PROBLEMA Tranne YouTube non si apre più nulla

danilo79

Utente Èlite
1,814
549
Farbar hai scaricato quello a 64bit??..
Penso che il tuo pc sia a 64bit....
Riscaricalo....disattiva prima l antivirus poi riprova....

Questo passaggio l'ho saltato, non sono riuscito a trovare le sezioni descritte...
Prova cosi....
Clicca sul pulsante Start e seleziona Impostazioni, dalla schermata che si apre clicca sull'icona Rete e Internet,






mentre dalla colonna di sinistra seleziona Wi-Fi (se si usa la rete Wi-Fi) o Ethernet (se si usa la rete LAN).

Arrivato a questo punto clicca su Modifica opzioni scheda



e dalla lista delle scheda di rete, identifica quella usata per la connessione a internet, clicca col destro mouse su di essa e scegli la voce Proprietà dal menù contestuale.

Dalla scheda Rete scorri in basso per fare doppio clic sulla voce Protocollo Internet versione 4 (TCP/IPv4).


spunta Ottieni automaticamente un indirizzo IP(non come figura sotto) e Ottieni indirizzo server DNS automaticamente se vuoi utilizzare i dns preimpostati nel router...

Se vuoi impostate i dns come detto di google...scegli Utilizza i seguenti server DNS e configurali come segue:
  • DNS preferito: 8.8.8.8
  • DNS alternativo: 8.8.4.4

Infine, metti il flag nella casella relativa alla voce Convalida impostazioni all’uscita e clicca su OK.

[TH]comunque se il problema è risolto non effettuare altro,probabile che tra le eliminaxioni gia avvente si sia risolto il tutto, se hai di nuovo il problema riposta pure..[/TH]

Ciao
 
Ultima modifica:

adfh

Nuovo Utente
125
4
Farbar hai scaricato quello a 64bit??..
Penso che il tuo pc sia a 64bit....
Riscaricalo....disattiva prima l antivirus poi riprova....

Forse avevo sbagliato versione, ho acceso il pc poco fa e ho provato a riscaricarlo (confermo di avere Windows a 32 bit), sta di fatto che ora funziona. Ecco i risultati:

FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13.05.2018
Ran by CASA (administrator) on CASA-PC (13-05-2018 02:08:58)
Running from C:\Users\CASA\Desktop
Loaded Profiles: CASA (Available Profiles: CASA)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) Language: Italiano (Italia)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 3520 series\Bin\ScanToPCActivationApp.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
() C:\Program Files\qBittorrent\qbittorrent.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [291568 2018-05-11] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM\...\Run: [] => [X]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3793853494-292997172-3702221761-1000\...\Run: [HP Deskjet 3520 series (NET)] => C:\Program Files\HP\HP Deskjet 3520 series\Bin\ScanToPCActivationApp.exe [1837672 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-3793853494-292997172-3702221761-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [13619968 2018-04-12] (Piriform Ltd)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{7F25AC8C-4C8C-4A62-8B6F-4AAE0E2E3DD4}: [NameServer] 8.8.8.8,8.8.4.4,192.168.1.1
Tcpip\..\Interfaces\{7F25AC8C-4C8C-4A62-8B6F-4AAE0E2E3DD4}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-3793853494-292997172-3702221761-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/it-it/?ocid=iehp

FireFox:
========
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-04-30] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-04-30] (Google Inc.)

