Hey, no problem for the delay it was my bad wanted to separate them to be easier to look for them.
Thank you for your time to help me with this
-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
FIXLOG
Fix result of Farbar Recovery Scan Tool (x64) Version: 21-10-2019
Ran by Krstici (21-10-2019 14:49:31) Run:1
Running from C:\Users\Krstici\Desktop
Loaded Profiles: Krstici (Available Profiles: Krstici)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Task: {DA068F28-DE41-45EE-B0CE-71AD07E51648} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
Task: {4487A0C9-CE2F-4E68-89F4-02EB3BA09FCC} - System32\Tasks\Microsoft\Windows\WDI\SrvHost => rundll32.exe winscomrssrv.dll,SrvMainHost <==== ATTENTION
CMD: mkdir C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer
CMD: mkdir C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database
CMD: FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i"
Reboot:
*****************
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DA068F28-DE41-45EE-B0CE-71AD07E51648}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DA068F28-DE41-45EE-B0CE-71AD07E51648}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\StartupCheckLibrary" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4487A0C9-CE2F-4E68-89F4-02EB3BA09FCC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4487A0C9-CE2F-4E68-89F4-02EB3BA09FCC}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\WDI\SrvHost => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WDI\SrvHost" => removed successfully
========= mkdir C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer =========
========= End of CMD: =========
========= mkdir C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database =========
========= End of CMD: =========
========= FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i" =========
Failed to clear log Intel-SST-CFD-HDA/IntelSST.
The instance name passed was not recognized as valid by a WMI data provider.
Failed to clear log Microsoft-Windows-LiveId/Analytic.
Access is denied.
Failed to clear log Microsoft-Windows-LiveId/Operational.
Access is denied.
========= End of CMD: =========
The system needed a reboot.
==== End of Fixlog 14:49:50 ====
-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-10-2019
Ran by Krstici (administrator) on DESKTOP-OIPOQ8J (21-10-2019 14:51:37)
Running from C:\Users\Krstici\Desktop
Loaded Profiles: Krstici (Available Profiles: Krstici)
Platform: Windows 10 Pro Version 1903 18362.418 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Electronic Arts, Inc. -> Electronic Arts) E:\Origin\OriginWebHelperService.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.301\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.301\GoogleCrashHandler64.exe
(Hi-Rez Studios) [File not signed] E:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11910.1001.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19092.399.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\NisSrv.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Popcorn Time) [File not signed] C:\Program Files (x86)\Popcorn Time\Updater.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9229288 2017-05-18] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\Run: [Steam] => E:\Steam\steam.exe [3211040 2019-10-02] (Valve -> Valve Corporation)
HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22515488 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\Run: [WinUsbDriver] => wscript.exe //B "C:\Users\Krstici\AppData\Local\Temp\WinUsbDriver.vbs" <==== ATTENTION
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\Installer\chrmstp.exe [2019-10-16] (Google LLC -> Google LLC)
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {16D70320-133E-452F-A9AF-1BD0D51C848F} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {222791E0-A1FF-4B86-A8B2-0DD76E022B0A} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {28ECD712-ACC0-42E3-90A4-3DFEF7D1CDC5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2B23BCD5-7B83-4DBE-8395-3E509737062C} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3310688 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3141FB0F-87A1-4A99-BD4C-30D6F1076727} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\WINDOWS\system32\EOSNotify.exe
Task: {33DBCD6E-A9E4-4749-94C5-247E2392F2C0} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {49435069-54F8-49F7-A43C-E369616BA8FF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5CC40D95-D4D5-4B19-B3A2-4AEC9C127781} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16509040 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {6D5EAE39-4953-4B05-9713-75BB7D45111F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-09-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {6DE8589C-3555-4A6A-BB46-AD3CC43C9632} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6FA0D7F3-FD04-4C45-A164-EA9A170C38A9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-08-14] (Google Inc -> Google Inc.)
Task: {7058FBE3-A87E-4E2A-AB3A-EA98BB3EAC9C} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {842BE842-ED50-4846-A506-3245BF93D732} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B50E74A1-8A3C-4D48-B90A-43AABCBBD164} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [72848 2019-06-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {B627D27D-8DCD-4120-8D6E-94ECCB59A769} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-08-14] (Google Inc -> Google Inc.)
Task: {C67C1C9B-E24F-4947-B37B-031A294CC23B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CE64B6D3-A2A1-4191-9237-BC3429CF7220} - System32\Tasks\Opera scheduled Autoupdate 1556375051 => C:\Users\Krstici\AppData\Local\Programs\Opera\launcher.exe
Task: {DBC53ECC-CBC1-4325-8C4E-73CCFEA1FA3E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653864 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E2CD60BD-A8E5-4529-9E7D-2852593F1C2D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {EE4D5114-90E6-4E10-B20B-19E159E8503C} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {F2346FB6-4791-4E5C-B3EC-88B5B26438B7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F4756419-E7DD-4D70-961C-620827872953} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FE45FF31-7EED-48EE-B95D-A1BCF71D49B8} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{a33f1af8-4072-4189-a507-fe4c9f7a0312}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Internet Explorer:
==================
HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10454__180906
DownloadDir: C:\Users\Krstici\Downloads\PopcornTime
SearchScopes: HKU\S-1-5-21-1151184101-3954146848-1524510930-1001 -> {BDF61FAE-9D19-40F0-8F34-688DEB334CA9} URL = hxxp://securedsearch.lavasoft.com/results.php?pr=vmn&id=webcompa&ent=ch_WCYID10454__180906&q={searchTerms}
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation)
Edge:
======
Edge Extension: (Honey) -> EdgeExtension_HoneyScienceCorporationHoney_cbe4c63gm1mzr => C:\Program Files\WindowsApps\HoneyScienceCorporation.Honey_11.4.2.0_neutral__cbe4c63gm1mzr [2019-09-05]
FireFox:
========
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-20] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.301\npGoogleUpdate3.dll [2019-10-09] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.301\npGoogleUpdate3.dll [2019-10-09] (Google Inc -> Google LLC)
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxps://www.google.com/","hxxps://www.youtube.com/?hl=sr&gl=RS","hxxps://www.facebook.com/"
CHR Profile: C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default [2019-10-21]
CHR DownloadDir: E:\Downloads
CHR Extension: (Slides) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-08-14]
CHR Extension: (DownSpeedTest) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\accocjfjchkecaeociiaaohdkbmfiaje [2019-10-14]
CHR Extension: (Docs) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-08-14]
CHR Extension: (Google Drive) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-08-14]
CHR Extension: (Skype Calling) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2018-11-25]
CHR Extension: (YouTube) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-08-14]
CHR Extension: (Chrome Cleaner Pro) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccjleegmemocfpghkhpjmiccjcacackp [2019-04-02]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-08-27]
CHR Extension: (Steam Inventory Helper) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2019-10-18]
CHR Extension: (ActionClassicGames) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbkmigdeafonnkpjndllhadgclnkamdm [2019-10-15]
CHR Extension: (CrackWatch) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\dechlkibpibjlaidpeniljjejncdhfpj [2019-09-18]
CHR Extension: (FromDocToPDF) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\deildingfnmdbbgbnbhnjodhkhgoggdm [2019-10-15]
CHR Extension: (Sheets) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-08-14]
CHR Extension: (LoungeDestroyer) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghahcnmfjfckcedfajbhekgknjdplfcl [2018-11-25]
CHR Extension: (Google Docs Offline) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-14]
CHR Extension: (AdBlock) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-10-18]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Private Web) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\padhgfmfhdcmccndplaobianjamldnll [2018-09-19]
CHR Extension: (Gmail) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-15]
CHR Extension: (Chrome Media Router) - C:\Users\Krstici\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-09-24]
CHR HKLM-x32\...\Chrome\Extension: [nladljmabboanhihfkjacnnkgjhnokhj] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-09-25] (Adobe Inc. -> Adobe Systems, Incorporated)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-07-14] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-07-14] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
U2 HiPatchService; E:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-06-11] (Hi-Rez Studios) [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; E:\Origin\OriginClientService.exe [2348336 2019-10-15] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; E:\Origin\OriginWebHelperService.exe [3228976 2019-10-15] (Electronic Arts, Inc. -> Electronic Arts)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [339968 2018-04-06] (Popcorn Time) [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ff72214788d99390\nvlddmkm.sys [22366088 2019-08-26] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-07-18] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek )
