod polja.

Task: {F0151A91-62B9-4C8E-BC68-E927B85F4623} - System32\Tasks\prqddiucdqjjjzd => msiexec.exe /quiet /i "C:\Users\Bojan\AppData\Roaming\sefxgqwkovea\lnyrbtgqzwkvlht.msi" WEBID=PP_MN_P3 TKNME=prqddiucdqjjjzd
Tcpip\..\Interfaces\{acb14bfd-1f50-4de9-871b-998ed2123293}: [NameServer] 92.246.76.123,185.162.93.213,45.86.180.227,116.203.6.218,185.130.104.222
FF user.js: detected! => C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default\user.js [2019-07-12]
C:\WINDOWS\System32\Tasks\prqddiucdqjjjzd
C:\Users\Bojan\AppData\Roaming\sefxgqwkovea
EmptyTemp:


U okviru Notepad-a klikni na File --> Save As
Pod Encoding izaberi UTF-8.
Fajl nazovi Fixlist i sačuvaj na Desktop
Dvoklikom ponovo pokreni FRST.exe
Klikni na Fix i sačekaj dok program ne završi.
Ukoliko program zatraži restart računara, omogući mu da to nesmetano obavi.
Nakon završetka rada, otvoriće se fixlog.txt, sa sadržajem koji treba da kopiraš u temu.
Takođe, na Desktop-u će se nalaziti (fixlog.txt).

offline
  • Pridružio: 01 Nov 2011
  • Poruke: 65

Fix result of Farbar Recovery Scan Tool (x64) Version: 10-07-2019
Ran by Bojan (13-07-2019 14:52:24) Run:1
Running from C:\Users\Bojan\Desktop
Loaded Profiles: Bojan (Available Profiles: Bojan)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Task: {F0151A91-62B9-4C8E-BC68-E927B85F4623} - System32\Tasks\prqddiucdqjjjzd => msiexec.exe /quiet /i "C:\Users\Bojan\AppData\Roaming\sefxgqwkovea\lnyrbtgqzwkvlht.msi" WEBID=PP_MN_P3 TKNME=prqddiucdqjjjzd
Tcpip\..\Interfaces\{acb14bfd-1f50-4de9-871b-998ed2123293}: [NameServer] 92.246.76.123,185.162.93.213,45.86.180.227,116.203.6.218,185.130.104.222
FF user.js: detected! => C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default\user.js [2019-07-12]
C:\WINDOWS\System32\Tasks\prqddiucdqjjjzd
C:\Users\Bojan\AppData\Roaming\sefxgqwkovea
EmptyTemp:
*****************

"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F0151A91-62B9-4C8E-BC68-E927B85F4623}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0151A91-62B9-4C8E-BC68-E927B85F4623}" => removed successfully
C:\WINDOWS\System32\Tasks\prqddiucdqjjjzd => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\prqddiucdqjjjzd" => removed successfully
"HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{acb14bfd-1f50-4de9-871b-998ed2123293}\\NameServer" => removed successfully
C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\uwtg7j3l.default\user.js => moved successfully
"C:\WINDOWS\System32\Tasks\prqddiucdqjjjzd" => not found
C:\Users\Bojan\AppData\Roaming\sefxgqwkovea => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 10248192 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 118727146 B
Java, Flash, Steam htmlcache => 354060325 B
Windows/system/drivers => 1709600 B
Edge => 3306135 B
Chrome => 392034842 B
Firefox => 1086286782 B
Opera => 565482410 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 367280 B
LocalService => 0 B
NetworkService => 1126 B
NetworkService => 0 B
Bojan => 135260113 B

RecycleBin => 0 B
EmptyTemp: => 2.5 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 14:53:03 ====

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10405
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Kakvo je sada stanje?




Potrebno je da spakuješ folder C:\FRST\Quarantine u arhivu i pošalješ nam ga.