Chrome:
=======
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\CASA\AppData\Local\Google\Chrome\User Data\Default [2018-05-13]
CHR Extension: (OneTab) - C:\Users\CASA\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2018-04-30]
CHR Extension: (Pagamenti Chrome Web Store) - C:\Users\CASA\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-30]
CHR Extension: (Chrome Media Router) - C:\Users\CASA\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-04-30]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [318328 2018-05-11] (AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [6013944 2018-05-11] (AVG Technologies CZ, s.r.o.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4753104 2018-05-03] (Malwarebytes)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2009-07-14] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [159424 2018-05-11] (AVG Technologies CZ, s.r.o.)
R1 avgbdisk; C:\Windows\System32\drivers\avgbdiskx.sys [135312 2018-04-30] (AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriverx.sys [178528 2018-05-11] (AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidshx.sys [150464 2018-05-11] (AVG Technologies CZ, s.r.o.)
R0 avgblog; C:\Windows\System32\drivers\avgblogx.sys [269784 2018-05-11] (AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbunivx.sys [43432 2018-05-11] (AVG Technologies CZ, s.r.o.)
S3 avgHwid; C:\Windows\System32\drivers\avgHwid.sys [35192 2018-05-11] (AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [125544 2018-05-11] (AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [92928 2018-05-11] (AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [64232 2018-05-11] (AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [776504 2018-05-11] (AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [384752 2018-05-11] (AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [144728 2018-05-11] (AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [303168 2018-05-11] (AVG Technologies CZ, s.r.o.)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae.sys [128736 2018-04-26] (Malwarebytes)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2018-04-30] (REALiX(tm))
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [165088 2018-05-12] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [93920 2018-05-12] (Malwarebytes)
R3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [40160 2018-05-12] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [220896 2018-05-12] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [73336 2018-05-13] (Malwarebytes)
S3 StkCMini; C:\Windows\System32\Drivers\StkCMini.sys [1579144 2010-06-07] (Syntek)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-05-13 02:08 - 2018-05-13 02:09 - 000007784 _____ C:\Users\CASA\Desktop\FRST.txt
2018-05-13 02:08 - 2018-05-13 02:08 - 000000000 ____D C:\FRST
2018-05-13 02:06 - 2018-05-13 02:05 - 001765376 _____ (Farbar) C:\Users\CASA\Desktop\FRST.exe
2018-05-13 02:05 - 2018-05-13 02:06 - 002404864 _____ (Farbar) C:\Users\CASA\Downloads\FRST64.exe
2018-05-13 02:04 - 2018-05-13 02:05 - 001765376 _____ (Farbar) C:\Users\CASA\Downloads\FRST.exe
2018-05-13 02:01 - 2018-05-13 02:01 - 000143386 _____ C:\Users\CASA\Desktop\655268-3ea3cdadb75b3353d61b3145da6dd104-user.jpeg
2018-05-12 19:57 - 2018-05-12 20:21 - 000000000 ____D C:\ProgramData\RogueKiller
2018-05-12 19:57 - 2018-05-12 19:57 - 000024688 _____ C:\Windows\system32\Drivers\TrueSight.sys
2018-05-12 19:16 - 2018-05-12 19:56 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2018-05-12 19:16 - 2018-05-12 19:16 - 000222648 _____ (Malwarebytes) C:\Windows\system32\Drivers\16542791.sys
2018-05-12 19:08 - 2018-05-13 01:53 - 000073336 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2018-05-12 19:08 - 2018-05-12 19:08 - 000220896 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2018-05-12 19:08 - 2018-05-12 19:08 - 000165088 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2018-05-12 19:08 - 2018-05-12 19:08 - 000093920 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2018-05-12 19:08 - 2018-05-12 19:08 - 000040160 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2018-05-12 18:50 - 2018-05-12 19:16 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-05-12 18:50 - 2018-05-12 18:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-05-12 18:50 - 2018-05-12 18:50 - 000000000 ____D C:\Program Files\Malwarebytes
2018-05-12 18:50 - 2018-04-26 05:36 - 000128736 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae.sys
2018-05-12 18:44 - 2018-05-12 18:45 - 022659656 _____ (Adlice Software) C:\Users\CASA\Desktop\RogueKiller_portable32.exe
2018-05-12 18:42 - 2018-05-12 18:43 - 014178840 _____ (Malwarebytes Corp.) C:\Users\CASA\Desktop\mbar-1.10.3.1001.exe
2018-05-12 03:25 - 2018-05-12 03:25 - 001792640 _____ (Bleeping Computer, LLC) C:\Users\CASA\Desktop\rkill_2.9.1.0.exe
2018-05-12 03:21 - 2018-05-12 03:21 - 007271632 _____ (Malwarebytes) C:\Users\CASA\Desktop\adwcleaner_7.1.1.exe
2018-05-12 03:20 - 2016-04-27 20:43 - 001610816 _____ (Malwarebytes) C:\Users\CASA\Desktop\Junkware Removal Tool 8.0.9.exe
2018-05-11 14:33 - 2018-05-11 01:13 - 000321776 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe
2018-05-11 02:03 - 2018-05-12 03:23 - 000000000 ____D C:\AdwCleaner
2018-05-10 23:59 - 2018-05-10 23:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2018-05-10 23:59 - 2018-05-10 23:59 - 000000000 ____D C:\Program Files\CCleaner
2018-05-10 15:55 - 2018-05-10 15:55 - 000000000 ____D C:\Users\CASA\Downloads\eMule
2018-05-10 15:55 - 2018-05-10 15:55 - 000000000 ____D C:\ProgramData\eMule
2018-05-10 15:53 - 2018-05-10 15:53 - 000000000 ____D C:\Users\CASA\AppData\Local\eMule
2018-05-10 15:53 - 2018-05-10 15:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule
2018-05-10 15:53 - 2018-05-10 15:53 - 000000000 ____D C:\Program Files\eMule
2018-05-10 02:06 - 2018-05-10 02:11 - 000000000 ____D C:\Program Files\Core Temp
2018-05-10 02:06 - 2018-05-10 02:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Core Temp
2018-05-09 16:57 - 2018-05-09 16:57 - 000000000 ____D C:\Users\CASA\AppData\Roaming\DVDVideoSoft
2018-05-08 12:58 - 2018-05-08 12:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
2018-05-08 12:57 - 2018-05-08 12:57 - 000000000 ____D C:\Program Files\qBittorrent
2018-05-07 15:15 - 2018-05-07 15:37 - 000000000 ____D C:\Users\CASA\Documents\VHS to DVD
2018-05-07 15:15 - 2018-05-07 15:15 - 000000000 ____D C:\Users\CASA\AppData\Local\VHS to DVD
2018-05-07 15:12 - 2018-05-07 15:12 - 000000000 ____D C:\Users\Administrator
2018-05-07 15:12 - 2018-05-07 15:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\honestech VHS to DVD 2.0 SE
2018-05-07 15:12 - 2018-05-07 15:12 - 000000000 ____D C:\Program Files\honestech VHS to DVD 2.0 SE
2018-05-07 15:12 - 2006-05-16 11:54 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\Mfc42loc.dll
2018-05-07 15:12 - 2002-07-26 17:02 - 000153088 _____ C:\UNWISE.EXE
2018-05-07 15:11 - 2018-05-07 15:11 - 000000000 ____D C:\Program Files\honestech
2018-05-07 15:09 - 2018-05-07 15:12 - 000000000 ___HD C:\Program Files\InstallShield Installation Information
2018-05-07 15:09 - 2010-06-07 16:02 - 001579144 _____ (Syntek) C:\Windows\system32\Drivers\StkCMini.sys
2018-05-07 15:09 - 2010-05-28 17:43 - 000025608 _____ C:\Windows\system32\Drivers\StkCSam.sys
2018-05-07 15:09 - 2010-04-16 13:59 - 000236168 _____ (Syntek America Inc.) C:\Windows\system32\StkCProp.ax
2018-05-07 15:09 - 2010-03-29 20:35 - 000084616 _____ () C:\Windows\StkUnist.exe
2018-05-07 15:09 - 2010-03-26 20:24 - 000076424 _____ (Syntek America Inc.) C:\Windows\system32\StkCWIA.dll
2018-05-07 15:09 - 2010-03-26 20:24 - 000055944 _____ (Syntek America Inc.) C:\Windows\system32\StkSSrv.dll
2018-05-07 15:09 - 2010-03-26 20:23 - 000113288 _____ (Syntek America Inc.) C:\Windows\StkC112X.exe
2018-05-07 15:09 - 2010-03-26 20:23 - 000031368 _____ (Syntek America Inc.) C:\Windows\system32\StkCSrv.exe
2018-05-07 15:09 - 2010-03-26 15:43 - 013874824 _____ (Syntek America Inc.) C:\Windows\system32\Drivers\StkCPipe.sys
2018-05-07 15:09 - 2009-06-11 15:15 - 000347152 _____ (Syntek Corporation) C:\Windows\VideoView.exe
2018-05-07 15:09 - 2009-05-03 15:04 - 000197648 _____ C:\Windows\system32\Drivers\StkCSF.sys
2018-05-07 09:45 - 2018-05-07 09:48 - 000000000 ____D C:\Users\CASA\AppData\Roaming\freac
2018-05-07 09:45 - 2018-05-07 09:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\freac - free audio converter
2018-05-07 09:45 - 2018-05-07 09:45 - 000000000 ____D C:\Program Files\freac
2018-05-05 04:58 - 2018-05-10 02:28 - 000000000 ____D C:\Users\CASA\AppData\Roaming\Mp3tag
2018-05-05 04:57 - 2018-05-05 04:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag
2018-05-05 04:57 - 2018-05-05 04:57 - 000000000 ____D C:\Program Files\Mp3tag
2018-05-04 23:16 - 2018-05-13 02:06 - 000000000 ____D C:\Users\CASA\AppData\Roaming\qBittorrent
2018-05-04 23:16 - 2018-05-04 23:16 - 000000000 ____D C:\Users\CASA\AppData\Local\qBittorrent
2018-05-04 21:14 - 2018-05-04 21:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Medieval Software
2018-05-04 21:14 - 2018-05-04 21:14 - 000000000 ____D C:\Program Files\Medieval Software
2018-05-02 14:15 - 2018-05-02 14:15 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2018-05-02 05:08 - 2018-05-02 05:08 - 000000000 ____D C:\Users\CASA\AppData\Local\Software
2018-05-02 05:08 - 2018-05-02 05:08 - 000000000 ____D C:\Users\CASA\AppData\Local\NikLicenseFiles
2018-05-02 05:08 - 2018-05-02 05:08 - 000000000 ____D C:\ProgramData\Google
2018-05-01 21:48 - 2018-05-01 21:48 - 000000000 ____D C:\Users\CASA\AppData\LocalLow\Adobe
2018-05-01 02:22 - 2018-05-11 00:53 - 000000000 ____D C:\Users\CASA\AppData\Roaming\MPC-HC
2018-05-01 02:21 - 2018-05-01 02:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2018-05-01 02:21 - 2018-05-01 02:21 - 000000000 ____D C:\Program Files\K-Lite Codec Pack
2018-05-01 02:21 - 2018-01-28 11:00 - 000694784 _____ C:\Windows\system32\xvidcore.dll
2018-05-01 02:21 - 2018-01-28 11:00 - 000284672 _____ C:\Windows\system32\xvidvfw.dll
2018-05-01 02:21 - 2017-07-30 12:50 - 003850240 _____ (x264vfw project) C:\Windows\system32\x264vfw.dll
2018-05-01 02:21 - 2015-10-24 18:00 - 000112128 _____ C:\Windows\system32\ff_vfw.dll
2018-05-01 02:21 - 2012-07-21 12:54 - 000122880 _____ (fccHandler) C:\Windows\system32\ac3acm.acm
2018-05-01 02:21 - 2011-12-07 19:32 - 000216064 _____ ( ) C:\Windows\system32\lagarith.dll
2018-05-01 01:51 - 2018-05-01 01:51 - 000001875 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk
2018-05-01 01:51 - 2018-05-01 01:51 - 000000000 ____D C:\Users\CASA\AppData\Roaming\SumatraPDF
2018-05-01 01:51 - 2018-05-01 01:51 - 000000000 ____D C:\Program Files\SumatraPDF
2018-04-30 20:02 - 2018-05-07 20:28 - 000000000 ____D C:\Users\CASA\AppData\Roaming\HpUpdate
2018-04-30 20:01 - 2018-04-30 20:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2018-04-30 20:01 - 2018-04-30 20:02 - 000000000 ____D C:\Program Files\HP
2018-04-30 20:01 - 2018-04-30 20:01 - 000000057 _____ C:\ProgramData\Ament.ini
2018-04-30 20:01 - 2018-04-30 20:01 - 000000000 ____D C:\ProgramData\HP
2018-04-30 20:01 - 2012-10-17 04:04 - 000580712 ____N (Hewlett-Packard Co.) C:\Windows\system32\HPDiscoPMB011.dll
2018-04-30 20:00 - 2018-04-30 20:02 - 000000000 ____D C:\Users\CASA\AppData\Local\HP
2018-04-30 17:18 - 2018-04-30 17:19 - 000000000 ____D C:\Program Files\Photoshop19
2018-04-30 17:12 - 2018-05-01 21:49 - 000000000 ____D C:\Users\CASA\AppData\Local\Adobe
2018-04-30 17:12 - 2018-04-30 17:12 - 000000000 ____D C:\Users\CASA\AppData\Roaming\Adobe
2018-04-30 17:12 - 2018-04-30 17:12 - 000000000 ____D C:\Users\CASA\AppData\Local\AMD
2018-04-30 17:12 - 2018-04-30 17:12 - 000000000 ____D C:\ProgramData\Adobe
2018-04-30 17:11 - 2018-04-30 17:11 - 000000000 ____D C:\Program Files\Common Files\Adobe
2018-04-30 15:49 - 2018-04-30 15:49 - 000000000 ____D C:\Users\CASA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2018-04-30 15:47 - 2018-05-12 19:04 - 000000000 ____D C:\Users\CASA\AppData\Local\JDownloader v2.0
2018-04-30 15:45 - 2018-04-30 15:45 - 000000000 ____D C:\Users\CASA\AppData\Roaming\WinRAR
2018-04-30 15:45 - 2018-04-30 15:45 - 000000000 ____D C:\Users\CASA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-04-30 15:45 - 2018-04-30 15:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-04-30 15:45 - 2018-04-30 15:45 - 000000000 ____D C:\Program Files\WinRAR
2018-04-30 15:34 - 2018-05-01 02:14 - 000000000 ____D C:\Users\CASA\AppData\Roaming\Arobas Music
2018-04-30 15:25 - 2016-07-22 16:51 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2018-04-30 15:04 - 2018-04-30 15:05 - 000000000 ____D C:\ProgramData\Arobas Music
2018-04-30 15:04 - 2018-04-30 15:05 - 000000000 ____D C:\Program Files\Arobas Music
2018-04-30 15:04 - 2018-04-30 15:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guitar Pro 7
2018-04-30 14:56 - 2018-04-30 14:56 - 000000000 ____D C:\Users\CASA\Documents\Modelli di Office personalizzati
2018-04-30 14:55 - 2018-05-11 00:01 - 000000000 ____D C:\Windows\Panther
2018-04-30 14:55 - 2018-04-30 14:55 - 000000000 ____D C:\Users\CASA\AppData\Roaming\AVG
2018-04-30 14:54 - 2018-04-30 14:54 - 000000000 ____D C:\Users\CASA\AppData\Roaming\Thinstall
2018-04-30 14:54 - 2018-04-30 14:54 - 000000000 ____D C:\Users\CASA\AppData\Local\Thinstall
2018-04-30 14:50 - 2018-04-30 14:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2018-04-30 14:48 - 2018-05-11 01:14 - 000384752 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys