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46688 2019-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [350136 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-21 14:49 - 2019-10-21 14:49 - 000002765 _____ C:\Users\Krstici\Desktop\Fixlog.txt
2019-10-21 14:49 - 2019-10-21 14:49 - 000000000 ____D C:\Users\Krstici\Desktop\FRST-OlderVersion
2019-10-14 18:57 - 2019-10-14 18:58 - 000000000 ____D C:\Users\Krstici\AppData\LocalLow\BitTorrent
2019-10-13 21:01 - 2019-10-13 21:01 - 000000000 ____D C:\Users\Krstici\AppData\Local\CrashReportClient
2019-10-10 00:02 - 2019-10-10 00:02 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 022628352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 019811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 018019840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 009928504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 008010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 007600664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 006517640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 006232064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 005915648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 004129616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 004012544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 003947008 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 003701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002762504 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-10-10 00:02 - 2019-10-10 00:02 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-10-10 00:02 - 2019-10-10 00:02 - 002723328 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-10 00:02 - 2019-10-10 00:02 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002456064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002422592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-10-10 00:02 - 2019-10-10 00:02 - 002314648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002236144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002138472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-10-10 00:02 - 2019-10-10 00:02 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 002000168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001952360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001730560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001664928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001439744 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001273392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001152016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000904208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000890472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000880088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000856576 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-10-10 00:02 - 2019-10-10 00:02 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000829536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000774672 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000758584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mousocoreworker.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000679880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000598024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000516408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000466416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-10 00:02 - 2019-10-10 00:02 - 000452408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-10-10 00:02 - 2019-10-10 00:02 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000412152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000380216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000300184 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2019-10-10 00:02 - 2019-10-10 00:02 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-10-10 00:02 - 2019-10-10 00:02 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000202040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-10-10 00:02 - 2019-10-10 00:02 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-10-10 00:02 - 2019-10-10 00:02 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000150328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-10-10 00:02 - 2019-10-10 00:02 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-10-10 00:02 - 2019-10-10 00:02 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000039304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2019-10-10 00:02 - 2019-10-10 00:02 - 000033048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-10-10 00:02 - 2019-10-10 00:02 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-10-10 00:02 - 2019-10-10 00:02 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-10-09 23:57 - 2019-10-09 23:57 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-10-09 23:57 - 2019-10-09 23:57 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-10-09 12:06 - 2019-10-09 12:07 - 000050743 _____ C:\Users\Krstici\Desktop\Addition.txt
2019-10-09 12:05 - 2019-10-21 14:52 - 000020846 _____ C:\Users\Krstici\Desktop\FRST.txt
2019-10-09 12:04 - 2019-10-21 14:52 - 000000000 ____D C:\FRST
2019-10-09 12:02 - 2019-10-21 14:49 - 001617408 _____ (Farbar) C:\Users\Krstici\Desktop\FRST64.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 006425600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 006084048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 005865272 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizimg.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 005764872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 005105152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 004481536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 003964056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 003742032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 002821120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 002799616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 002772032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 002258856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 002190864 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 002160640 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 002132280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001957008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001913296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001857024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001845408 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001819136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001788728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001716752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001692160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001664376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001616784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001611792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001510752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001505320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001501712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001386000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001297936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001261800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001244944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001178816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001054872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001047968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001043984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\assignedaccessmanagersvc.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000957240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000827408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000816648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000792296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000759488 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000741392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000674072 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000666128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000659456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessManager.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000649016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000639400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000599040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000541480 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000507704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000502784 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000501232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-10-04 00:35 - 2019-10-04 00:35 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000495120 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000487576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000450360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000442704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-10-04 00:35 - 2019-10-04 00:35 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000398728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000394256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000387832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000383984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000379840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinit.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000334936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000293344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000285256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000283688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000258064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000231440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVShNotify.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000228880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000202768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamingUX.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000181776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVDllSurrogate.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000176152 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000173072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVNice.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000145208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CscMig.