Jump to content

Lnk file shortcut directing to powershell


Recommended Posts

It was late night, I thought I downloaded a movie, it seemed like it, until when I ran it, it didn't open up and I saw it was actually a shortcut leading to powershell's path. I immediately disconnected the pc from the network an ran avast's full scan with highest sensitivity settings. It came up with 4 elements one of which was pup, two trojans and a dropper, but none of them seems to be connected to the powershell script. (I can write them down if you ask) 

(I have little to no important files, but I use it a lot for buying, betting, so it worth the fix or just format it?) 

Link to post
Share on other sites

Hello, Welcome to Malwarebytes.
I'm nasdaq and will be helping you.

If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.
===

Just run these scans for now.

Please download Malwarebytes Anti-Malware from here
 

  • Right-click on the MBAM icon and select Run as administrator to run the tool.
  • Click Yes to accept any security warnings that may appear.
  • Once the MBAM dashboard opens, on the right detail pane click on the word "Current" under the Scan Status to update the tool database.
  • On the left menu pane click the Settings tab, and then select the Protection tab on the top.
  • Under the Scan Options, turn on the button Scan for rootkits and Scan within archives.
  • Click the Scan tab on the right detail pane, select Threat Scan and click the Start Scan button
  • Note: The scan may take some time to finish, so please be patient.
  • If potential threats are detected, ensure to check mark all the listed items, and click the Quarantine Selected button.
  • While still on the Scan tab, click the View Report button, and in the window that opens click the Export button, select Text file (*.txt), and save the log to your Desktop.
  • The log can also be viewed by clicking the log to select it, then clicking the View Report button.


Please post the log for my review.

Note: If asked to restart the computer, please do so immediately.
===

Please download AdwCleaner by Malwarebytes your Desktop.

  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click the Scan button and wait for the process to complete.
  • Click the LogFile button and the report will open in Notepad.

IMPORTANT

  • If you click the Clean button all items listed in the report will be removed.

If you find some false positive items or programs that you wish to keep, Close the AdwCleaner windows.

  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click the Scan button and wait for the process to complete.
  • Check off the element(s) you wish to keep.
  • Click on the Clean button follow the prompts.
  • A log file will automatically open after the scan has finished.
  • Please post the content of that log file with your next answer.
  • You can find the log file at C:\AdwCleanerCx.txt (x is a number).


===

Download the Farbar Recovery Scan Tool (FRST).
Choose the 32 or 64 bit version for your system.
and save it to a folder on your computer's Desktop.
Double-click to run it. When the tool opens click Yes to disclaimer.
Press Scan button.
It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

How to attach a file:
In the Reply section in the bottom of the topic Select Click the Choose a File.
Navigate to the location of the File.
Click the file. It will appear in section.
Click the Saving button.

Let me know of any issues with this computer.

Wait for further instructions
====


 

Link to post
Share on other sites

Thank you for your reply.

I ran mbam scan but i had also enabled PUP search, wasnt sure if it was needed or not (was checked by default).

Restarted everytime asked.

Attached 2 ad-cleaner files pre and post quarantine (didn't know if the info is actually the same)

And here is the frst.log content pasted (as asked):