2018-04-30 14:48 - 2018-05-11 01:14 - 000303168 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys
2018-04-30 14:48 - 2018-05-11 01:14 - 000159424 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArPot.sys
2018-04-30 14:48 - 2018-05-11 01:14 - 000144728 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgStm.sys
2018-04-30 14:48 - 2018-05-11 01:14 - 000125544 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys
2018-04-30 14:48 - 2018-05-11 01:14 - 000092928 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys
2018-04-30 14:48 - 2018-05-11 01:14 - 000064232 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys
2018-04-30 14:48 - 2018-05-11 01:14 - 000035192 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgHwid.sys
2018-04-30 14:48 - 2018-05-11 01:13 - 000776504 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys
2018-04-30 14:48 - 2018-05-11 01:13 - 000269784 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgblogx.sys
2018-04-30 14:48 - 2018-05-11 01:13 - 000178528 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdriverx.sys
2018-04-30 14:48 - 2018-05-11 01:13 - 000150464 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidshx.sys
2018-04-30 14:48 - 2018-05-11 01:13 - 000043432 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbunivx.sys
2018-04-30 14:48 - 2018-04-30 14:48 - 001142064 _____ (Microsoft Corporation) C:\Windows\ucrtbase.dll
2018-04-30 14:48 - 2018-04-30 14:48 - 000135312 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbdiskx.sys
2018-04-30 14:48 - 2018-04-30 14:48 - 000000000 ____D C:\Program Files\Common Files\AVG
2018-04-30 14:47 - 2018-05-11 13:54 - 000000000 ____D C:\Program Files\AVG
2018-04-30 14:36 - 2018-05-12 01:56 - 000000000 ____D C:\Users\CASA\AppData\Local\Avg
2018-04-30 14:36 - 2018-05-11 13:54 - 000000000 ____D C:\ProgramData\Avg
2018-04-30 14:36 - 2018-04-30 14:36 - 000000000 ____D C:\Users\CASA\AppData\Local\CEF
2018-04-30 14:33 - 2018-05-11 01:33 - 000002168 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-04-30 14:32 - 2018-04-30 17:12 - 000000000 ____D C:\Users\CASA\AppData\Local\Google
2018-04-30 14:32 - 2018-04-30 14:33 - 000000000 ____D C:\Program Files\Google
2018-04-30 14:27 - 2018-04-30 14:27 - 000000000 _____ C:\Windows\ativpsrm.bin
2018-04-30 14:23 - 2018-04-30 14:23 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2018-04-30 14:23 - 2018-04-30 14:23 - 000000000 ____D C:\Program Files\AMD
2018-04-30 14:22 - 2018-04-30 14:22 - 039712768 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 025052160 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atioglxx.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 022318592 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl12cl.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 019581440 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2018-04-30 14:22 - 2018-04-30 14:22 - 014302208 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 009468448 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx32.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 007898704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumdva.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 007167416 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumdag.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 005129728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle32.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 003471376 _____ C:\Windows\system32\atiumdva.cap
2018-04-30 14:22 - 2018-04-30 14:22 - 001194928 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx32.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000995342 _____ C:\Windows\system32\amdocl_as32.exe
2018-04-30 14:22 - 2018-04-30 14:22 - 000934400 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000842001 _____ C:\Windows\system32\amdicdxx.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000798734 _____ C:\Windows\system32\amdocl_ld32.exe
2018-04-30 14:22 - 2018-04-30 14:22 - 000737410 _____ C:\Windows\system32\atiicdxx.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000669696 _____ (AMD) C:\Windows\system32\coinst_15.20.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000662456 _____ C:\Windows\system32\atiapfxx.blb
2018-04-30 14:22 - 2018-04-30 14:22 - 000564224 _____ (AMD) C:\Windows\system32\atieclxx.exe
2018-04-30 14:22 - 2018-04-30 14:22 - 000442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000385536 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2018-04-30 14:22 - 2018-04-30 14:22 - 000370688 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2018-04-30 14:22 - 2018-04-30 14:22 - 000322868 _____ C:\Windows\system32\ativvaxy_vi.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000321200 _____ C:\Windows\system32\ativvaxy_vi_nd.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000294912 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe
2018-04-30 14:22 - 2018-04-30 14:22 - 000259072 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2018-04-30 14:22 - 2018-04-30 14:22 - 000255808 _____ C:\Windows\system32\ativvaxy_cz_nd.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000250884 _____ C:\Windows\system32\ativvaxy_FJ.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000249088 _____ C:\Windows\system32\ativvaxy_FJ_nd.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000234420 _____ C:\Windows\system32\ativvaxy_cik.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000232752 _____ C:\Windows\system32\ativvaxy_cik_nd.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000204952 _____ C:\Windows\system32\ativvsvl.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000203776 _____ C:\Windows\system32\clinfo.exe
2018-04-30 14:22 - 2018-04-30 14:22 - 000201216 _____ C:\Windows\system32\amdgfxinfo32.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000189440 _____ C:\Windows\system32\atieah32.exe
2018-04-30 14:22 - 2018-04-30 14:22 - 000177344 _____ C:\Windows\system32\ativce03.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000175648 _____ C:\Windows\system32\amde31a.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000164352 _____ (AMD) C:\Windows\system32\atitmmxx.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000158208 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atigktxx.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000157144 _____ C:\Windows\system32\ativvsva.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000142848 _____ C:\Windows\system32\hsa-thunk.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000136624 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxpag.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000123240 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9pag.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000117760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle32.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000100816 _____ C:\Windows\system32\ativce02.dat
2018-04-30 14:22 - 2018-04-30 14:22 - 000092328 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc32.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000092328 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom32.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000090624 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000089600 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl32.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000059392 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000052224 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000049152 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\l160x86.sys
2018-04-30 14:22 - 2018-04-30 14:22 - 000049152 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000045056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe
2018-04-30 14:22 - 2018-04-30 14:22 - 000043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000038400 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000029184 _____ (AMD) C:\Windows\system32\atimuixx.dll
2018-04-30 14:22 - 2018-04-30 14:22 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2018-04-30 14:15 - 2018-01-01 04:02 - 001310528 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 002088960 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 001499648 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 001417728 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 001270272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 001155584 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 001062912 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 001004032 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSvc.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000983552 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000741888 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000627712 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000564736 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000554496 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000463360 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000436736 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000389632 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000377344 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000328192 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000269824 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000261120 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000186368 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000171008 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000153088 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\PeerDist.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000096256 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistWSDDiscoProv.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000072192 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\vmicres.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\wshnetbs.dll
2018-04-30 14:15 - 2018-01-01 04:00 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 001806848 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000644096 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:54 - 001214184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2018-04-30 14:15 - 2018-01-01 03:54 - 000712936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2018-04-30 14:15 - 2018-01-01 03:54 - 000201960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2018-04-30 14:15 - 2018-01-01 03:54 - 000198888 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2018-04-30 14:15 - 2018-01-01 03:54 - 000198888 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2018-04-30 14:15 - 2018-01-01 03:54 - 000173288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2018-04-30 14:15 - 2018-01-01 03:54 - 000139496 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2018-04-30 14:15 - 2018-01-01 03:54 - 000137960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2018-04-30 14:15 - 2018-01-01 03:54 - 000105192 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2018-04-30 14:15 - 2018-01-01 03:54 - 000067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2018-04-30 14:15 - 2018-01-01 03:50 - 000317952 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2018-04-30 14:15 - 2018-01-01 03:44 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistHttpTrans.dll
2018-04-30 14:15 - 2018-01-01 03:43 - 000104448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
2018-04-30 14:15 - 2018-01-01 03:43 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
2018-04-30 14:15 - 2018-01-01 03:43 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys
2018-04-30 14:15 - 2018-01-01 03:43 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
2018-04-30 14:15 - 2018-01-01 03:43 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
2018-04-30 14:15 - 2018-01-01 03:41 - 001638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2018-04-30 14:15 - 2018-01-01 03:41 - 000227328 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2018-04-30 14:15 - 2018-01-01 03:41 - 000181248 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2018-04-30 14:15 - 2018-01-01 03:41 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2018-04-30 14:15 - 2018-01-01 03:41 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2018-04-30 14:15 - 2018-01-01 03:41 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2018-04-30 14:15 - 2018-01-01 03:41 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2018-04-30 14:15 - 2018-01-01 03:40 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2018-04-30 14:15 - 2018-01-01 03:40 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2018-04-30 14:15 - 2018-01-01 03:40 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2018-04-30 14:15 - 2018-01-01 03:40 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2018-04-30 14:15 - 2018-01-01 03:39 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2018-04-30 14:15 - 2018-01-01 03:38 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2018-04-30 14:15 - 2018-01-01 03:38 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\vmicsvc.exe
2018-04-30 14:15 - 2018-01-01 03:38 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\IcCoinstall.dll