Uđi u folder C:\FRST
Desnim tasterom miša klini na folder Quarantine i izaberi opciju Add to archive... kao na slici



Kao Archive format izaberi 7z
Za Compression level odaberi Ultra (napomena: ako dobiješ grešku da nema dovoljno memorije, stavi na Maximum ili Normal)
Za Compression method stavi LZMA2 ili LZMA
U polje Split to volumes, bytes unesi 5000000 (slovima: pet miliona)
Na desnoj strani označi opciju Compress Shared Files (pogledaj sliku dole)



Klikni na OK
Kada 7-Zip završi sa kompresovanjem, dobijene fajlove uploaduj (jedan po jedan) na:
https://www.mycity.rs/ambulanta-upload.php

offline
  • Pridružio: 01 Nov 2011
  • Poruke: 65

Stanje je ok ali dobio sam samo 1 fajl sa tom kompresijom, nema ih više da bih 1 po 1 uploudovao.
Inače taj 1 sam uploudovao Wink

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10405
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Da obavimo još jednu provjeru.

Preuzmi Malwarebytes Anti-Malware sa ovog ili ovog ili ovog linka i instaliraj aplikaciju.
Pokreni mb3-setup-consumer-{verzija}.exe i isprati uputstva za instalaciju programa. Nakon instalacije, klikni na Finish

Prilikom prvog pokretanja, program će prikazati prozor "dobrodošlice". Slobodno zatvori taj prozor.
Napomena: Premium funkcije programa su već aktivirane i važe 13 dana od trenutka instalacije. Premium funkcije možeš isključiti preko Settings > My Account tab podešavanja.

• Podešavanja skenera - u Settings, klikni na Protection tab. Ispod Scan Options sekcije, uključi "Scan for rootkits" opciju.
• Pripremi podešavanja za Threat Scan - u Dashboard , klikni na Scan Now dugme. MBAM će ažurirati bazu i započeti skeniranje.

Kada se skeniranje završi, ako je infekcija detektovana, obrati pažnju da je sve označeno, pa klikni na Remove Selected. Restartuj računar ako program upita za restart.
• Dostavi log: Pod Reports izaberi trenutni datum izveštaja Scan Report i potom klikni na View Report.

Izvezi log na Desktop;
- Klikni na Export dugme na dnu, pa onda izaberi 'Text file (*.txt)'
# U Save File dijalogu koji se pojavi, klikni na Desktop. U File name: polje, upiši "mbam" (bez navodnika) i klikni na Save.
- Pojaviće se poruka "Your file has been successfully exported", klikni Ok i zatvori prozor.



• U odgovoru prikači mbam.txt log koristeći "Prikači fajl" opciju.

offline
  • Pridružio: 01 Nov 2011
  • Poruke: 65

Nisam imao opciju Remove selected već samo da ih stavim u karantin, nisam stavio samo 1 fajl za aktivaciju win10 Wink


mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10405
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

To bi bilo to.

Preimenuj FRST64 u uninstall i pokreni ga. To bi trebalo deinstalirati FRST.

offline
  • Pridružio: 01 Nov 2011
  • Poruke: 65

A zanima me ako deinstaliram Malwarebytes on to iz karantina automatski briše ili moram ja tu nešto ručno?

Inače sve je ok, sistem radi perfektno Wink

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10405
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Nakon deinstalacije provjeri da li postoji folder:
C:\ProgramData\Malwarebytes

Ko je trenutno na forumu
 

Ukupno su 617 korisnika na forumu :: 27 registrovanih, 6 sakrivenih i 584 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 1567 - dana 15 Jul 2016 19:18

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: _Sale, aleksandar_tatic, AleksSE, darionis, darkangel, dino.usa, doktor1964, drdoca, Drug pukovnik, foka106, gsandor66, Insan, ivance95, Koca Popovic, Kubovac, MarkoRapic, mačković, repac, rovac, sakota79, saputnik plavetnila, sawa2, srdic.vlada, SsssssNOVI, Toni, torlak, vathra