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01-06-2019
Ran by ΚΩΣΤΑΣ (administrator) on ΚΩΣΤΑΣ-PC (03-06-2019 19:01:34)
Running from C:\Users\ΚΩΣΤΑΣ\Desktop\frst
Loaded Profiles: ΚΩΣΤΑΣ (Available Profiles: ΚΩΣΤΑΣ)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Ελληνικά (Ελλάδας)
Internet Explorer Version 11 (Default browser not detected!)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\GIGABYTE FORCE\GIGABYTE FORCE.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
(ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
(ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.08\AsusFanControlService.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) Corporation) [File not signed] C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Wondershare software CO., LIMITED -> Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.3.1.1\WsAppService.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9068040 2016-11-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [262024 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [GMouse] => C:\GIGABYTE FORCE\GIGABYTE FORCE.EXE [667648 2011-11-08] () [File not signed]
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3792820029-2752110351-4122056359-1000\...\MountPoints2: E - E:\Autorun.exe
HKU\S-1-5-21-3792820029-2752110351-4122056359-1000\...\MountPoints2: {28f8e6db-7e65-11e6-9ddc-08606ef05ff8} - E:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3792820029-2752110351-4122056359-1000\...\MountPoints2: {a4a573c0-93de-11e3-be6c-08606ef05ff8} - E:\Startme.exe
HKU\S-1-5-21-3792820029-2752110351-4122056359-1000\...\MountPoints2: {f79e15c1-5b5f-11e6-b0e0-00116b4f18e7} - E:\HiSuiteDownLoader.exe
HKLM\...\Drivers32: [vidc.mjpg] => C:\windows\system32\bdmjpeg64.dll [17920 2011-09-19] () [File not signed]
HKLM\...\Drivers32: [vidc.mpeg] => C:\windows\system32\bdmpegv64.dll [62464 2011-09-19] () [File not signed]
HKLM\...\Drivers32: [msacm.bdmpeg] => C:\windows\system32\bdmpega64.acm [62976 2011-09-19] () [File not signed]
HKLM\...\Drivers32: [vidc.mjpg] => C:\Windows\SysWOW64\bdmjpeg.dll [15360 2011-09-19] () [File not signed]
HKLM\...\Drivers32: [vidc.mpeg] => C:\Windows\SysWOW64\bdmpegv.dll [58368 2011-09-19] () [File not signed]
HKLM\...\Drivers32: [msacm.bdmpeg] => C:\Windows\SysWOW64\bdmpega.acm [58368 2011-09-19] () [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\windows\system32\cmd.exe /D /C start C:\windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.169\Installer\chrmstp.exe [2019-05-23] (Google LLC -> Google Inc.)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-05-03] (Adobe Inc. -> Adobe Systems, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\hpoddt01.exe.lnk [2013-08-06]
ShortcutTarget: hpoddt01.exe.lnk -> C:\Program Files (x86)\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe (Hewlett-Packard) [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {03D610D7-8959-4153-A5C8-6DB8A80BA113} - System32\Tasks\{A98B0A76-7903-42A0-A95B-73269A528AE9} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {0548A7E9-3CE3-491E-B55D-AC1F11077A7B} - System32\Tasks\{61994678-C2E6-428F-92F5-68BD33B6BDC5} => C:\Program Files (x86)\Hewlett-Packard\Digital Imaging\bin\Hpqdirec.exe [102400 2003-03-31] (Hewlett-Packard Co.) [File not signed]
Task: {0894BAA3-7611-4F87-ABB9-AA56D9A947A9} - System32\Tasks\{2B50866D-80C0-460E-AA50-2DE9B8A407D6} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {08A5A3EB-6275-4807-89B8-0D9A88F586D7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {0B6FC873-289E-4BA5-ACD2-71289E1F4D6E} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1487568 2014-03-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {0C5C8ADD-171E-4F32-9FA6-B5FF258CE3FD} - System32\Tasks\{294147F0-2152-4744-B484-4113D69EED9A} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {0CA266EF-EEE9-4EF6-BD61-1EC2F49A3600} - System32\Tasks\{99088A90-C0B8-4807-86B8-1CB4CF0F3F31} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {0CE38AB7-66A3-4DC7-8DE3-E212E0F1F791} - System32\Tasks\{3A852024-F994-411B-8F43-CBB0AE8B5538} => C:\Users\ΚΩΣΤΑΣ\Desktop\Broken Bot\BroKen.exe
Task: {0E18F303-4DED-4305-8954-FE97C18837CB} - System32\Tasks\{EAE8BBA1-0288-45B9-A82C-0121EB554062} => C:\Users\ΚΩΣΤΑΣ\Desktop\SeafightGlitterCollect.V.1.exe
Task: {0EABAA13-1A44-45A4-91D0-6486BBFFF11F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [113096 2019-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {103A6C34-2B88-40ED-964B-363559CFADC4} - System32\Tasks\{5C8E7477-7096-4955-9386-6116AE969DDE} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {106C1557-61A3-407B-8AD4-A01B9C049414} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4381312 2019-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {16C02A7B-22F9-4EF0-8F2C-2D257D5A0D89} - System32\Tasks\{711F0819-3F9F-4DFC-9D6C-A0847ACE9DD5} => C:\Program Files (x86)\Counter-Strike Xtreme V6\Counter Strike Xtreme.exe
Task: {16C92E60-75E5-4A6F-B374-4BB6BE6B4719} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26197064 2019-05-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {19D7B34B-A566-49AA-9380-00645056B62C} - System32\Tasks\{3AF193FB-921C-4C7A-B913-4897DE82006B} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {205821B6-7860-49E6-9DA5-18C568D26700} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {2222D41B-C4A8-41FA-B8ED-A64BB7FCF988} - System32\Tasks\ASUS\ASUS DigiPowerControl Help => C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe [1190400 2012-07-23] (ASUSTeK Computer Inc.) [File not signed]
Task: {27ECC917-A2FA-4843-A8C8-150B47DA96FF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {2917EA66-AE77-4D92-88C3-A9A2ED536EDF} - System32\Tasks\{799765F7-7045-48DA-90CC-7F5E7EFB1038} => C:\Users\ΚΩΣΤΑΣ\Downloads\GlitterCollect_v2.exe
Task: {2B1E30D5-5589-467D-9416-8876F9ADB8D3} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1439776 2019-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {322A3BC8-A1B4-4859-95AF-0BEFC94F45CC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-05-09] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {338EBCF7-F979-4B03-9FE8-7F9A2BBFDB3D} - System32\Tasks\{3BC6177A-361E-407C-B847-983B0E51386C} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {406B2BE5-00F3-4960-ACD4-9C2BED3BD934} - System32\Tasks\{79587778-DC6C-4FAA-8B5B-92C0E368F092} => C:\Program Files (x86)\Counter-Strike 1.6\cstrike.exe
Task: {443F67B3-4BA7-40D3-B2CF-21C8AED55A38} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {460340B0-A14C-4944-8C75-1F3428AA5D29} - System32\Tasks\{F159CAD0-1149-474B-99B3-045AEC97B8EF} => C:\Program Files (x86)\Counter-Strike 1.6\cstrike.exe
Task: {4C5F68B5-9130-4EA7-B3D1-8A481716D697} - System32\Tasks\{20B3AB90-8B82-4A19-A098-B0DCED5FF2AD} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {4F4A2171-23A5-4B0F-8D13-BD0CF901BE58} - System32\Tasks\{A627161E-3453-4829-B089-063FE9A1A685} => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Task: {50FDB654-05B9-411F-AC63-F7D5A7782E2E} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_192_Plugin.exe [1457208 2019-06-03] (Adobe Inc. -> Adobe)