2018-04-30 14:15 - 2018-01-01 03:38 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2018-04-30 14:15 - 2018-01-01 03:37 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2018-04-30 14:15 - 2018-01-01 03:36 - 000314368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2018-04-30 14:15 - 2018-01-01 03:36 - 000313344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2018-04-30 14:15 - 2018-01-01 03:36 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2018-04-30 14:15 - 2018-01-01 03:35 - 000514048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2018-04-30 14:15 - 2018-01-01 03:35 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2018-04-30 14:15 - 2018-01-01 03:35 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2018-04-30 14:15 - 2018-01-01 03:35 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2018-04-30 14:15 - 2018-01-01 03:35 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2018-04-30 14:15 - 2018-01-01 03:35 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2018-04-30 14:15 - 2018-01-01 03:35 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2018-04-30 14:15 - 2018-01-01 03:35 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2018-04-30 14:15 - 2018-01-01 03:35 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2018-04-30 14:15 - 2018-01-01 03:35 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:35 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:35 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2018-04-30 14:15 - 2018-01-01 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2018-04-30 14:15 - 2017-12-21 08:27 - 000535656 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2018-04-30 14:15 - 2017-12-13 18:15 - 000309480 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2018-04-30 14:15 - 2017-12-13 18:11 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2018-04-30 14:15 - 2017-12-13 18:11 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2018-04-30 14:15 - 2017-12-13 18:11 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2018-04-30 14:15 - 2017-12-13 17:50 - 000034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2018-04-30 14:15 - 2017-12-05 19:08 - 000481792 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2018-04-30 14:15 - 2017-12-05 19:08 - 000215040 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2018-04-30 14:15 - 2017-12-05 17:50 - 002402816 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2018-04-30 14:15 - 2017-12-05 17:49 - 000032768 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll
2018-04-30 14:15 - 2017-11-07 18:13 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2018-04-30 14:15 - 2017-11-04 17:10 - 000158720 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2018-04-30 14:15 - 2017-11-04 17:10 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2018-04-30 14:15 - 2017-11-02 17:11 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2018-04-30 14:15 - 2017-11-02 17:11 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2018-04-30 14:15 - 2017-11-02 17:11 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2018-04-30 14:15 - 2017-11-02 16:56 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2018-04-30 14:15 - 2017-10-18 03:55 - 000259584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2018-04-30 14:15 - 2017-10-18 03:55 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2018-04-30 14:15 - 2017-10-17 00:46 - 000953344 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2018-04-30 14:15 - 2017-10-16 23:55 - 000339968 _____ (Microsoft Corporation) C:\Windows\system32\msexcl40.dll
2018-04-30 14:15 - 2017-10-12 02:37 - 001549824 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2018-04-30 14:15 - 2017-10-12 02:37 - 001400320 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2018-04-30 14:15 - 2017-10-12 02:37 - 001363968 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2018-04-30 14:15 - 2017-10-12 02:37 - 000666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2018-04-30 14:15 - 2017-10-12 02:37 - 000337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2018-04-30 14:15 - 2017-10-12 02:37 - 000197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2018-04-30 14:15 - 2017-10-12 02:37 - 000111104 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2018-04-30 14:15 - 2017-10-12 02:37 - 000104448 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2018-04-30 14:15 - 2017-10-12 02:37 - 000059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2018-04-30 14:15 - 2017-10-12 02:37 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2018-04-30 14:15 - 2017-10-12 02:26 - 000427520 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2018-04-30 14:15 - 2017-10-12 02:26 - 000164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2018-04-30 14:15 - 2017-10-12 02:25 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2018-04-30 14:15 - 2017-10-12 02:25 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2018-04-30 14:15 - 2017-10-12 02:24 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2018-04-30 14:15 - 2017-10-12 02:24 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2018-04-30 14:15 - 2017-10-12 02:24 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2018-04-30 14:15 - 2017-10-12 02:14 - 000247808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2018-04-30 14:15 - 2017-10-12 02:14 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys
2018-04-30 14:15 - 2017-09-13 17:09 - 000830464 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2018-04-30 14:15 - 2017-09-13 17:09 - 000828928 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2018-04-30 14:15 - 2017-09-13 17:09 - 000428032 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2018-04-30 14:15 - 2017-09-13 17:09 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2018-04-30 14:15 - 2017-09-13 17:09 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2018-04-30 14:15 - 2017-09-13 17:09 - 000080896 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2018-04-30 14:15 - 2017-09-13 16:53 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2018-04-30 14:15 - 2017-09-08 17:09 - 000306688 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2018-04-30 14:15 - 2017-09-08 16:20 - 000640512 _____ (Microsoft Corporation) C:\Windows\system32\mswstr10.dll
2018-04-30 14:15 - 2017-09-08 16:20 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\msjint40.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000922432 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000066400 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000022368 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2018-04-30 14:15 - 2017-09-07 15:05 - 000011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2018-04-30 14:15 - 2017-08-19 17:10 - 003209216 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2018-04-30 14:15 - 2017-08-19 17:10 - 000180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2018-04-30 14:15 - 2017-08-19 17:10 - 000103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2018-04-30 14:15 - 2017-08-19 17:10 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2018-04-30 14:15 - 2017-08-19 16:57 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2018-04-30 14:15 - 2017-08-19 16:57 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2018-04-30 14:15 - 2017-08-16 17:10 - 000629760 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2018-04-30 14:15 - 2017-08-14 19:35 - 002150912 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2018-04-30 14:15 - 2017-08-14 19:35 - 000827904 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2018-04-30 14:15 - 2017-08-14 19:35 - 000303104 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll
2018-04-30 14:15 - 2017-08-14 19:35 - 000172544 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll
2018-04-30 14:15 - 2017-08-14 19:35 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll
2018-04-30 14:15 - 2017-08-14 19:35 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2018-04-30 14:15 - 2017-08-13 23:35 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2018-04-30 14:15 - 2017-08-13 23:30 - 001401344 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe
2018-04-30 14:15 - 2017-08-11 08:19 - 000781824 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2018-04-30 14:15 - 2017-08-11 08:19 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2018-04-30 14:15 - 2017-08-11 08:19 - 000299008 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2018-04-30 14:15 - 2017-08-11 08:19 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2018-04-30 14:15 - 2017-08-11 08:19 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2018-04-30 14:15 - 2017-08-11 08:19 - 000019968 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll
2018-04-30 14:15 - 2017-08-11 08:19 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll
2018-04-30 14:15 - 2017-08-11 08:19 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll
2018-04-30 14:15 - 2017-08-11 08:10 - 000066048 _____ C:\Windows\system32\PrintBrmUi.exe
2018-04-30 14:15 - 2017-08-11 08:09 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2018-04-30 14:15 - 2017-08-11 08:09 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2018-04-30 14:15 - 2017-08-11 08:09 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2018-04-30 14:15 - 2017-08-11 08:03 - 000026624 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2018-04-30 14:15 - 2017-08-11 07:55 - 000188928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2018-04-30 14:15 - 2017-08-11 07:55 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys
2018-04-30 14:15 - 2017-07-29 16:50 - 000074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2018-04-30 14:15 - 2017-07-21 16:26 - 000518144 _____ C:\Windows\system32\msjetoledb40.dll
2018-04-30 14:15 - 2017-07-21 16:26 - 000409600 _____ (Microsoft Corporation) C:\Windows\system32\msexch40.dll
2018-04-30 14:15 - 2017-07-21 16:26 - 000290816 _____ (Microsoft Corporation) C:\Windows\system32\msjtes40.dll
2018-04-30 14:15 - 2017-07-21 16:26 - 000282624 _____ (Microsoft Corporation) C:\Windows\system32\mstext40.dll
2018-04-30 14:15 - 2017-07-14 17:10 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2018-04-30 14:15 - 2017-07-14 16:50 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2018-04-30 14:15 - 2017-07-14 16:50 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2018-04-30 14:15 - 2017-07-08 17:19 - 000250600 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2018-04-30 14:15 - 2017-07-07 17:15 - 000296680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys
2018-04-30 14:15 - 2017-07-07 17:10 - 000973312 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2018-04-30 14:15 - 2017-07-01 15:05 - 001311744 _____ (Microsoft Corporation) C:\Windows\system32\msjet40.dll
2018-04-30 14:15 - 2017-07-01 15:05 - 000866816 _____ (Microsoft Corporation) C:\Windows\system32\mswdat10.dll
2018-04-30 14:15 - 2017-07-01 15:05 - 000616448 _____ (Microsoft Corporation) C:\Windows\system32\msrepl40.dll
2018-04-30 14:15 - 2017-07-01 15:05 - 000475648 _____ (Microsoft Corporation) C:\Windows\system32\msxbde40.dll
2018-04-30 14:15 - 2017-07-01 15:05 - 000375808 _____ (Microsoft Corporation) C:\Windows\system32\mspbde40.dll
2018-04-30 14:15 - 2017-07-01 15:05 - 000343552 _____ (Microsoft Corporation) C:\Windows\system32\msrd3x40.dll
2018-04-30 14:15 - 2017-07-01 15:05 - 000310272 _____ (Microsoft Corporation) C:\Windows\system32\msrd2x40.dll
2018-04-30 14:15 - 2017-07-01 15:05 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\msltus40.dll
2018-04-30 14:15 - 2017-07-01 15:05 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\msjter40.dll
2018-04-30 14:15 - 2017-06-13 00:29 - 001227264 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2018-04-30 14:15 - 2017-06-13 00:29 - 000444928 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2018-04-30 14:15 - 2017-06-13 00:29 - 000390144 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2018-04-30 14:15 - 2017-06-13 00:28 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
2018-04-30 14:15 - 2017-06-13 00:06 - 000303616 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2018-04-30 14:15 - 2017-06-13 00:06 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2018-04-30 14:15 - 2017-06-13 00:06 - 000103424 _____ (Microsoft Corporation) C:\Windows\system32\resmon.exe
2018-04-30 14:15 - 2017-06-02 09:57 - 000497152 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2018-04-30 14:15 - 2017-05-30 06:39 - 001309928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2018-04-30 14:15 - 2017-05-30 06:39 - 000240872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2018-04-30 14:15 - 2017-05-30 06:39 - 000187624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2018-04-30 14:15 - 2017-05-16 17:16 - 000730856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2018-04-30 14:15 - 2017-05-16 17:16 - 000218856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2018-04-30 14:15 - 2017-05-16 17:12 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2018-04-30 14:15 - 2017-05-12 20:03 - 001082368 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2018-04-30 14:15 - 2017-05-12 20:03 - 000813056 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2018-04-30 14:15 - 2017-05-10 17:16 - 000091368 _____ (Microsoft Corporation) C:\Windows\system32\MigAutoPlay.exe