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000143808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000140496 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000137864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwclientres.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ForceSync.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000132408 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000125232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000116904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000110080 _____ C:\WINDOWS\system32\ResBParser.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000100664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 000092624 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000089544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvvmtransport.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000037904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncAppvPublishingServer.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2019-10-04 00:35 - 2019-10-04 00:35 - 000021816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScriptRunner.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000016696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwstreamingux.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSErrRedir.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-10-04 00:35 - 2019-10-04 00:35 - 000011576 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlibres.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2019-10-04 00:35 - 2019-10-04 00:35 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-10-04 00:34 - 2019-10-04 00:35 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 007848192 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 006227624 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 006164480 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 004612520 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 004046336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 003727360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 003590968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 003553280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 003386880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 003184128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 003105280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 002590208 _____ C:\WINDOWS\system32\dwmscene.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 002069504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-04 00:34 - 2019-10-04 00:34 - 001616608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001607680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001543168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001383856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-04 00:34 - 2019-10-04 00:34 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 001150240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 001029432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000833312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000732176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000656960 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000551952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000449888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000342896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000223032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000119840 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000079376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uaspstor.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000053248 _____ C:\WINDOWS\system32\Drivers\UsbPmApi.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000052752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000047616 _____ C:\WINDOWS\system32\UsbPmApi.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2019-10-04 00:34 - 2019-10-04 00:34 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2019-10-04 00:34 - 2019-10-04 00:34 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32_DeviceGuard.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-10-04 00:34 - 2019-10-04 00:34 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-10-03 21:23 - 2019-10-03 21:23 - 000000000 ____D C:\Users\Krstici\AppData\Local\BlueStacksSetup
2019-10-03 20:06 - 2019-10-20 15:49 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2019-10-03 20:06 - 2019-10-20 15:49 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData
2019-10-03 20:06 - 2019-10-03 20:06 - 000003518 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-21 14:51 - 2018-08-14 18:54 - 000000000 ____D C:\ProgramData\NVIDIA
2019-10-21 14:50 - 2019-09-05 08:41 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-21 14:50 - 2019-04-24 00:34 - 000000000 ____D C:\Users\Krstici\Documents\Assassin's Creed Unity
2019-10-21 14:50 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-21 14:50 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-10-21 13:08 - 2019-09-05 08:33 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-20 15:50 - 2019-09-05 08:42 - 000840848 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-10-20 15:50 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-20 15:50 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-10-20 15:50 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2019-10-19 16:28 - 2019-02-02 01:18 - 000000000 ____D C:\Users\Krstici\AppData\Local\ElevatedDiagnostics
2019-10-18 19:45 - 2019-09-05 07:49 - 000000000 ____D C:\Users\Krstici
2019-10-18 18:45 - 2019-02-21 16:01 - 000000000 ____D C:\Users\Krstici\AppData\Roaming\.minecraft
2019-10-16 19:08 - 2019-04-28 15:23 - 000000000 ____D C:\Users\Krstici\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2019-10-16 13:35 - 2018-08-14 18:53 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-10-15 19:57 - 2018-08-14 19:35 - 000000000 ____D C:\Users\Krstici\AppData\Local\UnrealEngine
2019-10-14 18:58 - 2018-09-07 00:31 - 000000000 ____D C:\Users\Krstici\AppData\Roaming\BitTorrent
2019-10-10 17:05 - 2019-09-05 08:41 - 000003384 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1151184101-3954146848-1524510930-1001
2019-10-10 17:05 - 2019-09-05 07:49 - 000002373 _____ C:\Users\Krstici\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-10 17:05 - 2018-08-14 18:51 - 000000000 ___RD C:\Users\Krstici\OneDrive
2019-10-10 00:17 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-10-10 00:17 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-10-10 00:17 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-10-10 00:17 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-10-10 00:17 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-10-10 00:17 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-10 00:17 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-10-10 00:17 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-10-10 00:05 - 2018-08-15 23:26 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-10-10 00:04 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-10 00:04 - 2018-08-15 23:26 - 127230528 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-10-09 12:08 - 2019-09-05 08:41 - 000003420 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-10-09 12:08 - 2019-09-05 08:41 - 000003296 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-10-09 12:08 - 2018-08-14 18:53 - 000000000 ____D C:\Program Files (x86)\Google
2019-10-04 01:03 - 2018-08-30 03:10 - 000000000 ___RD C:\Users\Krstici\3D Objects
2019-10-04 01:03 - 2018-08-14 18:50 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-10-04 01:01 - 2019-09-05 08:33 - 000267600 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-10-04 01:01 - 2019-03-19 08:23 - 000000000 ___SD C:\WINDOWS\system32\AppV
2019-10-04 01:01 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-10-04 01:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2019-10-04 01:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-10-04 01:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-10-03 21:23 - 2019-09-15 12:14 - 000000000 ____D C:\Users\Public\BlueStacks
2019-10-03 21:23 - 2018-12-19 01:40 - 000000000 ____D C:\Users\Krstici\AppData\Local\Bluestacks
2019-10-02 20:14 - 2018-08-14 21:10 - 000000000 ____D C:\Users\Krstici\AppData\Roaming\discord
2019-10-02 19:48 - 2018-08-30 03:09 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-09-27 21:29 - 2018-08-30 03:10 - 000000000 ____D C:\Users\Krstici\AppData\Local\ConnectedDevicesPlatform
2019-09-26 20:38 - 2018-08-14 18:50 - 000000000 ____D C:\Users\Krstici\AppData\Local\Packages
2019-09-25 18:05 - 2018-08-17 00:03 - 000000000 ____D C:\Users\Krstici\AppData\Local\CrashDumps
==================== Files in the root of some directories ================
2019-06-10 18:34 - 2019-06-10 18:34 - 000000000 _____ () C:\Users\Krstici\AppData\Local\oobelibMkey.log
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ============================
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
ADDITION
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-10-2019
Ran by Krstici (21-10-2019 14:52:52)
Running from C:\Users\Krstici\Desktop
Windows 10 Pro Version 1903 18362.418 (X64) (2019-09-05 06:41:19)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1151184101-3954146848-1524510930-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1151184101-3954146848-1524510930-503 - Limited - Disabled)
Guest (S-1-5-21-1151184101-3954146848-1524510930-501 - Limited - Disabled)
Krstici (S-1-5-21-1151184101-3954146848-1524510930-1001 - Administrator - Enabled) => C:\Users\Krstici
WDAGUtilityAccount (S-1-5-21-1151184101-3954146848-1524510930-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Photoshop CC 2019 (HKLM-x32\...\PHSP_20_0) (Version: 20.0.0 - Adobe Systems Incorporated)
Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.0.4 - Electronic Arts, Inc.)
Assassin's Creed Unity (HKLM-x32\...\Uplay Install 720) (Version: - Ubisoft)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield™ V (HKLM-x32\...\{e26b382f-e945-4f70-9318-121b683f1d61}) (Version: 1.0.59.24655 - Electronic Arts)
BitTorrent (HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\BitTorrent) (Version: 7.10.5.45312 - BitTorrent Inc.)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.73.1084 - AB Team, d.o.o.)
CCleaner (HKLM\...\CCleaner) (Version: 5.56 - Piriform)
Counter Strike 1.6 GT (HKLM-x32\...\Counter Strike 1.6 GT) (Version: - )
Discord (HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\Discord) (Version: 0.0.305 - Discord Inc.)