Task: {53802C5E-D9FD-4EFB-B43D-80DD40FE8416} - System32\Tasks\{C7725BB2-2DED-452C-9CA8-21201AA34BD0} => C:\Program Files (x86)\SCAR Divi\bin\scar.exe [7152640 2013-11-07] () [File not signed]
Task: {53D0C337-8D3B-40E0-B559-C17F82A7A90A} - System32\Tasks\{2FBC9301-5E5E-449B-B58D-2D44B8184387} => C:\Users\ΚΩΣΤΑΣ\Downloads\GlitterCollect_v2.exe
Task: {53E30F9D-EEBD-438B-A1C0-21223B11CFBF} - System32\Tasks\{6CC81877-2884-4298-8D67-8C76A9D32352} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {5440D134-E4B9-4B92-B62C-B3AA6A8C21AD} - System32\Tasks\{A9D6A0CA-7EBB-4BD8-8168-C0DDA6983D83} => C:\Users\ΚΩΣΤΑΣ\Desktop\csgo\csgo.exe
Task: {590CFCBB-454A-4E43-BFF7-ADF93A23541F} - \WPD\SqmUpload_S-1-5-21-3792820029-2752110351-4122056359-500 -> No File <==== ATTENTION
Task: {5DBE0E4A-6BCD-4A08-B94D-7BA28DBDA973} - System32\Tasks\{E38E7CDD-D219-4566-9C0A-97EFAA50E701} => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Task: {5F3AC7FF-4389-4614-9443-9C40BD6E5FA8} - System32\Tasks\{1548DC70-4490-4A2C-851F-0947414DE2F9} => C:\Program Files (x86)\Hewlett-Packard\Digital Imaging\bin\Hpqdirec.exe [102400 2003-03-31] (Hewlett-Packard Co.) [File not signed]
Task: {622DA450-35B7-414A-BC6C-B8D3D4784B1D} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-06-03] (Adobe Inc. -> Adobe)
Task: {6958AC8C-7E6D-4F76-906B-CC740706DE0C} - System32\Tasks\{E7971AF9-00DD-47C5-87A9-3DC8A5E79CAC} => C:\Program Files (x86)\Hewlett-Packard\Digital Imaging\bin\Hpqdirec.exe [102400 2003-03-31] (Hewlett-Packard Co.) [File not signed]
Task: {6CED14FC-4A40-44F6-A218-187C84650761} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [862 2019-04-30] () [File not signed] <==== ATTENTION
Task: {72C3A087-136A-476D-916C-C71A95161048} - System32\Tasks\{164F6166-BC8B-466F-B198-CE508F3A52F7} => C:\Users\ΚΩΣΤΑΣ\Desktop\SeafightGlitterCollect.V.1.exe
Task: {74C64602-5226-4AE1-B961-CC14F3E3B8B6} - System32\Tasks\{C8309425-AD8D-4A86-B92C-126265E55437} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {78137C01-0279-43A3-B056-CBEF8F3323AD} - System32\Tasks\{513A9588-5FEC-4FB4-B1B0-6BF32E6EC127} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {79D32ED0-29DF-4A95-A78A-E36179CB5A29} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [113096 2019-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {82476115-9FE3-4456-BB15-8B23CB8798F7} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2935424 2012-03-13] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {873890A4-5388-4A37-916D-D44DD8FABBA9} - System32\Tasks\{DD458297-11B2-4AB7-B560-5137DAA14099} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {8A818446-D81F-4D06-9480-2E4E630EF9BB} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1439776 2019-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {8C61FCC5-DD1B-4ECB-96E4-9835357B4852} - System32\Tasks\{9F542461-08C1-4ABE-8FD3-C429078F3C99} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {8FFC4A90-8F10-4BFD-A50E-1EF3CDB2E867} - System32\Tasks\{D436F321-453C-4DA2-8072-0BFF150D63E5} => C:\Program Files (x86)\Counter-Strike 1.6\cstrike.exe
Task: {952D4447-EEC2-471E-8405-BD389A2458D4} - System32\Tasks\{59B49152-A03F-4571-A045-9F86E7FA5F2E} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {973A3C0E-86EA-4A23-BA7A-23256B4DCC93} - System32\Tasks\{2759073D-BDB4-4C89-97AA-551D2C83B3C3} => C:\windows\system32\pcalua.exe -a C:\Users\F7C8~1\AppData\Local\Temp\jre-8u201-windows-au.exe -d C:\windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== ATTENTION
Task: {982B8E48-1909-43C8-B9DC-45DF9F70E68B} - System32\Tasks\{B28997CD-8A91-43AF-B156-E36326F6E2DA} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {996F081B-8111-415D-AAB3-23A6CFD4157A} - System32\Tasks\{BB1DA82C-97B3-4CF4-AE0F-A6FABDEBD5C3} => C:\Users\ΚΩΣΤΑΣ\Desktop\SeafightGlitterCollect.V.1.exe
Task: {9FE9FFF1-8DC8-488D-A5F7-31FFA9A76044} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
Task: {A401ABFB-9B69-41B4-AF05-5CE0141DBB97} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2118352 2014-03-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {A4C15FC4-1B9C-46EC-90DB-25C4741616C5} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {A5E7B17F-AC7E-4616-8AF9-90EECA937C23} - System32\Tasks\{4CC251D2-852D-4B66-B411-1F3023A3F766} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {A6C13BC9-DB39-4584-AA76-A3CEDFE66B36} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
Task: {A9B4978C-5B41-4DC5-8CC1-5358464D08A3} - System32\Tasks\{DDDC7E35-E1FC-4E8D-B86D-2EC88CD7CF7C} => C:\Program Files (x86)\Counter-Strike 1.6\cstrike.exe
Task: {AA1D5024-9CCB-411A-91C1-AA6E8EBA4FBF} - System32\Tasks\{79093E2E-2B49-4C0D-AB42-EC6CD2FEAD97} => C:\Users\ΚΩΣΤΑΣ\Desktop\SeafightGlitterCollect.V.1.exe
Task: {B0A8C488-1E38-49C1-8BC9-AB3285C314D5} - System32\Tasks\{204F82F0-41CF-4A4C-9F90-3B704DB8D786} => C:\Program Files (x86)\TerroristTakedown\tt.exe
Task: {B0D6D587-7776-4070-8C7C-744D76460098} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26197064 2019-05-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {BCDFA139-48EE-4A19-A0AC-36A25DB46469} - System32\Tasks\{22CFD0FA-6D78-4587-95F3-ACACA224094F} => C:\Program Files (x86)\Counter-Strike 1.6\cstrike.exe
Task: {C4AA41E7-5CBB-4C4D-951A-C50FFF03D2FD} - System32\Tasks\update-S-1-5-21-3792820029-2752110351-4122056359-1000 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {C5FF4DEC-65EB-4544-98F4-9656FF698180} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2934152 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {C9BFE29D-9598-4C3E-BE4B-F390AAED9942} - System32\Tasks\{7389C1AC-0083-4A51-A649-34314893635A} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {CDCDA010-EDB3-4653-BC6C-37D530340FE6} - System32\Tasks\{BD2A063D-F3A3-457E-B4E2-9A7D6379532E} => C:\Users\ΚΩΣΤΑΣ\Desktop\GlitterCollect_v3.exe
Task: {CE89BD61-7D18-4C2E-842E-39BE8B960CAA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16571320 2019-05-09] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {D3DD8665-BC86-4928-BDEF-DD69A140444F} - System32\Tasks\{DEFA7BF5-5B24-4872-BF1B-073F207190C1} => C:\Program Files (x86)\Counter-Strike 1.6\cstrike.exe
Task: {E0025703-49F9-44B5-9826-D68B0D8DF544} - System32\Tasks\{B8522AF6-1EBC-4A33-BE69-B89AD7E992CE} => C:\Users\ΚΩΣΤΑΣ\Desktop\SCAR Divi 3.22\scar.exe
Task: {E074B249-363D-444A-8EEC-F538B9800A88} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2118352 2014-03-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {E45302C2-5CD9-4C3D-890E-D2A34F2D6B6D} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {E7BA0129-BB0A-46E5-982A-AD67D8E5EEC3} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2211024 2014-03-19] (Microsoft Corporation -> Microsoft)
Task: {E917B289-E83F-4D81-8483-CC4D1848C813} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4381312 2019-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {EADF075E-FEDA-4098-A86F-0BC05928CDDD} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [2380088 2019-04-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {F0BC93A0-98D9-4F5B-B6F5-DD607C7EBBE8} - System32\Tasks\{90139DED-79D5-4582-B141-CEF415D5B872} => C:\Program Files (x86)\Counter-Strike 1.6\cstrike.exe