2018-04-30 14:15 - 2017-05-10 17:12 - 000174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2018-04-30 14:15 - 2017-05-10 17:10 - 000073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2018-04-30 14:15 - 2017-05-10 17:01 - 002092032 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2018-04-30 14:15 - 2017-05-10 17:00 - 000573440 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2018-04-30 14:15 - 2017-05-10 17:00 - 000136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2018-04-30 14:15 - 2017-05-10 17:00 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2018-04-30 14:15 - 2017-05-10 17:00 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2018-04-30 14:15 - 2017-05-10 17:00 - 000035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2018-04-30 14:15 - 2017-05-10 17:00 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2018-04-30 14:15 - 2017-05-10 17:00 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2018-04-30 14:15 - 2017-05-07 17:14 - 000078568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2018-04-30 14:15 - 2017-05-07 16:53 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2018-04-30 14:15 - 2017-04-28 00:50 - 003550208 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2018-04-30 14:15 - 2017-04-21 17:15 - 000805376 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2018-04-30 14:15 - 2017-04-17 17:12 - 000581632 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2018-04-30 14:15 - 2017-04-12 17:26 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2018-04-30 14:15 - 2017-04-12 17:25 - 001176064 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2018-04-30 14:15 - 2017-04-12 17:25 - 000145920 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2018-04-30 14:15 - 2017-04-12 17:25 - 000106496 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2018-04-30 14:15 - 2017-04-04 16:52 - 000338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2018-04-30 14:15 - 2017-03-30 16:58 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\rundll32.exe
2018-04-30 14:15 - 2017-03-10 18:20 - 001508352 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2018-04-30 14:15 - 2017-03-10 18:20 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2018-04-30 14:15 - 2017-03-10 17:52 - 000007680 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
2018-04-30 14:15 - 2017-03-10 17:51 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2018-04-30 14:15 - 2017-03-10 17:51 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2018-04-30 14:15 - 2017-03-07 18:17 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2018-04-30 14:15 - 2017-03-04 03:14 - 001329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2018-04-30 14:15 - 2017-03-04 03:14 - 000077312 _____ (Microsoft Corporation) C:\Windows\system32\mfmjpegdec.dll
2018-04-30 14:15 - 2017-02-09 18:14 - 000575488 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2018-04-30 14:15 - 2017-02-09 18:14 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2018-04-30 14:15 - 2017-01-11 19:43 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2018-04-30 14:15 - 2016-11-20 18:19 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2018-04-30 14:15 - 2016-11-20 16:07 - 000373896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2018-04-30 14:15 - 2016-11-10 18:19 - 000811520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2018-04-30 14:15 - 2016-11-09 18:17 - 002365440 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2018-04-30 14:15 - 2016-11-09 18:17 - 000337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2018-04-30 14:15 - 2016-11-09 18:17 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2018-04-30 14:15 - 2016-11-09 17:55 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2018-04-30 14:15 - 2016-10-11 17:18 - 001027584 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2018-04-30 14:15 - 2016-10-11 17:18 - 000701440 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2018-04-30 14:15 - 2016-10-11 17:18 - 000430080 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2018-04-30 14:15 - 2016-10-11 17:18 - 000202240 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2018-04-30 14:15 - 2016-10-11 17:18 - 000126976 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime
2018-04-30 14:15 - 2016-10-11 17:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime
2018-04-30 14:15 - 2016-10-11 17:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime
2018-04-30 14:15 - 2016-10-11 17:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime
2018-04-30 14:15 - 2016-10-11 17:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime
2018-04-30 14:15 - 2016-10-11 17:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime
2018-04-30 14:15 - 2016-10-11 17:18 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime
2018-04-30 14:15 - 2016-10-11 17:18 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2018-04-30 14:15 - 2016-10-11 16:53 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2018-04-30 14:15 - 2016-10-11 16:51 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2018-04-30 14:15 - 2016-10-11 15:18 - 000419648 _____ C:\Windows\system32\locale.nls
2018-04-30 14:15 - 2016-10-07 17:12 - 002291712 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2018-04-30 14:15 - 2016-10-07 17:12 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
2018-04-30 14:15 - 2016-10-05 16:50 - 000068608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2018-04-30 14:15 - 2016-09-15 16:51 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2018-04-30 14:15 - 2016-09-12 22:49 - 000076800 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
2018-04-30 14:15 - 2016-09-08 22:34 - 000208896 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2018-04-30 14:15 - 2016-09-08 22:34 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2018-04-30 14:15 - 2016-09-08 16:49 - 000117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2018-04-30 14:15 - 2016-08-21 15:05 - 000935424 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2018-04-30 14:15 - 2016-08-12 18:21 - 000437248 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2018-04-30 14:15 - 2016-08-06 17:15 - 001178112 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2018-04-30 14:15 - 2016-08-06 17:15 - 000249344 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2018-04-30 14:15 - 2016-08-06 17:15 - 000214016 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2018-04-30 14:15 - 2016-08-06 17:15 - 000146944 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2018-04-30 14:15 - 2016-08-06 17:15 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2018-04-30 14:15 - 2016-08-06 16:53 - 000199168 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2018-04-30 14:15 - 2016-08-06 16:53 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2018-04-30 14:15 - 2016-08-06 16:53 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 002136064 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 001005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000474624 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000442368 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000080896 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2018-04-30 14:15 - 2016-06-14 17:21 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2018-04-30 14:15 - 2016-06-14 17:17 - 000593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2018-04-30 14:15 - 2016-06-14 17:05 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2018-04-30 14:15 - 2016-06-14 16:55 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2018-04-30 14:15 - 2016-06-14 16:55 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2018-04-30 14:15 - 2016-06-14 16:54 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2018-04-30 14:15 - 2016-05-12 15:04 - 000249352 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2018-04-30 14:15 - 2016-03-24 00:42 - 000409272 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2018-04-30 14:15 - 2016-03-24 00:39 - 000470704 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2018-04-30 14:14 - 2018-01-01 04:00 - 012880384 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2018-04-30 14:14 - 2018-01-01 04:00 - 011035648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2018-04-30 14:14 - 2018-01-01 04:00 - 006041088 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2018-04-30 14:14 - 2018-01-01 04:00 - 001390080 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2018-04-30 14:14 - 2018-01-01 04:00 - 000717312 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2018-04-30 14:14 - 2018-01-01 03:54 - 004013800 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2018-04-30 14:14 - 2018-01-01 03:54 - 003959016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2018-04-30 14:14 - 2017-10-12 02:37 - 012574208 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2018-04-30 14:14 - 2017-10-12 02:37 - 011410944 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2018-04-30 14:14 - 2017-09-07 17:12 - 002755072 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2018-04-30 14:14 - 2017-05-10 17:12 - 002953216 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2018-04-30 14:14 - 2017-01-11 19:43 - 001241088 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2018-04-30 14:10 - 2018-04-30 14:11 - 000000000 ____D C:\Users\CASA\AppData\Roaming\IObit
2018-04-30 14:10 - 2018-04-30 14:11 - 000000000 ____D C:\Users\CASA\AppData\LocalLow\IObit
2018-04-30 14:10 - 2018-04-30 14:11 - 000000000 ____D C:\ProgramData\IObit
2018-04-30 14:10 - 2018-04-30 14:10 - 000057560 _____ C:\Users\CASA\AppData\Local\GDIPFONTCACHEV1.DAT
2018-04-30 14:10 - 2018-04-30 14:10 - 000023840 _____ (REALiX(tm)) C:\Windows\system32\Drivers\HWiNFO32.SYS
2018-04-30 14:10 - 2018-04-30 14:10 - 000000000 ____D C:\Windows\IObit
2018-04-30 14:10 - 2018-04-30 14:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 5
2018-04-30 14:10 - 2018-04-30 14:10 - 000000000 ____D C:\Program Files\IObit
2018-04-30 14:05 - 2018-04-30 14:05 - 000001393 _____ C:\Users\CASA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2018-04-30 14:05 - 2018-04-30 14:05 - 000000020 ___SH C:\Users\CASA\ntuser.ini
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Risorse di stampa
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Risorse di rete
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Recenti
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Modelli
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Menu Avvio
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Impostazioni locali
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Documents\Video
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Documents\Musica
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Documents\Immagini
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Documenti
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\Dati applicazioni
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\AppData\Roaming\Microsoft\Windows\Start Menu\Programmi
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\AppData\Local\Dati applicazioni
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 _SHDL C:\Users\CASA\AppData\Local\Cronologia
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 ____D C:\Users\CASA\AppData\Local\VirtualStore
2018-04-30 14:05 - 2018-04-30 14:05 - 000000000 ____D C:\Users\CASA
2018-04-30 14:05 - 2011-04-12 06:27 - 000000000 ____D C:\Users\CASA\AppData\Roaming\Media Center Programs
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Public\Documents\Video
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Public\Documents\Musica
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Public\Documents\Immagini
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Risorse di stampa
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Risorse di rete
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Recenti
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Modelli
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Menu Avvio
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Impostazioni locali
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Documents\Video
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Documents\Musica
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Documents\Immagini
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Documenti
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\Dati applicazioni
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmi
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dati applicazioni
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default\AppData\Local\Cronologia
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default User\Documents\Video
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default User\Documents\Musica
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default User\Documents\Immagini
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmi
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Dati applicazioni
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Cronologia
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Programmi
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\ProgramData\Preferiti
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\ProgramData\Modelli
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmi
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\ProgramData\Menu Avvio
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\ProgramData\Documenti
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\ProgramData\Dati applicazioni
2018-04-30 14:04 - 2018-04-30 14:04 - 000000000 _SHDL C:\Program Files\File comuni
2018-04-30 13:59 - 2018-04-30 13:59 - 000001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2018-04-30 13:59 - 2018-04-30 13:59 - 000001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2018-04-30 13:59 - 2018-04-30 13:59 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2018-04-25 16:58 - 2018-04-30 14:54 - 000000000 ____D C:\Program Files\Office15Portable