Dishonored (HKLM-x32\...\Dishonored_is1) (Version: - )
Epic Games Launcher (HKLM-x32\...\{AFC6C4B8-57A3-43C3-9F1C-C4239CAECDAC}) (Version: 1.1.215.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
FIFA18 version 1.0 (HKLM\...\FIFA18_is1) (Version: 1.0 - STEAMPUNKS) <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.120 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.301 - Google LLC) Hidden
Grand Theft Auto V (HKLM\...\Grand Theft Auto V_is1) (Version: 1.0.877.1 - )
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4839 - Intel Corporation)
Java 8 Update 221 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180221F0}) (Version: 8.0.2210.11 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc)
Mafia II (HKLM-x32\...\Mafia II_is1) (Version: - )
Metro Exodus v.1.0 (HKLM-x32\...\Metro Exodus_is1) (Version: - )
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\OneDriveSetup.exe) (Version: 19.152.0927.0012 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.21.27702 (HKLM-x32\...\{f4220b74-9edd-4ded-bc8b-0342c1e164d8}) (Version: 14.21.27702.2 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.21.27702 (HKLM-x32\...\{49697869-be8e-427d-81a0-c334d1d14950}) (Version: 14.21.27702.2 - Microsoft Corporation)
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 2.1.3125.514 - Microsoft Corporation)
Minecraft Launcher (HKLM-x32\...\{E154B2C8-2F3E-4763-B3D5-E7D34AE39C6B}) (Version: 1.0.0.0 - Mojang)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.0.118 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.0.118 - NVIDIA Corporation)
NVIDIA Graphics Driver 436.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 436.15 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Origin (HKLM-x32\...\Origin) (Version: 10.5.50.31938 - Electronic Arts, Inc.)
Python 3.7.3 (32-bit) (HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\{24ac8299-2abd-4ddd-8be3-031debb6093c}) (Version: 3.7.3150.0 - Python Software Foundation)
Python 3.7.3 Core Interpreter (32-bit) (HKLM-x32\...\{33AB9CEA-621E-4064-9FB0-7048E79DB5B5}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Development Libraries (32-bit) (HKLM-x32\...\{52DDE5D8-B45C-4C1D-81DD-D72317DE8B08}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Documentation (32-bit) (HKLM-x32\...\{2BC067C0-B392-49C0-988B-C839C62D8B65}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Executables (32-bit) (HKLM-x32\...\{E3E61712-C062-45E7-8348-D7DBF66FACFD}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 pip Bootstrap (32-bit) (HKLM-x32\...\{9846DC93-4A39-496F-8AE3-0E3AB4EF4385}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Standard Library (32-bit) (HKLM-x32\...\{DC6190E7-D05E-465A-9FB6-7418BC901991}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Tcl/Tk Support (32-bit) (HKLM-x32\...\{1341418F-C713-4943-ACB2-9F4D4743D193}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Test Suite (32-bit) (HKLM-x32\...\{FE5E4BF9-7487-4CE8-A2AC-F78C6B4BE487}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python 3.7.3 Utility Scripts (32-bit) (HKLM-x32\...\{AE9303AD-EBD0-4C85-A9D0-55B1BA972D11}) (Version: 3.7.3150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{A28C27E4-A725-482A-9C65-61EDC0E4D583}) (Version: 3.7.6657.0 - Python Software Foundation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8158 - Realtek Semiconductor Corp.)
Roblox Player for Krstici (HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\roblox-player) (Version: - Roblox Corporation)
Roblox Studio for Krstici (HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\roblox-studio) (Version: - Roblox Corporation)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
The Witcher 3 - Wild Hunt (HKLM-x32\...\1495134320_is1) (Version: 2.0.0.51 - GOG.com)
Two Point Hospital (HKLM\...\SKIDROW - Two Point Hospital) (Version: - SKIDROW)
Unity 2019.3.0a5 (HKLM-x32\...\Unity 2019.3.0a5) (Version: 2019.3.0a5 - Unity Technologies ApS)
Unity Hub 2.0.1 (HKLM\...\Unity Technologies - Hub) (Version: 2.0.1 - Unity Technologies Inc.)
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{52C1DD03-104E-4AC6-9DC6-21D585721ED1}) (Version: 1.19.0.0 - Microsoft Corporation) Hidden
Uplay (HKLM-x32\...\Uplay) (Version: 85.1 - Ubisoft)
vcpp_crt.redist.clickonce (HKLM-x32\...\{009A97DC-246F-48D9-AE4A-B372B781F658}) (Version: 14.21.27702 - Microsoft Corporation) Hidden
Visual Studio Community 2019 (HKLM-x32\...\e6276864) (Version: 16.1.29001.49 - Microsoft Corporation)
VS Script Debugging Common (HKLM\...\{8B657335-3813-4CF4-A6FE-2AA44BE23F94}) (Version: 16.0.95.0 - Microsoft Corporation) Hidden
vs_communitymsi (HKLM-x32\...\{1A137C88-125C-4DAE-B7CC-66A506C37970}) (Version: 16.1.28917 - Microsoft Corporation) Hidden
vs_communitymsires (HKLM-x32\...\{95E79BBC-97FD-4FEB-91B5-CC0231324812}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_devenvmsi (HKLM-x32\...\{AD0C92A4-1514-4BC1-A723-A272A8343924}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_filehandler_amd64 (HKLM-x32\...\{EF43D2AE-EE51-41C3-BCA0-C5E79023B217}) (Version: 16.1.28811 - Microsoft Corporation) Hidden
vs_filehandler_x86 (HKLM-x32\...\{5AABBDCD-ED5D-4AFD-8432-847DD87F8E4C}) (Version: 16.1.28811 - Microsoft Corporation) Hidden
vs_FileTracker_Singleton (HKLM-x32\...\{F08DA172-0777-40C6-A8BA-D0F314560BEE}) (Version: 16.0.28518 - Microsoft Corporation) Hidden
vs_minshellinteropmsi (HKLM-x32\...\{57F29F55-7B37-45AF-B554-45D8C1A1FD03}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_minshellmsi (HKLM-x32\...\{762B3E50-3B79-4D88-B115-97513CCE8CDB}) (Version: 16.1.28811 - Microsoft Corporation) Hidden