Task: {F39ADCD1-511E-421B-84F3-9EF37A53091D} - System32\Tasks\{3510B4A4-5AD7-4CB7-A323-0695D5B45530} => C:\Program Files (x86)\Counter-Strike 1.6\cstrike.exe
Task: {F3B2F7C0-60F1-40EE-B184-934BCCA42830} - System32\Tasks\{67C729B0-B97F-4B19-BFF0-D7DAC0F9DD34} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {F3BE15C3-917C-459A-8C0C-4C994952622F} - System32\Tasks\{69D9E4FC-4482-47FA-B463-0A2C1A8B46F8} => C:\Users\ΚΩΣΤΑΣ\Desktop\csgo\csgo.exe
Task: {F47250F7-9498-4CF7-9FFB-ED646DEAC204} - System32\Tasks\HP AR Program Upload - cda3e7be4fed42809298aa49c21dde5f96451ebd404745f0b6ad053916610e6c => C:\Program Files\HP\HP DeskJet 2130 series\bin\HPRewards.exe [3869192 2015-04-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
Task: {F4731A8A-BC11-45BB-AB94-BCDE07005736} - System32\Tasks\ASUS\ASUS Network iControl Help Execute => C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\NetSvcHelp\NetSvcHelpEntry.exe [330368 2012-05-02] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {F5DFD41D-ABE7-41DE-8F2F-3D13B3CD4AE4} - System32\Tasks\{74D2ACAC-C563-4F47-A1E5-FDD15EA36734} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {F8B24933-0664-4696-ADC1-443E97D32742} - System32\Tasks\{46CAB135-E875-4F77-AC84-33766048A6BA} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {FABCD8E7-D114-40C7-8A2A-7F99F7752BB0} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1487568 2014-03-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {FB741245-4CC2-4335-98D6-5A601B464549} - System32\Tasks\{DC43AEB8-A0B0-453F-991C-E444F38D367A} => C:\Program Files (x86)\SCAR Divi\bin\scar.exe [7152640 2013-11-07] () [File not signed]
Task: {FD63BE01-E4AA-4C52-8D1D-D6EF6C55471F} - System32\Tasks\{E56AD4AC-8DBF-4512-9008-4654DA63ABA3} => C:\Users\ΚΩΣΤΑΣ\Desktop\ΚΩΣΤΑΣ\Seafight Mini Raid Bot Version 2.1 - 31.07.2013\Seafight Mini Raid Bot.exe
Task: {FF35D5E6-0A7F-44AD-BF71-B370BDB1283C} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1427464 2019-05-28] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\windows\Tasks\update-S-1-5-21-3792820029-2752110351-4122056359-1000.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{F8401384-9027-4452-B3BC-AF5485149EA6}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-3792820029-2752110351-4122056359-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.gr/
SearchScopes: HKLM -> DefaultScope {9B407D51-462C-4BED-BB2B-CA30D1DF17DF} URL = hxxp://www.bing.com/search?q={searchTerms}&amp;form=MNMTDF&amp;pc=MANM&amp;src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {9B407D51-462C-4BED-BB2B-CA30D1DF17DF} URL = hxxp://www.bing.com/search?q={searchTerms}&amp;form=MNMTDF&amp;pc=MANM&amp;src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {175EA4F8-4B22-4BF5-B60E-D60478C41C5F} URL = hxxp://www.bing.com/search?q={searchTerms}&amp;form=MNMTDF&amp;pc=MANM&amp;src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {175EA4F8-4B22-4BF5-B60E-D60478C41C5F} URL = hxxp://www.bing.com/search?q={searchTerms}&amp;form=MNMTDF&amp;pc=MANM&amp;src=IE-SearchBox
SearchScopes: HKU\.DEFAULT -> DefaultScope {9B407D51-462C-4BED-BB2B-CA30D1DF17DF} URL = hxxp://www.bing.com/search?q={searchTerms}&amp;form=MNMTDF&amp;pc=MANM&amp;src=IE-SearchBox
SearchScopes: HKU\.DEFAULT -> {9B407D51-462C-4BED-BB2B-CA30D1DF17DF} URL = hxxp://www.bing.com/search?q={searchTerms}&amp;form=MNMTDF&amp;pc=MANM&amp;src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-3792820029-2752110351-4122056359-1000 -> DefaultScope {9B407D51-462C-4BED-BB2B-CA30D1DF17DF} URL =
SearchScopes: HKU\S-1-5-21-3792820029-2752110351-4122056359-1000 -> {175EA4F8-4B22-4BF5-B60E-D60478C41C5F} URL =
SearchScopes: HKU\S-1-5-21-3792820029-2752110351-4122056359-1000 -> {9B407D51-462C-4BED-BB2B-CA30D1DF17DF} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation -> Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2019-05-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-04-17] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Βοηθός εισόδου του Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2019-05-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-04-17] (Oracle America, Inc. -> Oracle Corporation)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} -  No File
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF DefaultProfile: 0r155t7x.default
FF ProfilePath: C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Waterfox\Profiles\0r155t7x.default [2019-06-03]
FF Extension: (Ελληνικά Language Pack) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Waterfox\Profiles\0r155t7x.default\Extensions\langpack-el@firefox.mozilla.org.xpi [2018-01-16] [Legacy]
FF Extension: (Tamper Data) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Waterfox\Profiles\0r155t7x.default\Extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}.xpi [2016-04-27] [Legacy]
FF Extension: (Flash and Video Download) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Waterfox\Profiles\0r155t7x.default\Extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a}.xpi [2018-08-28]
FF Extension: (Fasterfox) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Waterfox\Profiles\0r155t7x.default\Extensions\{c36177c0-224a-11da-8cd6-0800200c9a91}.xpi [2016-04-27] [Legacy]
FF Extension: (No Name) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Waterfox\Profiles\0r155t7x.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-05-04]
FF Extension: (Microsoft Web Browser Version 1) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Waterfox\Profiles\0r155t7x.default\Extensions\{EAA8AE8A-BB29-6719-3E30-ECF8D96AD029} [2017-10-16] [Legacy] [not signed]
FF Extension: (Microsoft Web Browser Version 1) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Mozilla\Firefox\Profiles\sphidpsu.default\extensions\{EAA8AE8A-BB29-6719-3E30-ECF8D96AD029} [2014-01-14] [Legacy] [not signed]
FF Extension: (Fasterfox) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Mozilla\Firefox\Profiles\sphidpsu.default\extensions\{c36177c0-224a-11da-8cd6-0800200c9a91}.xpi [2016-04-27] [Legacy]
FF Extension: (Tamper Data) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Mozilla\Firefox\Profiles\sphidpsu.default\extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}.xpi [2016-04-27] [Legacy]
FF Extension: (Flash and Video Download) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Mozilla\Firefox\Profiles\sphidpsu.default\extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} [2017-09-20] [Legacy]
FF ProfilePath: C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Mozilla\Firefox\Profiles\sphidpsu.default [2019-03-02]
FF NetworkProxy: Mozilla\Firefox\Profiles\sphidpsu.default -> backup.ftp", "195.103.219.102"
FF Extension: (Ελληνικά Language Pack) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Mozilla\Firefox\Profiles\sphidpsu.default\Extensions\langpack-el@firefox.mozilla.org.xpi [2017-06-24] [Legacy]