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-05-13 01:51 - 2009-07-14 06:34 - 000020656 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-05-13 01:51 - 2009-07-14 06:34 - 000020656 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-05-12 18:27 - 2011-04-12 06:18 - 000689234 _____ C:\Windows\system32\perfh010.dat
2018-05-12 18:27 - 2011-04-12 06:18 - 000124420 _____ C:\Windows\system32\perfc010.dat
2018-05-12 18:27 - 2010-11-20 23:01 - 001516554 _____ C:\Windows\system32\PerfStringBackup.INI
2018-05-12 18:27 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\inf
2018-05-12 11:43 - 2009-07-14 06:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-05-07 15:11 - 2009-07-14 04:37 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2018-05-05 01:48 - 2011-04-12 06:27 - 000000000 ___RD C:\Users\Public\Recorded TV
2018-05-03 20:09 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\rescache
2018-04-30 14:55 - 2009-07-14 06:52 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2018-04-30 14:27 - 2009-07-14 06:33 - 000265808 _____ C:\Windows\system32\FNTCACHE.DAT
2018-04-30 14:26 - 2009-07-14 06:52 - 000000000 ____D C:\Program Files\DVD Maker
2018-04-30 14:26 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\Setup
2018-04-30 14:26 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\migwiz
2018-04-30 14:26 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\Dism
2018-04-30 14:26 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\PolicyDefinitions
2018-04-30 14:04 - 2009-07-14 04:37 - 000000000 __RHD C:\Users\Public\Libraries
2018-04-30 14:04 - 2009-07-14 04:37 - 000000000 ____D C:\Program Files\Windows NT
2018-04-30 13:59 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\sysprep
2018-04-30 13:57 - 2011-04-12 06:27 - 000000000 ____D C:\Windows\CSC