vs_minshellmsires (HKLM-x32\...\{EC04CD66-C03A-470D-B0D2-4BBC87F6382D}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_tipsmsi (HKLM-x32\...\{E208E682-50EE-4F2F-9860-C91B906B8A03}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0) (Version: 1.0.33.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Windows 10 Update Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22866 - Microsoft Corporation)
XCOM 2 War of the Chosen (HKLM-x32\...\XCOM 2 War of the Chosen_is1) (Version: - )
XCOM: Enemy Unknown (HKLM-x32\...\1558688142_is1) (Version: 401776 - GOG.com)
Packages:
=========
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.150.300.0_x86__kgqvnymyfvs32 [2019-10-20] (king.com)
Honey -> C:\Program Files\WindowsApps\HoneyScienceCorporation.Honey_11.4.2.0_neutral__cbe4c63gm1mzr [2019-09-05] (Honey Science Corporation)
Mail and Calendar -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-09-27] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-09-06] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-09-06] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-12] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-09] (Microsoft Studios) [MS Ad]
MSN Money -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.31.11905.0_x64__8wekyb3d8bbwe [2019-09-06] (Microsoft Corporation) [MS Ad]
MSN Sports -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.31.11905.0_x64__8wekyb3d8bbwe [2019-09-07] (Microsoft Corporation) [MS Ad]
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-12] (Microsoft Corporation) [MS Ad]
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-08-25] (NVIDIA Corporation -> NVIDIA Corporation)
==================== Codecs (Whitelisted) ==================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\Krstici\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter Strike 1.6 GT\Counter Strike 1.6 GT.lnk -> C:\Games\Counter Strike 1.6 GT\Counter-Strike.bat ()
==================== Loaded Modules (Whitelisted) ==============
2019-10-16 15:21 - 2019-06-11 08:21 - 001277440 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] E:\Origin\LIBEAY32.dll
2019-10-16 15:21 - 2019-06-11 08:22 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] E:\Origin\ssleay32.dll
2019-10-16 15:21 - 2019-07-12 09:23 - 001611264 _____ (The Qt Company Ltd) [File not signed] E:\Origin\platforms\qwindows.dll
2019-10-16 15:21 - 2019-07-12 09:23 - 005487104 _____ (The Qt Company Ltd) [File not signed] E:\Origin\Qt5Core.dll
2019-10-16 15:21 - 2019-07-12 09:23 - 005841920 _____ (The Qt Company Ltd) [File not signed] E:\Origin\Qt5Gui.dll
2019-10-16 15:21 - 2019-07-12 09:23 - 001179136 _____ (The Qt Company Ltd) [File not signed] E:\Origin\Qt5Network.dll
2019-10-16 15:21 - 2019-07-12 09:23 - 005089792 _____ (The Qt Company Ltd) [File not signed] E:\Origin\Qt5Widgets.dll
2019-10-16 15:21 - 2019-07-12 09:23 - 000184832 _____ (The Qt Company Ltd) [File not signed] E:\Origin\Qt5Xml.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [462]
==================== Safe Mode (Whitelisted) ===================
==================== Association (Whitelisted) ===============
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\...\webcompanion.com -> hxxp://webcompanion.com
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-30 09:24 - 2015-10-30 09:21 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR
HKU\S-1-5-21-1151184101-3954146848-1524510930-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{37B87527-607C-4B3F-B9EC-C621F0C578C9}E:\riot games\game\league of legends.exe] => (Allow) E:\riot games\game\league of legends.exe (Riot Games, Inc. -> )
FirewallRules: [TCP Query User{60B542C1-CAB9-4648-88CD-41694FF858A2}E:\riot games\game\league of legends.exe] => (Allow) E:\riot games\game\league of legends.exe (Riot Games, Inc. -> )
FirewallRules: [UDP Query User{A6E5562D-083C-4C9A-B84C-36799C303745}C:\program files\godot\godot_v3.1.1-stable_win64.exe] => (Allow) C:\program files\godot\godot_v3.1.1-stable_win64.exe (Prehensile Tales B.V. -> Godot Engine)
FirewallRules: [TCP Query User{DD8619BA-68FF-4978-9949-98AE11C722E6}C:\program files\godot\godot_v3.1.1-stable_win64.exe] => (Allow) C:\program files\godot\godot_v3.1.1-stable_win64.exe (Prehensile Tales B.V. -> Godot Engine)
FirewallRules: [UDP Query User{89D89B49-F1B0-4C75-B927-3FFF558363A5}C:\program files\unity\hub\editor\2019.3.0a5\editor\unity.exe] => (Allow) C:\program files\unity\hub\editor\2019.3.0a5\editor\unity.exe (Unity Technologies Aps -> Unity Technologies ApS)
FirewallRules: [TCP Query User{4EB2C7BC-A730-452B-BA17-1783C3F0AA06}C:\program files\unity\hub\editor\2019.3.0a5\editor\unity.exe] => (Allow) C:\program files\unity\hub\editor\2019.3.0a5\editor\unity.exe (Unity Technologies Aps -> Unity Technologies ApS)
FirewallRules: [{E91F80A4-47BB-47A1-AEE5-20A4B50780D7}] => (Block) C:\Program Files\Unity\Hub\Editor\2019.3.0a5\Editor\Unity.exe (Unity Technologies Aps -> Unity Technologies ApS)
FirewallRules: [{C8884778-BD5C-450B-9B19-483E733074A4}] => (Allow) C:\Program Files\Unity\Hub\Editor\2019.3.0a5\Editor\Unity.exe (Unity Technologies Aps -> Unity Technologies ApS)
FirewallRules: [UDP Query User{E8F10A5C-44C9-441B-953D-FA6C8D5DB1C0}C:\program files\unity hub\unity hub.exe] => (Allow) C:\program files\unity hub\unity hub.exe (Unity Technologies SF -> Unity Technologies Inc.)
FirewallRules: [TCP Query User{B65B4475-4882-452E-A947-9482BB27796B}C:\program files\unity hub\unity hub.exe] => (Allow) C:\program files\unity hub\unity hub.exe (Unity Technologies SF -> Unity Technologies Inc.)
FirewallRules: [{D950C861-0862-4417-8A70-922A8CDE4CD7}] => (Allow) C:\Program Files\Unity Hub\Unity Hub.exe (Unity Technologies SF -> Unity Technologies Inc.)