FF Extension: (Adblock Plus) - C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Mozilla\Firefox\Profiles\sphidpsu.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-06-08] [Legacy]
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_32_0_0_192.dll [2019-06-03] (Adobe Inc. -> )
FF Plugin: @microsoft.com/GENUINE -> C:\windows\system32\Wat\npWatWeb.dll [2012-07-27] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_192.dll [2019-06-03] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1222172.dll [2015-11-19] (Adobe Systems, Inc.) [File not signed]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2000-01-01] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2000-01-01] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-04-17] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-04-17] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> C:\windows\system32\Wat\npWatWeb.dll [2012-07-27] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-04-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-16] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-16] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default [2019-06-03]
CHR Extension: (Slides) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-10-04]
CHR Extension: (Docs) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-10-04]
CHR Extension: (Google Drive) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-09]
CHR Extension: (YouTube) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-09]
CHR Extension: (Google Search) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-09]
CHR Extension: (Sheets) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-10-04]
CHR Extension: (Google Docs Offline) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-10-04]
CHR Extension: (Facebook Screen Sharing) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncfpggehkhmjpdjpefomjchjafhmbnai [2019-05-23]
CHR Extension: (Chrome Web Store Payments) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-10-04]
CHR Extension: (Gmail) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-23]
CHR Extension: (Chrome Media Router) - C:\Users\ΚΩΣΤΑΣ\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-05-26]
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2019-02-03] (ASUSTeK Computer Inc. -> )
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2019-02-03] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2019-02-03] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.08\AsusFanControlService.exe [324608 2019-02-03] (ASUSTeK Computer Inc.) [File not signed]
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6844776 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [409224 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11147336 2019-05-15] (Microsoft Corporation -> Microsoft Corporation)
R2 igfxCUIService1.0.0.0; C:\windows\system32\igfxCUIService.exe [317416 2018-09-19] (Intel Corporation -> Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2000-01-01] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
S3 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed]
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [76152 2014-07-24] (Even Balance, Inc. -> )
S4 PuranDefrag; C:\windows\system32\PuranDefragS.exe [292736 2013-08-15] (Vishal Gupta -> Puran Software) [File not signed]
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11795800 2019-04-15] (TeamViewer GmbH -> TeamViewer GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.3.1.1\WsAppService.exe [437392 2016-10-10] (Wondershare software CO., LIMITED -> Wondershare)
S2 avast; "C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe" /svc [X]
S3 avastm; "C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe" /medsvc [X]
S3 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X]
S4 LMIGuardianSvc; "C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe" [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S0 AFS; C:\Windows\SysWow64\Drivers\AFS.sys [77004 2013-08-06] (Oak Technology Inc.) [File not signed]
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-24] (ASUSTeK Computer Inc. -> )
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\windows\System32\drivers\aswArDisk.sys [37104 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\windows\System32\drivers\aswArPot.sys [207448 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\windows\System32\drivers\aswbidsdriver.sys [262496 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\windows\System32\drivers\aswbidsh.sys [205848 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\windows\System32\drivers\aswbuniv.sys [61472 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswHdsKe; C:\windows\System32\drivers\aswHdsKe.sys [279120 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\windows\System32\drivers\aswKbd.sys [42288 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\windows\System32\drivers\aswMonFlt.sys [167872 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\windows\System32\drivers\aswRdr2.sys [112312 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\windows\System32\drivers\aswRvrt.sys [87944 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\windows\System32\drivers\aswSnx.sys [1030784 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\windows\System32\drivers\aswSP.sys [477584 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\windows\System32\drivers\aswStm.sys [225096 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\windows\System32\drivers\aswVmm.sys [385880 2019-06-03] (AVAST Software s.r.o. -> AVAST Software)
S3 dg_ssudbus; C:\windows\System32\DRIVERS\ssudbus.sys [103576 2013-08-21] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 fwlanusb6_860; C:\windows\System32\DRIVERS\fwlanusb6_860.sys [2274336 2015-07-20] (MEDIATEK INC. -> AVM GmbH)
S3 HTCAND64; C:\windows\System32\Drivers\ANDROIDUSB.sys [33736 2009-11-02] (3am.com(Test) -> HTC, Corporation) [File not signed]
S3 htcnprot; C:\windows\System32\DRIVERS\htcnprot.sys [36928 2013-10-17] (HTC Corp. -> Windows (R) Win 7 DDK provider)
S3 HtcVCom32; C:\windows\System32\DRIVERS\HtcVComV64.sys [121800 2010-03-09] (Sqa.com(Test) -> QUALCOMM Incorporated) [File not signed]
S3 L1E; C:\windows\System32\DRIVERS\L1E62x64.sys [54272 2009-06-20] (Microsoft Windows -> Atheros Communications, Inc.)
R3 MBAMSwissArmy; C:\windows\System32\Drivers\mbamswissarmy.sys [275232 2019-06-03] (Malwarebytes Corporation -> Malwarebytes)
R3 MEIx64; C:\windows\System32\DRIVERS\TeeDriverx64.sys [100312 2000-01-01] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R1 ndisrd; C:\windows\System32\DRIVERS\ndisrd.sys [32400 2012-05-31] (Realtek Semiconductor Corp -> NT Kernel Resources)
R1 npcap; C:\windows\System32\DRIVERS\npcap.sys [74552 2019-05-11] (Insecure.Com LLC -> Insecure.Com LLC.)
S3 NPF; C:\windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
S3 PortTalk; C:\windows\System32\Drivers\PortTalk.sys [3567 2009-01-18] (Beyond Logic hxxp://www.beyondlogic.org) [File not signed]