Some files in TEMP:
====================
2018-05-12 19:57 - 2018-01-01 04:02 - 001310528 _____ (Microsoft Corporation) C:\Users\CASA\AppData\Local\Temp\dllnt_dump.dll
2016-10-20 19:26 - 2016-10-20 19:26 - 002458672 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Users\CASA\AppData\Local\Temp\libeay32.dll
2016-10-20 19:26 - 2016-10-20 19:26 - 000970912 _____ (Microsoft Corporation) C:\Users\CASA\AppData\Local\Temp\msvcr120.dll
2018-05-12 18:20 - 2018-05-12 18:20 - 000043520 ____N () C:\Users\CASA\AppData\Local\Temp\proxy_vole6438806326483346131.dll
2018-05-12 18:20 - 2018-05-12 18:20 - 000043520 ____N () C:\Users\CASA\AppData\Local\Temp\proxy_vole8061933104395051236.dll
2018-05-12 18:20 - 2018-05-12 18:20 - 000043520 ____N () C:\Users\CASA\AppData\Local\Temp\proxy_vole9087620953483531613.dll
2016-10-20 19:26 - 2016-10-20 19:26 - 000772672 _____ () C:\Users\CASA\AppData\Local\Temp\sqlite3.dll

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-05-08 20:31

==================== End of FRST.txt ============================

ADDITION
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 13.05.2018
Ran by CASA (13-05-2018 02:09:52)
Running from C:\Users\CASA\Desktop
Microsoft Windows 7 Professional Service Pack 1 (X86) (2018-04-30 12:04:55)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3793853494-292997172-3702221761-500 - Administrator - Disabled)
CASA (S-1-5-21-3793853494-292997172-3702221761-1000 - Administrator - Enabled) => C:\Users\CASA
Guest (S-1-5-21-3793853494-292997172-3702221761-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3793853494-292997172-3702221761-1002 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: AVG Antivirus (Enabled - Up to date) {C50510DE-367A-330C-FD5C-556ACFB11243}
AS: AVG Antivirus (Enabled - Up to date) {7E64F13A-1040-3C82-C7EC-6E18B43658FE}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AVG AntiVirus FREE (HKLM\...\AVG Antivirus) (Version: 18.4.3056 - AVG Technologies)
CCleaner (HKLM\...\CCleaner) (Version: 5.42 - Piriform)
Core Temp 1.11 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.11 - ALCPU)
Driver Booster 5 (HKLM\...\Driver Booster_is1) (Version: 5.1.0 - IObit)
eMule (HKLM\...\eMule) (Version: - )
Google Chrome (HKLM\...\Google Chrome) (Version: 66.0.3359.170 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Guitar Pro 7 - Soundbanks (HKLM\...\com.arobas-music.guitarpro7-soundbanks_is1) (Version: 1.0.69 - Arobas Music)
Guitar Pro 7 (HKLM\...\Guitar Pro 7_is1) (Version: 7.0.8.1042 - Arobas Music)
honestech VHS to DVD 2.0 SE (HKLM\...\{2856F5EA-E98A-40E4-BAD6-8C644A4A3F3C}) (Version: 2.0 - honestech)
HP Deskjet 3520 series Setup Guide (HKLM\...\{AEEDCEB7-00B8-4BE1-B492-AB04803D5F1E}) (Version: 27.0.0 - Hewlett Packard)
HP Deskjet 3520 series Software di base dispositivo (HKLM\...\{E65BBAE1-BF72-4361-BA2C-61E6968BBE0D}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
K-Lite Mega Codec Pack 14.1.0 (HKLM\...\KLiteCodecPack_is1) (Version: 14.1.0 - KLCP)
Malwarebytes versione 3.5.1.2522 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.5.1.2522 - Malwarebytes)
Medieval CUE Splitter (HKLM\...\{B96D2269-568B-4CBF-9332-12FAE8B158F7}) (Version: 1.2.0 - Medieval Software)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Mp3tag v2.87a (HKLM\...\Mp3tag) (Version: 2.87a - Florian Heidenreich)
qBittorrent 4.1.0 (HKLM\...\qBittorrent) (Version: 4.1.0 - The qBittorrent project)
SumatraPDF (HKLM\...\SumatraPDF) (Version: 3.1.2 - Krzysztof Kowalczyk)
USB2.0 Grabber (HKLM\...\{45518B6D-9DDF-4144-83E4-A56762524F35}) (Version: 7.12.000.003 - Youyan)
WinRAR 5.50 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2018-05-11] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files\Mp3tag\Mp3tagShell32.dll [2018-03-29] (Florian Heidenreich)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-26] (Alexander Roshal)
ContextMenuHandlers2: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files\Mp3tag\Mp3tagShell32.dll [2018-03-29] (Florian Heidenreich)
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-03] (Malwarebytes)
ContextMenuHandlers4: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files\Mp3tag\Mp3tagShell32.dll [2018-03-29] (Florian Heidenreich)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2018-05-11] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-03] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-26] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {079E1D9D-1F58-4D0C-9121-067721330257} - System32\Tasks\klcp_update => C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2018-04-11] ()
Task: {0A0700E2-1266-4EC4-BF72-C94FAA2AF38D} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [2018-05-11] (AVG Technologies CZ, s.r.o.)
Task: {19A976D3-A3A5-4D4A-81F5-3673DED743BF} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-04-12] (Piriform Ltd)
Task: {2678C8F7-84F1-4BC8-AE9D-5EDB1D1AEE7A} - System32\Tasks\AVG\Overseer => C:\Program Files\AVG\Antivirus\setup\overseer.exe [2018-04-30] (AVG Technologies CZ, s.r.o.)
Task: {7565DDB4-B851-4229-A111-67460FE2744A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-04-12] (Piriform Ltd)
Task: {C71239EB-B807-4970-A5E7-1173F539549A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2018-04-30] (Google Inc.)
Task: {D5FDD806-9477-4748-BB37-56E582E15A28} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2018-04-30] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2018-05-11 01:13 - 2018-05-11 01:13 - 000481008 _____ () C:\Program Files\AVG\Antivirus\streamback.dll
2018-05-11 01:13 - 2018-05-11 01:13 - 000886512 _____ () C:\Program Files\AVG\Antivirus\ffl2.dll
2018-05-11 01:13 - 2018-05-11 01:13 - 000925936 _____ () C:\Program Files\AVG\Antivirus\anen.dll
2018-05-11 01:13 - 2018-05-11 01:13 - 000983792 _____ () C:\Program Files\AVG\Antivirus\shepherdsync.dll
2018-05-11 01:13 - 2018-05-11 01:13 - 000520944 _____ () C:\Program Files\AVG\Antivirus\gui_cache.dll
2018-05-12 19:00 - 2018-05-12 19:00 - 005851888 _____ () C:\Program Files\AVG\Antivirus\defs\18051204\algo.dll
2018-04-30 14:50 - 2018-04-30 14:50 - 067127976 _____ () C:\Program Files\AVG\Antivirus\libcef.dll
2018-05-11 01:13 - 2018-05-11 01:13 - 000633072 _____ () c:\Program Files\AVG\Antivirus\vaarclient.dll
2018-05-11 01:33 - 2018-05-10 00:13 - 003738456 _____ () C:\Program Files\Google\Chrome\Application\66.0.3359.170\libglesv2.dll
2018-05-11 01:33 - 2018-05-10 00:13 - 000085848 _____ () C:\Program Files\Google\Chrome\Application\66.0.3359.170\libegl.dll
2018-05-05 00:37 - 2018-05-05 00:37 - 018376192 _____ () C:\Program Files\qBittorrent\qbittorrent.exe
2018-05-12 18:50 - 2018-04-25 13:16 - 001930960 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2018-05-12 18:50 - 2018-04-30 12:54 - 001913552 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2009-06-10 23:39 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3793853494-292997172-3702221761-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\CASA\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{D08079BC-8760-41DB-BD90-C73BAAE58EEB}] => (Allow) C:\Program Files\IObit\Driver Booster\5.1.0\DriverBooster.exe
FirewallRules: [{2C8CDA66-92A8-4838-9BF3-079DD7A04067}] => (Allow) C:\Program Files\IObit\Driver Booster\5.1.0\DriverBooster.exe
FirewallRules: [{B62D8DBF-FB3F-481C-9435-E7E1E41DB80B}] => (Allow) C:\Program Files\IObit\Driver Booster\5.1.0\DBDownloader.exe
FirewallRules: [{C0A76AD1-C2BF-4D79-8FF7-31FD528F7FC8}] => (Allow) C:\Program Files\IObit\Driver Booster\5.1.0\DBDownloader.exe
FirewallRules: [{A9B4AD30-8C2A-4EB3-A3EA-00B31748BA13}] => (Allow) C:\Program Files\IObit\Driver Booster\5.1.0\AutoUpdate.exe
FirewallRules: [{6C4779CD-AEF3-4ABC-96D3-E5B6EBCC34EA}] => (Allow) C:\Program Files\IObit\Driver Booster\5.1.0\AutoUpdate.exe
FirewallRules: [{6BE1ABA7-8F2F-420F-93AA-2E3007433DBD}] => (Allow) C:\Program Files\HP\HP Deskjet 3520 series\Bin\DeviceSetup.exe
FirewallRules: [{9D337C4D-CDD0-42D5-BD65-A21C322EADF6}] => (Allow) C:\Program Files\HP\HP Deskjet 3520 series\Bin\HPNetworkCommunicator.exe
FirewallRules: [{76B215C0-2E49-4B0B-864E-DC8CF5700D81}] => (Allow) C:\Program Files\HP\HP Deskjet 3520 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{3852995A-9701-4058-A23D-B97435FD4088}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe
FirewallRules: [{2DC556E9-370A-48AF-ACCC-320FCF12C28C}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe
FirewallRules: [TCP Query User{C59E505F-0B11-4396-A323-788C75962DB2}C:\program files\emule\emule.exe] => (Allow) C:\program files\emule\emule.exe
FirewallRules: [UDP Query User{B11B88C2-9687-42AF-BBCE-B12C83BD0C6B}C:\program files\emule\emule.exe] => (Allow) C:\program files\emule\emule.exe
FirewallRules: [{3AB4AC76-BAA2-491F-8515-325DA07CC56F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

04-05-2018 21:14:06 Installed Medieval CUE Splitter
07-05-2018 15:09:11 Installed USB2.0 Grabber
07-05-2018 15:11:13 Microsoft Visual C++ 2005 Redistributable installato
07-05-2018 15:11:42 Installed honestech VHS to DVD 2.0 SE
12-05-2018 03:26:13 JRT Pre-Junkware Removal

==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Tastiera PS/2 standard
Description: Tastiera PS/2 standard
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Tastiere standard)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (05/12/2018 12:58:41 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generazione del contesto di attivazione non riuscita per "c:\program files\IObit\driver booster\5.1.0\DpInst\x64\dpinst.exe".
Impossibile trovare l'assembly dipendente Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0".
Utilizzare sxstrace.exe per ottenere una diagnosi dettagliata.