FirewallRules: [UDP Query User{6CE73500-FF6F-4296-9844-1FA2CDD758EF}E:\games\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) E:\games\minecraft\runtime\jre-x64\bin\javaw.exe
FirewallRules: [TCP Query User{A5444DFF-CC12-4657-9600-F3FB1DA466B9}E:\games\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) E:\games\minecraft\runtime\jre-x64\bin\javaw.exe
FirewallRules: [{914D0762-87AF-4079-BEF4-135D043932C5}] => (Allow) E:\Steam\steamapps\common\Divide by sheep\Dividebysheep.exe () [File not signed]
FirewallRules: [{454D83EE-10DF-4C0B-A969-9876BE4C395A}] => (Allow) E:\Steam\steamapps\common\Divide by sheep\Dividebysheep.exe () [File not signed]
FirewallRules: [UDP Query User{9DE02466-BE0B-4385-933C-66DBB3F2B1F5}E:\java\bin\javaw.exe] => (Allow) E:\java\bin\javaw.exe No File
FirewallRules: [TCP Query User{807C976D-43EE-451D-8C2B-53B77302C9F7}E:\java\bin\javaw.exe] => (Allow) E:\java\bin\javaw.exe No File
FirewallRules: [{6C9BC097-F9D4-4C05-A0B2-8EF8109B9E39}] => (Allow) C:\Users\Krstici\AppData\Local\Programs\Opera\60.0.3255.70\opera.exe No File
FirewallRules: [{5620A0FC-25AE-4CF4-AFC2-30B67948FD56}] => (Allow) E:\Ubisoft Game Launcher\games\Assassin's Creed Unity\ACU.exe (UBISOFT ENTERTAINMENT INC. -> )
FirewallRules: [{1F7FB41C-0702-4519-8BAF-42B5E49DF226}] => (Allow) E:\Ubisoft Game Launcher\games\Assassin's Creed Unity\ACU.exe (UBISOFT ENTERTAINMENT INC. -> )
FirewallRules: [UDP Query User{B1DC6A95-5D2E-4A3F-85F2-55A1512E7737}E:\games\xcom 2 war of the chosen\binaries\win64\xcom2.exe] => (Allow) E:\games\xcom 2 war of the chosen\binaries\win64\xcom2.exe (Firaxis Games) [File not signed]
FirewallRules: [TCP Query User{B35A2F29-EDF4-4CDF-955E-B718403196A6}E:\games\xcom 2 war of the chosen\binaries\win64\xcom2.exe] => (Allow) E:\games\xcom 2 war of the chosen\binaries\win64\xcom2.exe (Firaxis Games) [File not signed]
FirewallRules: [{38328221-0A36-4879-B65B-46E44CF91EA0}] => (Allow) E:\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{3E85CBA0-024A-48BE-8268-0F068536C17C}] => (Allow) E:\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [UDP Query User{D3383C74-F631-4F82-8C24-B97867B94B9A}C:\games\counter strike 1.6 gt\hl.exe] => (Allow) C:\games\counter strike 1.6 gt\hl.exe (Valve) [File not signed]
FirewallRules: [TCP Query User{63877174-361E-48FB-A2A6-2F9AA855AF0C}C:\games\counter strike 1.6 gt\hl.exe] => (Allow) C:\games\counter strike 1.6 gt\hl.exe (Valve) [File not signed]
FirewallRules: [UDP Query User{A706FA24-16AF-419F-B353-77C09E0A1374}E:\riot games\rads\projects\league_client\releases\0.0.0.187\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.187\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{3E4612D9-A0A6-4C14-A061-6F00C5904DE7}E:\riot games\rads\projects\league_client\releases\0.0.0.187\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.187\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{75B9774C-22BD-47E3-B61A-930C6D1596F9}E:\riot games\rads\projects\league_client\releases\0.0.0.185\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.185\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{E527E76D-C496-469C-B5EC-6CDC7B25EE2C}E:\riot games\rads\projects\league_client\releases\0.0.0.185\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.185\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{1C62C6BE-E3E4-4EED-92D7-423206248D89}E:\origin games\apex\r5apex.exe] => (Allow) E:\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [TCP Query User{CB2275A8-3C41-4DA7-A973-86AE947BE271}E:\origin games\apex\r5apex.exe] => (Allow) E:\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [{A01715DC-FDDB-40B0-9167-7404F9EC5387}] => (Allow) E:\Origin\bfv.exe No File
FirewallRules: [{81E80FEC-13C1-4BF8-89F6-365721E38368}] => (Allow) E:\Origin\bfv.exe No File
FirewallRules: [{B6F1524D-B2CE-4D88-8BFB-85F3D47B6E32}] => (Allow) E:\Origin\bfvTrial.exe No File
FirewallRules: [{05F23D6D-15D6-4E6B-9693-7897BE68FA94}] => (Allow) E:\Origin\bfvTrial.exe No File
FirewallRules: [UDP Query User{54A465A5-8BAF-4199-8CB3-E3EE0070C4B5}E:\riot games\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{03F7176A-2E39-484C-A8E8-4FDD8D84005B}E:\riot games\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{4A843144-7C54-405F-8A2A-1079925E50C7}E:\blizzard\hearthstone\hearthstone.exe] => (Allow) E:\blizzard\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [TCP Query User{6E9F16E8-306A-4387-8A0E-3D0B031C41FF}E:\blizzard\hearthstone\hearthstone.exe] => (Allow) E:\blizzard\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [{7C0E69E3-0287-44FF-9E9B-703B449B038A}] => (Allow) E:\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe () [File not signed]
FirewallRules: [{8653E514-EA66-4E2C-AA97-15BCC4AE37AD}] => (Allow) E:\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe () [File not signed]
FirewallRules: [UDP Query User{D6DB3AFD-5371-43B9-9084-B27F1671E1C8}E:\riot games\rads\projects\league_client\releases\0.0.0.183\deploy\leagueclient.exe] => (Block) E:\riot games\rads\projects\league_client\releases\0.0.0.183\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{5D8F0492-94BA-4CEC-87C8-49FDA6090D55}E:\riot games\rads\projects\league_client\releases\0.0.0.183\deploy\leagueclient.exe] => (Block) E:\riot games\rads\projects\league_client\releases\0.0.0.183\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{EACEE880-F766-4033-ADF6-6BB816A42789}E:\riot games\rads\projects\league_client\releases\0.0.0.181\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.181\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{E3F2F899-AD72-4B1D-A669-FBFC3BE4041E}E:\riot games\rads\projects\league_client\releases\0.0.0.181\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.181\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{C734525D-4824-435F-A823-3297D2C311A1}E:\popcorn\popcorn-time\popcorn-time.exe] => (Allow) E:\popcorn\popcorn-time\popcorn-time.exe No File