S3 PortTalk; C:\Windows\SysWOW64\Drivers\PortTalk.sys [3567 2009-01-18] (Beyond Logic hxxp://www.beyondlogic.org) [File not signed]
S3 rt2870; C:\windows\System32\DRIVERS\rt2870.sys [3425424 2015-02-12] (MEDIATEK INC. -> MediaTek Inc.)
S3 RZMAELSTROMVADService; C:\windows\System32\drivers\RzMaelstromVAD.sys [40696 2013-09-18] (Razer Inc. -> Windows (R) Win 7 DDK provider)
S3 silabenm; C:\windows\System32\DRIVERS\silabenm.sys [31504 2013-10-16] (intec Gesellschaft fuer Informationstechnik mbH -> Silicon Laboratories)
S3 silabser; C:\windows\System32\DRIVERS\silabser.sys [81168 2013-10-16] (intec Gesellschaft fuer Informationstechnik mbH -> Silicon Laboratories)
S3 ssdudfu; C:\windows\System32\DRIVERS\ssdudfu.sys [101960 2013-08-21] (MCCI Corporation -> MCCI)
S3 ssudmdm; C:\windows\System32\DRIVERS\ssudmdm.sys [204568 2013-10-28] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssudserd; C:\windows\System32\DRIVERS\ssudserd.sys [204568 2013-08-21] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 VBoxUSB; C:\windows\System32\Drivers\VBoxUSB.sys [114632 2015-09-16] (Duodian Online Technology Co. Ltd. -> BigNox Corporation)
R1 VBoxUSBMon; C:\windows\System32\DRIVERS\VBoxUSBMon.sys [127432 2015-09-16] (Duodian Online Technology Co. Ltd. -> BigNox Corporation)
R1 XQHDrv; C:\windows\System32\DRIVERS\XQHDrv.sys [253384 2015-09-16] (Duodian Online Technology Co. Ltd. -> BigNox Corporation)
R1 XQHDrv; C:\Windows\SysWOW64\DRIVERS\XQHDrv.sys [253384 2015-09-16] (Duodian Online Technology Co. Ltd. -> BigNox Corporation)
S3 EagleX64; \??\C:\windows\system32\drivers\EagleX64.sys [X]
S2 iocbios2; \??\C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [X]
S3 MFE_RR; \??\C:\Users\F7C8~1\AppData\Local\Temp\mfe_rr.sys [X] <==== ATTENTION
S3 netr28ux; system32\DRIVERS\netr28ux.sys [X]
U4 npcap_wifi; no ImagePath
S3 SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2015.SP2b\WNt600x64\Sandra.sys [X]
S2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X]
S3 vmci; \SystemRoot\system32\DRIVERS\vmci.sys [X]
S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]
S3 X6va014; \??\C:\windows\SysWOW64\Drivers\X6va014 [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-06-03 18:59 - 2019-06-03 19:01 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Desktop\frst
2019-06-03 18:59 - 2019-06-03 19:01 - 000000000 ____D C:\FRST
2019-06-03 18:55 - 2019-06-03 18:55 - 000275232 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamswissarmy.sys
2019-06-03 18:51 - 2019-06-03 18:51 - 000005273 _____ C:\Users\ΚΩΣΤΑΣ\Desktop\AdwCleaner[S00].txt
2019-06-03 18:44 - 2019-06-03 18:53 - 000000000 ____D C:\AdwCleaner
2019-06-03 18:34 - 2019-06-03 18:34 - 000061209 _____ C:\Users\ΚΩΣΤΑΣ\Desktop\mbam_scan.txt
2019-06-03 17:56 - 2019-06-03 17:56 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Local\mbamtray
2019-06-03 17:56 - 2019-06-03 17:56 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Local\mbam
2019-06-03 17:55 - 2019-06-03 17:55 - 000001835 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-06-03 17:55 - 2019-06-03 17:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-06-03 17:55 - 2019-06-03 17:55 - 000000000 ____D C:\Program Files\Malwarebytes
2019-06-03 17:55 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\windows\system32\Drivers\mbae64.sys
2019-06-03 17:52 - 2019-06-03 17:52 - 007025360 _____ (Malwarebytes) C:\Users\ΚΩΣΤΑΣ\Downloads\adwcleaner_7.3.exe
2019-06-03 17:51 - 2019-06-03 17:52 - 063182216 _____ (Malwarebytes ) C:\Users\ΚΩΣΤΑΣ\Downloads\mb3-setup-43841.43841-3.7.1.2839-1.0.586-1.0.10430.exe
2019-06-03 05:22 - 2019-06-03 05:22 - 000004424 _____ C:\windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-06-03 05:21 - 2019-06-03 05:22 - 000004282 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2019-06-03 05:20 - 2019-06-03 18:22 - 000004128 _____ C:\windows\System32\Tasks\CCleaner Update
2019-06-03 05:19 - 2019-06-03 05:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2019-06-03 05:06 - 2019-06-03 05:05 - 000363400 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2019-06-03 04:31 - 2019-06-03 05:03 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\John Wick Chapter 3 - Parabellum 2019 DVDRip XViD-CG
2019-06-01 00:57 - 2019-06-01 00:57 - 000035505 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\Captain.Marvel.2019.720p.WEBRip.x264-[YTS.AM].rar
2019-06-01 00:24 - 2019-06-01 00:57 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Captain Marvel (2019) [WEBRip] [720p] [YTS.AM]
2019-05-31 23:17 - 2019-05-31 23:17 - 003404863 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\1054420_erg_NetLabs.pdf
2019-05-31 23:15 - 2019-05-31 23:15 - 001358232 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\1054420_erg_NetLabs_B.pdf
2019-05-31 23:09 - 2019-05-31 23:09 - 001358232 _____ C:\Users\ΚΩΣΤΑΣ\Desktop\1054420_erg_NetLabs_B.pdf
2019-05-31 09:59 - 2019-05-31 09:59 - 000915128 _____ (Riverbed Technology, Inc.) C:\Users\ΚΩΣΤΑΣ\Downloads\WinPcap_4_1_3.exe
2019-05-31 09:59 - 2019-05-31 09:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
2019-05-31 09:59 - 2019-05-31 09:59 - 000000000 ____D C:\Program Files (x86)\WinPcap
2019-05-31 09:37 - 2019-05-31 09:37 - 000001742 _____ C:\Users\Public\Desktop\Wireshark.lnk
2019-05-31 08:40 - 2019-05-31 20:06 - 000003098 _____ C:\windows\System32\Tasks\npcapwatchdog
2019-05-31 08:40 - 2019-05-31 08:56 - 000000000 ____D C:\windows\system32\Npcap
2019-05-31 08:40 - 2019-05-31 08:40 - 000000000 ____D C:\windows\SysWOW64\Npcap
2019-05-31 08:12 - 2019-05-31 08:12 - 000839168 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\npcap-0.995.exe
2019-05-29 02:08 - 2019-05-29 02:09 - 000177423 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\Ergasia_NetLabs_B(1).pdf
2019-05-28 20:50 - 2019-05-28 20:50 - 000002494 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2019-05-28 20:50 - 2019-05-28 20:50 - 000002487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype για επιχειρήσεις.lnk
2019-05-28 20:50 - 2019-05-28 20:50 - 000002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2019-05-28 20:50 - 2019-05-28 20:50 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2019-05-28 20:50 - 2019-05-28 20:50 - 000002435 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2019-05-28 20:50 - 2019-05-28 20:50 - 000002424 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2019-05-28 20:50 - 2019-05-28 20:50 - 000002398 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2019-05-28 20:50 - 2019-05-28 20:50 - 000002396 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2019-05-28 20:50 - 2019-05-28 20:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Εργαλεία του Microsoft Office
2019-05-23 21:47 - 2019-05-23 21:47 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Local\TeamViewer
2019-05-23 21:29 - 2019-05-23 21:29 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk
2019-05-22 04:14 - 2019-05-22 04:14 - 000036404 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\captain-america-greek-144071.zip