Error: (05/12/2018 12:58:27 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generazione del contesto di attivazione non riuscita per "C:\Program Files\HP\HP Deskjet 3520 series\DriverStore\Pipeline\amd64\hpinkinsB011.exe".
Impossibile trovare l'assembly dipendente Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0".
Utilizzare sxstrace.exe per ottenere una diagnosi dettagliata.

Error: (05/12/2018 11:44:11 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Impossibile riattivare il filtro eventi con query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" nello spazio dei nomi "//./root/CIMV2". Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.

Error: (05/12/2018 03:33:48 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Impossibile riattivare il filtro eventi con query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" nello spazio dei nomi "//./root/CIMV2". Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.

Error: (05/12/2018 01:55:57 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Impossibile riattivare il filtro eventi con query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" nello spazio dei nomi "//./root/CIMV2". Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.

Error: (05/11/2018 04:57:27 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generazione del contesto di attivazione non riuscita per "c:\program files\IObit\driver booster\5.1.0\DpInst\x64\dpinst.exe".
Impossibile trovare l'assembly dipendente Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0".
Utilizzare sxstrace.exe per ottenere una diagnosi dettagliata.

Error: (05/11/2018 04:57:04 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generazione del contesto di attivazione non riuscita per "C:\Program Files\HP\HP Deskjet 3520 series\DriverStore\Pipeline\amd64\hpinkinsB011.exe".
Impossibile trovare l'assembly dipendente Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0".
Utilizzare sxstrace.exe per ottenere una diagnosi dettagliata.

Error: (05/11/2018 01:54:34 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Impossibile riattivare il filtro eventi con query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" nello spazio dei nomi "//./root/CIMV2". Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.


System errors:
=============
Error: (05/12/2018 10:10:27 PM) (Source: BROWSER) (EventID: 8032) (User: )
Description: Il servizio Browser non è riuscito troppe volte a richiamare l'elenco di backup sul trasporto \Device\NetBT_Tcpip_{7F25AC8C-4C8C-4A62-8B6F-4AAE0E2E3DD4}.
È in corso l'arresto dell'elenco di backup.

Error: (05/12/2018 03:32:39 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Il servizio Servizio di condivisione in rete Windows Media Player non è stato avviato per il seguente errore:
Il servizio non è stato avviato a causa di un errore in fase di accesso.

Error: (05/12/2018 03:32:39 AM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Servizio WMPNetworkSvc: impossibile accedere come NT AUTHORITY\NetworkService con la password attualmente configurata. Errore:
Richiesta non supportata.


Per garantire la corretta configurazione del servizio, utilizzare lo snap-in Servizi in Microsoft Management Console (MMC).

Error: (05/12/2018 03:32:09 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Il servizio Servizio di condivisione in rete Windows Media Player è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 30000 millisecondi: Riavvia il servizio.

Error: (05/12/2018 03:32:09 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Il servizio Protezione software è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 120000 millisecondi: Riavvia il servizio.

Error: (05/12/2018 03:32:09 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Arresto imprevista del servizio AMD External Events Utility. Questo evento si è già verificato 1 volta(e).

Error: (05/11/2018 04:46:44 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Il servizio Client di Criteri di gruppo non è stato arrestato correttamente dopo la ricezione di un controllo di pre-arresto del sistema.

Error: (05/08/2018 01:44:10 PM) (Source: Disk) (EventID: 11) (User: )
Description: Il driver ha rilevato un errore del controller su \Device\Harddisk6\DR8.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz
Percentage of memory in use: 74%
Total physical RAM: 2047.12 MB
Available physical RAM: 518.52 MB
Total Virtual: 4094.23 MB
Available Virtual: 1798.12 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.66 GB) (Free:434.4 GB) NTFS

\\?\Volume{7cef4e1b-4c6d-11e8-bd58-806e6f6e6963}\ (Riservato per il sistema) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 7F8308E1)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Se vuoi impostate i dns come detto di google...scegli Utilizza i seguenti server DNS e configurali come segue:
  • DNS preferito: 8.8.8.8
  • DNS alternativo: 8.8.4.4

Ok trovati, erano già impostati su 8.8.8.8 e 8.8.4.4
 

danilo79

Utente Èlite
1,814
549
Ciao
I log di frst sono puliti....

Esegui prima di usare delfix il fixlist creato da maxtechnology nel post successivo...

Poi Esegui una pulizia con ccleaner ....

Ok testa il pc se funziona tutto...
Quindi scarica delfix da qui https://www.bleepingcomputer.com/download/delfix/
Posizionalo sul desktop...
Aprilo e spunta :
Remove disinfection tool
Clicca su run
Attendi che finisca

Cosi facendo abbiamo cancellato tutti.i tool e i vari log usati per effettuare le scansioni....

Abbiamo concluso....
Ciao
 
Ultima modifica:

.MaxTechnology

Nuovo Utente
113
19
Ciao
I log di frst sono puliti....

Esegui una pulizia con ccleaner ....

Ok testa il pc se funziona tutto...
Quindi scarica delfix da qui https://www.bleepingcomputer.com/download/delfix/
Posizionalo sul desktop...
Aprilo e spunta :
Remove disinfection tool
Clicca su run
Attendi che finisca

Cosi facendo abbiamo cancellato tutti.i tool e i vari log usati per effettuare le scansioni....

Abbiamo concluso....
Ciao

@danilo79 chiedo scusa dell'intromissione ad entrambi.
Prima di tutto , consiglio di disinstallare AVG ed inserire un Avast Free oppure un Kaspersky.
Inoltre bisognerebbe disinstallare Bittorrent dal computer assieme ad emule, potrebbero causarti nuove infezioni in futuro.

Ci sarebbero delle voci fa fixare,
ti lascio il file fixlist.txt , mettilo sul desktop dove si trova l'eseguibile FRST.exe, avvia quest'ultimo, e clicca su FIX. Attendi che abbia finito, riavvia il pc(se non si riavvia da solo) e vedi come và ;) . Ti allego il file.
 

Allegati

  • fixlist.txt
    1.1 KB · Visualizzazioni: 102

danilo79

Utente Èlite
1,814
549
Ciao @.MaxTechnology

Prima di tutto , consiglio di disinstallare AVG ed inserire un Avast Free oppure un Kaspersky.
Inoltre bisognerebbe disinstallare Bittorrent dal computer assieme ad emule, potrebbero causarti nuove infezioni in futuro.

Ci sarebbero delle voci fa fixare,
ti lascio il file fixlist.txt , mettilo sul desktop dove si trova l'eseguibile FRST.exe, avvia quest'ultimo, e clicca su FIX. Attendi che abbia finito, riavvia il pc(se non si riavvia da solo) e vedi come và ;) . Ti allego il file.

È vero che avg secondo me e dico secondo me, è un antivirus scarso, ma la scelta dell antivirus è personale, ecco perche non ho consigliato nulla....
Penso che l utente si trovi bene con avg, altrimenti avrebbe chiesto consigli se wualche cosa non andava....
Sta a lui decidere....
Su emule concordo....
Su bittorrent è un po piu "sicuro" ma io non amo in generale i p2p....sono veicolo di infexioni sucuramente compreso bittorrent....
quindi meno uso si fa meglio è....

per il fix va bene ma non sono infezioni quelle bensi rimasugli e file temporanei, ecco perche non ho creato il fixlist...

In piu come avrai notato ho consigliato una pulizia con ccleaner e quei file vengono cancellati con ccleaner....

@adfh comunque va bene ,esegui anche il fixlist di maxtechnology prima di usare delfix....

ciao...
 
Ultima modifica:
  • Mi piace
Reazioni: .MaxTechnology

adfh

Nuovo Utente
125
4
Ragazzi, siete delle bombe, precisissimi e super ultra disponibili, vi ringrazio tantissimissimo.

Per sicurezza ho fatto tutto ciò che mi avete detto, infatti ha cancellato anche i log e i programmini che avevo sul desktop che ho usato per fare tutte le operazioni descritte in precedenza.

Ho anche disinstallato AVG mettendo Avast al suo posto.

Infine con CCleaner ho fatto una pulizia del registro.
 

SiRiO

Il Dragone Super Mod
Staff Forum
Utente Èlite
24,559
12,318
CPU
Ryzen 5 1600AF@4100mhz -->5600x
Dissipatore
zalman 9900MAX mod AM4
Scheda Madre
MSi B450 A-PRO-->B550M mortar
HDD
SSD Samsung 850/860 evo 120/240GB-->970 pro 1TB
RAM
4x8GB Ballistix Tactical V2 3000cl15@3466cl14
Monitor
24 FHD
PSU
seasonic focus PX 550w
OS
win 7/win10 x64
allora ti tocca lasciare i "mi piace" a tutti :D
anche io uso avast ;)
 

Entra

oppure Accedi utilizzando
Discord Ufficiale Entra ora!

Discussioni Simili