FirewallRules: [TCP Query User{55F50838-7D4A-41F1-9395-416329D1B181}E:\popcorn\popcorn-time\popcorn-time.exe] => (Allow) E:\popcorn\popcorn-time\popcorn-time.exe No File
FirewallRules: [{9DD9CE07-54ED-43F4-A7FE-F2D1EA572E17}] => (Allow) E:\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [{A401F1E8-F1E6-40E4-899B-E91B919FA271}] => (Allow) E:\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [UDP Query User{0A3BF15C-9C42-4086-B2C9-CE5A5B3387F2}E:\grand theft auto v\gta5.exe] => (Allow) E:\grand theft auto v\gta5.exe (Rockstar Games) [File not signed]
FirewallRules: [TCP Query User{987D31A4-518A-4421-8432-AF976A3ACD2E}E:\grand theft auto v\gta5.exe] => (Allow) E:\grand theft auto v\gta5.exe (Rockstar Games) [File not signed]
FirewallRules: [UDP Query User{427DF275-9BF3-4895-9EE0-C40DDE91C3EA}E:\riot games\rads\projects\league_client\releases\0.0.0.177\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.177\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{D6978F0A-AB3C-4A72-93FA-D4A31205E326}E:\riot games\rads\projects\league_client\releases\0.0.0.177\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.177\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{00DFD346-1AF6-46F9-B1D3-80E5BC28DA52}E:\xcom enemy unknown\xew\binaries\win32\xcomew.exe] => (Allow) E:\xcom enemy unknown\xew\binaries\win32\xcomew.exe No File
FirewallRules: [TCP Query User{279D4C57-C959-480A-89AE-702F3B5EF92F}E:\xcom enemy unknown\xew\binaries\win32\xcomew.exe] => (Allow) E:\xcom enemy unknown\xew\binaries\win32\xcomew.exe No File
FirewallRules: [UDP Query User{D1E763E2-EC8E-4748-8872-2341BF2398B1}E:\riot games\rads\projects\league_client\releases\0.0.0.174\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.174\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{567C3C67-633A-4401-8427-8F0B5178AD27}E:\riot games\rads\projects\league_client\releases\0.0.0.174\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.174\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{FFCD5922-D5EF-482F-9815-DDE576361708}E:\xcom enemy unknown\binaries\win32\xcomgame.exe] => (Allow) E:\xcom enemy unknown\binaries\win32\xcomgame.exe No File
FirewallRules: [TCP Query User{BA2D762F-7D14-4D49-B324-C06990C24692}E:\xcom enemy unknown\binaries\win32\xcomgame.exe] => (Allow) E:\xcom enemy unknown\binaries\win32\xcomgame.exe No File
FirewallRules: [UDP Query User{923188A8-DA46-4CF5-B956-251108BBF1C1}E:\dishonored\binaries\win32\dishonored.exe] => (Allow) E:\dishonored\binaries\win32\dishonored.exe (ZeniMax Media Inc.) [File not signed]
FirewallRules: [TCP Query User{554E5A54-809C-4F45-B60A-E0BCF889438C}E:\dishonored\binaries\win32\dishonored.exe] => (Allow) E:\dishonored\binaries\win32\dishonored.exe (ZeniMax Media Inc.) [File not signed]
FirewallRules: [UDP Query User{3123CD0F-64B5-4C5A-BDC9-7F373BE7BA07}E:\riot games\rads\projects\league_client\releases\0.0.0.172\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.172\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{A2E1BE54-A3FF-4067-810C-13976A8B0EA8}E:\riot games\rads\projects\league_client\releases\0.0.0.172\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.172\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{9CBA58D6-BBDC-4883-9968-3C32DEF399A0}E:\riot games\rads\projects\league_client\releases\0.0.0.170\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.170\deploy\leagueclient.exe No File
FirewallRules: [TCP Query User{33762DD0-A19D-48CF-A6D5-180D4B209581}E:\riot games\rads\projects\league_client\releases\0.0.0.170\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.170\deploy\leagueclient.exe No File
FirewallRules: [{AC7CC44D-E701-45FA-B15A-C49BD3F3DF98}] => (Allow) E:\Games\Counter-Strike WaRzOnE\hl.exe (Valve) [File not signed]
FirewallRules: [{65C3F9CD-1767-46DB-8629-645BEEF753CE}] => (Allow) E:\Games\Counter-Strike WaRzOnE\hl.exe (Valve) [File not signed]
FirewallRules: [{F74BB2D3-68E9-431C-9DCB-783954444B14}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe (Popcorn Time) [File not signed]
FirewallRules: [{DE8E2F22-FEE3-4163-8A7F-85BBE493B1F4}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe (Popcorn Time) [File not signed]
FirewallRules: [UDP Query User{548BA91E-D2BC-415E-AAC4-D22E565214FA}E:\program files (x86)\popcorn-time\popcorn-time.exe] => (Allow) E:\program files (x86)\popcorn-time\popcorn-time.exe No File
FirewallRules: [TCP Query User{7744CF01-4848-439F-A324-B2FA70A29B36}E:\program files (x86)\popcorn-time\popcorn-time.exe] => (Allow) E:\program files (x86)\popcorn-time\popcorn-time.exe No File
FirewallRules: [UDP Query User{75C572CC-FEB6-42DC-B735-40CA0AA4FC1F}E:\fifa18\fifa18.exe] => (Allow) E:\fifa18\fifa18.exe No File
FirewallRules: [TCP Query User{25E3B2A3-FCA0-43F9-9504-287A856A550B}E:\fifa18\fifa18.exe] => (Allow) E:\fifa18\fifa18.exe No File
FirewallRules: [{D5005802-7BBA-44F0-83BF-40F91535CF60}] => (Allow) E:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, Inc) [File not signed]
FirewallRules: [{FC3993ED-EAE2-4687-8BA9-1F63DE305276}] => (Allow) E:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, Inc) [File not signed]
FirewallRules: [{FC0113C1-FF5C-41AC-B291-AF03C2D552F2}] => (Allow) E:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{7F6862FF-94EA-41D9-BDC0-0B2EEF49FD1D}] => (Allow) E:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{BCAA06E9-A083-42D2-875F-E6299215CEC2}] => (Allow) E:\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{75E8E286-1BF7-42FE-A67E-4CB8AD476D9B}] => (Allow) E:\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{33BBD011-E976-4A41-8ACA-F7640DE8A22C}] => (Allow) E:\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{5ECCE9C0-6A78-4B98-8934-75F54343A315}] => (Allow) E:\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [TCP Query User{E7699435-7E08-475E-9F43-DCB21F3EE956}E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (Bluehole, Inc. -> Bluehole GinnoGames, Inc.)