2019-05-22 04:14 - 2019-03-31 15:44 - 000086782 _____ C:\Users\ΚΩΣΤΑΣ\Desktop\captain-america-the-first-avenger-1080p-brrip-x264-yify-a-t3ll4v1s10n8482-sub.srt
2019-05-22 04:13 - 2019-05-22 04:13 - 000037256 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\captain-america-the-first-avenger-greek-yify-19607.zip
2019-05-20 23:48 - 2019-05-22 04:17 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Captain America - The First Avenger (2011)
2019-05-20 23:35 - 2019-05-20 23:35 - 000045112 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\guardiansofthegalaxyvol22017720pblurayx264ytsag-greek-120375.zip
2019-05-19 04:28 - 2019-05-19 04:28 - 025633788 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\Software Engineering.zip
2019-05-18 05:27 - 2019-05-25 22:01 - 000000344 _____ C:\Users\ΚΩΣΤΑΣ\Desktop\songs.txt
2019-05-18 03:41 - 2019-05-18 03:41 - 000666200 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\Project 2019(1).pdf
2019-05-18 02:34 - 2019-05-20 23:38 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Guardians of the Galaxy Vol. 2 (2017) 720p BrRip x264 - VPPV
2019-05-17 04:37 - 2019-05-18 06:26 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\.texlive2019
2019-05-17 03:48 - 2019-05-17 03:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeX Live 2019
2019-05-17 02:18 - 2019-05-17 02:18 - 000000000 ____D C:\texlive
2019-05-17 02:10 - 2019-05-17 02:10 - 000038163 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\guardians-of-the-galaxy-greek-yify-29509.zip
2019-05-17 00:58 - 2019-05-17 02:11 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Guardians of the Galaxy (2014)
2019-05-16 23:55 - 2019-05-16 23:56 - 018678790 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\install-tl-windows.exe
2019-05-16 20:38 - 2019-04-19 05:54 - 004057320 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2019-05-16 20:38 - 2019-04-19 05:53 - 003963624 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2019-05-16 20:38 - 2019-04-19 05:53 - 001314104 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 001114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000666112 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000555520 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000275968 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000261120 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000254464 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000141312 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpchttp.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000070144 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2019-05-16 20:38 - 2019-04-19 05:51 - 000005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000644096 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000050688 _____ (Microsoft Corporation) C:\windows\SysWOW64\appidapi.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:50 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:44 - 000095456 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2019-05-16 20:38 - 2019-04-19 05:42 - 001664360 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2019-05-16 20:38 - 2019-04-19 05:42 - 000262376 _____ (Microsoft Corporation) C:\windows\system32\hal.dll
2019-05-16 20:38 - 2019-04-19 05:40 - 000316928 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2019-05-16 20:38 - 2019-04-19 05:40 - 000243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2019-05-16 20:38 - 2019-04-19 05:40 - 000190464 _____ (Microsoft Corporation) C:\windows\system32\rpchttp.dll
2019-05-16 20:38 - 2019-04-19 05:40 - 000135680 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2019-05-16 20:38 - 2019-04-19 05:40 - 000094208 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2019-05-16 20:38 - 2019-04-19 05:40 - 000028672 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2019-05-16 20:38 - 2019-04-19 05:40 - 000028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2019-05-16 20:38 - 2019-04-19 05:40 - 000013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 001162752 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000419840 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000059904 _____ (Microsoft Corporation) C:\windows\system32\appidapi.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000044032 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000034816 _____ (Microsoft Corporation) C:\windows\system32\appidsvc.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:39 - 000003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:20 - 000014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2019-05-16 20:38 - 2019-04-19 05:20 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2019-05-16 20:38 - 2019-04-19 05:18 - 000006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:18 - 000004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:18 - 000003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:18 - 000003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2019-05-16 20:38 - 2019-04-19 05:15 - 000062464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys
2019-05-16 20:38 - 2019-04-19 05:11 - 000129024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\videoprt.sys
2019-05-16 20:38 - 2019-04-19 05:08 - 000291328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2019-05-16 20:38 - 2019-04-19 05:08 - 000169472 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srvnet.sys
2019-05-16 20:38 - 2019-04-19 05:08 - 000129536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys
2019-05-16 20:38 - 2019-04-19 05:07 - 000112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2019-05-16 20:38 - 2019-04-19 05:07 - 000064512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\amdk8.sys
2019-05-16 20:38 - 2019-04-19 05:07 - 000062464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\intelppm.sys
2019-05-16 20:38 - 2019-04-19 05:07 - 000060928 _____ (Microsoft Corporation) C:\windows\system32\Drivers\processr.sys
2019-05-16 20:38 - 2019-04-19 05:07 - 000060928 _____ (Microsoft Corporation) C:\windows\system32\Drivers\amdppm.sys
2019-05-16 20:38 - 2019-04-19 05:07 - 000044544 _____ (Microsoft Corporation) C:\windows\system32\Drivers\npfs.sys
2019-05-16 20:38 - 2019-04-19 05:07 - 000030720 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2019-05-16 20:38 - 2019-04-16 18:17 - 000583680 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleaut32.dll