FirewallRules: [UDP Query User{20E3A2D5-6CFD-4448-9D91-ECF8B5D11681}E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (Bluehole, Inc. -> Bluehole GinnoGames, Inc.)
FirewallRules: [TCP Query User{6BC2077E-801B-4D7D-B409-B86A9783EDCB}E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (Bluehole, Inc. -> Bluehole GinnoGames, Inc.)
FirewallRules: [UDP Query User{C55AE186-6240-47DA-B941-A52A413F568D}E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (Bluehole, Inc. -> Bluehole GinnoGames, Inc.)
FirewallRules: [TCP Query User{4F8D9CBF-73E3-4AC2-8376-E809AF8E2641}E:\steam\steamapps\common\insurgency2\insurgency_x64.exe] => (Allow) E:\steam\steamapps\common\insurgency2\insurgency_x64.exe No File
FirewallRules: [UDP Query User{07E3FF48-FF59-4D60-8D1F-415413727054}E:\steam\steamapps\common\insurgency2\insurgency_x64.exe] => (Allow) E:\steam\steamapps\common\insurgency2\insurgency_x64.exe No File
FirewallRules: [{1000A21A-F281-4653-8D58-9883E83BDD1B}] => (Allow) E:\Steam\steamapps\common\Half-Life\hl.exe (Valve -> Valve)
FirewallRules: [{903342AD-5111-4927-9CEA-3AF47FEB6ED7}] => (Allow) E:\Steam\steamapps\common\Half-Life\hl.exe (Valve -> Valve)
FirewallRules: [{12540C31-16C2-4096-B862-C13CC1BBB04A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{BA5D1D02-ED7F-4F7A-A921-71507CF04AE1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{9231A79E-55CC-463D-B77A-A2AD0DBD8414}E:\riot games\rads\projects\league_client\releases\0.0.0.159\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.159\deploy\leagueclient.exe No File
FirewallRules: [UDP Query User{37436A74-5FFF-453A-B227-1FE7FFA70BE6}E:\riot games\rads\projects\league_client\releases\0.0.0.159\deploy\leagueclient.exe] => (Allow) E:\riot games\rads\projects\league_client\releases\0.0.0.159\deploy\leagueclient.exe No File
FirewallRules: [{257B2AA0-94A1-44F5-A64B-DF6C2A80CBB3}] => (Allow) E:\Steam\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{EEEC3560-C92E-4395-B5FB-40A8FECD5DB3}] => (Allow) E:\Steam\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [TCP Query User{8D9E475C-C793-44C6-BB49-F88A84670DF5}E:\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) E:\steam\steamapps\common\realm royale\binaries\win64\realm.exe (Hirez Studios, Inc.) [File not signed]
FirewallRules: [UDP Query User{80835FAC-747C-402F-9C27-486D876FA85F}E:\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) E:\steam\steamapps\common\realm royale\binaries\win64\realm.exe (Hirez Studios, Inc.) [File not signed]
FirewallRules: [{3325D699-DA14-4F73-A18C-6D05F2CCFFC2}] => (Allow) E:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )
FirewallRules: [{2DEFCB91-722C-47CB-9E94-B195FDC73D7C}] => (Allow) E:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )
FirewallRules: [TCP Query User{D931A2E1-3C55-4FDD-8DB0-AEC69D05B7B5}E:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) E:\steam\steamapps\common\paladins\binaries\win64\paladins.exe No File
FirewallRules: [UDP Query User{AD7711F0-831B-445E-8225-24C2790F508F}E:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) E:\steam\steamapps\common\paladins\binaries\win64\paladins.exe No File
FirewallRules: [{DF3746BB-7C02-4906-92D5-B758E6E42F47}] => (Allow) C:\Users\Krstici\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{03FCD6EE-A362-48FB-A32C-A81646F489EF}] => (Allow) C:\Users\Krstici\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [TCP Query User{E9923BC2-1680-4698-B19A-FBE1D4C9BF28}E:\program files (x86)\popcorn time\nodejs\node.exe] => (Allow) E:\program files (x86)\popcorn time\nodejs\node.exe No File
FirewallRules: [UDP Query User{8AEF2A0D-008C-481A-B2DF-E37921B1482C}E:\program files (x86)\popcorn time\nodejs\node.exe] => (Allow) E:\program files (x86)\popcorn time\nodejs\node.exe No File
FirewallRules: [{9CA7CA41-6949-46A6-A6F5-2EE458458888}] => (Allow) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{6F97A2DC-5185-4278-80A1-02C587F7BB1F}] => (Allow) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{941A4D7F-9034-4931-A041-5DBB78AB3BD3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{701C4191-FC19-42F4-997E-B820531191C4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{61023B97-4E67-4AF2-99A9-27B0567D822F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{872E08CF-CF77-4DE5-A365-B42AF855F898}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{1ABE1177-2837-44A5-8110-A2F52867AE2E}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe No File
FirewallRules: [{495E3ADF-6C9F-4373-A8EF-18C365913AEB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{09529E46-9CD8-4BB5-B4D7-AFA960471506}] => (Allow) E:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, Inc) [File not signed]
FirewallRules: [{922FA7A6-FD5C-4195-ACD7-5FDC6C602B16}] => (Allow) E:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, Inc) [File not signed]
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:110.39 GB) (Free:56.81 GB) (51%)
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/21/2019 02:50:54 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x803F7001
Command-line arguments:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=UserLogon;SessionId=1
Error: (10/21/2019 02:50:48 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x8007139F
Command-line arguments:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=NetworkAvailable
System errors:
=============
==================== Memory info ===========================
BIOS: American Megatrends Inc. 3404 10/10/2017
Motherboard: ASUSTeK COMPUTER INC. H110M-R
Processor: Intel® Pentium® CPU G4560 @ 3.50GHz
Percentage of memory in use: 40%
Total physical RAM: 8130.75 MB
Available physical RAM: 4811.14 MB
Total Virtual: 12994.75 MB
Available Virtual: 8253.78 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:110.39 GB) (Free:56.81 GB) NTFS
Drive e: () (Fixed) (Total:931.39 GB) (Free:148.96 GB) NTFS
\\?\Volume{79c4a815-91d3-4f7b-aaea-c3457dc211ce}\ (Recovery) (Fixed) (Total:0.44 GB) (Free:0.42 GB) NTFS
\\?\Volume{4d684a56-12df-476e-af01-fb120c9f894c}\ () (Fixed) (Total:0.85 GB) (Free:0.43 GB) NTFS
\\?\Volume{c8fd8f97-0ac8-4011-8538-e686c47ba474}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Protective MBR) (Size: 111.8 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt ============================