2019-05-16 20:38 - 2019-04-16 18:17 - 000313344 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2019-05-16 20:37 - 2019-04-30 22:28 - 000397112 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2019-05-16 20:37 - 2019-04-30 21:37 - 000348984 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2019-05-16 20:37 - 2019-04-30 03:51 - 000578560 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2019-05-16 20:37 - 2019-04-30 03:51 - 000499200 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2019-05-16 20:37 - 2019-04-25 07:01 - 025730560 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2019-05-16 20:37 - 2019-04-25 06:52 - 002724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2019-05-16 20:37 - 2019-04-25 06:52 - 000004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2019-05-16 20:37 - 2019-04-25 06:40 - 002902016 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2019-05-16 20:37 - 2019-04-25 06:38 - 000417280 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2019-05-16 20:37 - 2019-04-25 06:38 - 000066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2019-05-16 20:37 - 2019-04-25 06:38 - 000048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2019-05-16 20:37 - 2019-04-25 06:37 - 000088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2019-05-16 20:37 - 2019-04-25 06:31 - 020279296 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2019-05-16 20:37 - 2019-04-25 06:31 - 000054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2019-05-16 20:37 - 2019-04-25 06:30 - 000034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2019-05-16 20:37 - 2019-04-25 06:28 - 005775360 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2019-05-16 20:37 - 2019-04-25 06:28 - 000615936 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2019-05-16 20:37 - 2019-04-25 06:26 - 000814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2019-05-16 20:37 - 2019-04-25 06:26 - 000790528 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2019-05-16 20:37 - 2019-04-25 06:26 - 000144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2019-05-16 20:37 - 2019-04-25 06:26 - 000116224 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2019-05-16 20:37 - 2019-04-25 06:24 - 002724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2019-05-16 20:37 - 2019-04-25 06:19 - 000969216 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2019-05-16 20:37 - 2019-04-25 06:16 - 000489984 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2019-05-16 20:37 - 2019-04-25 06:12 - 000062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2019-05-16 20:37 - 2019-04-25 06:12 - 000047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2019-05-16 20:37 - 2019-04-25 06:11 - 000341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2019-05-16 20:37 - 2019-04-25 06:11 - 000064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2019-05-16 20:37 - 2019-04-25 06:09 - 002295808 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2019-05-16 20:37 - 2019-04-25 06:09 - 000087552 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2019-05-16 20:37 - 2019-04-25 06:09 - 000077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2019-05-16 20:37 - 2019-04-25 06:08 - 000107520 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2019-05-16 20:37 - 2019-04-25 06:06 - 000047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2019-05-16 20:37 - 2019-04-25 06:05 - 000199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2019-05-16 20:37 - 2019-04-25 06:05 - 000092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2019-05-16 20:37 - 2019-04-25 06:05 - 000030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2019-05-16 20:37 - 2019-04-25 06:04 - 000476160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2019-05-16 20:37 - 2019-04-25 06:03 - 000663040 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2019-05-16 20:37 - 2019-04-25 06:03 - 000315392 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2019-05-16 20:37 - 2019-04-25 06:02 - 000620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2019-05-16 20:37 - 2019-04-25 06:02 - 000115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2019-05-16 20:37 - 2019-04-25 06:01 - 000152064 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2019-05-16 20:37 - 2019-04-25 05:54 - 000416256 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2019-05-16 20:37 - 2019-04-25 05:52 - 000262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2019-05-16 20:37 - 2019-04-25 05:50 - 000809472 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2019-05-16 20:37 - 2019-04-25 05:50 - 000728064 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2019-05-16 20:37 - 2019-04-25 05:50 - 000060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2019-05-16 20:37 - 2019-04-25 05:49 - 000091136 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2019-05-16 20:37 - 2019-04-25 05:49 - 000073216 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2019-05-16 20:37 - 2019-04-25 05:48 - 001359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2019-05-16 20:37 - 2019-04-25 05:47 - 002135552 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2019-05-16 20:37 - 2019-04-25 05:47 - 000168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2019-05-16 20:37 - 2019-04-25 05:46 - 015285248 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2019-05-16 20:37 - 2019-04-25 05:46 - 000076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2019-05-16 20:37 - 2019-04-25 05:45 - 000279040 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2019-05-16 20:37 - 2019-04-25 05:43 - 000130048 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2019-05-16 20:37 - 2019-04-25 05:40 - 004493312 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2019-05-16 20:37 - 2019-04-25 05:38 - 000230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2019-05-16 20:37 - 2019-04-25 05:37 - 000696320 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2019-05-16 20:37 - 2019-04-25 05:36 - 002059776 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2019-05-16 20:37 - 2019-04-25 05:35 - 013682176 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2019-05-16 20:37 - 2019-04-25 05:35 - 005303808 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2019-05-16 20:37 - 2019-04-25 05:35 - 001155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2019-05-16 20:37 - 2019-04-25 05:24 - 001557504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2019-05-16 20:37 - 2019-04-25 05:18 - 004831232 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2019-05-16 20:37 - 2019-04-25 05:14 - 001323008 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2019-05-16 20:37 - 2019-04-25 05:14 - 000800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2019-05-16 20:37 - 2019-04-25 05:12 - 000710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2019-05-16 20:37 - 2019-04-19 05:51 - 000223232 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2019-05-16 20:37 - 2019-04-19 05:51 - 000146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2019-05-16 20:37 - 2019-04-19 05:51 - 000082944 _____ (Microsoft Corporation) C:\windows\SysWOW64\bcrypt.dll
2019-05-16 20:37 - 2019-04-19 05:51 - 000060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2019-05-16 20:37 - 2019-04-19 05:51 - 000043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2019-05-16 20:37 - 2019-04-19 05:50 - 000690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2019-05-16 20:37 - 2019-04-19 05:50 - 000342528 _____ (Microsoft Corporation) C:\windows\SysWOW64\certcli.dll
2019-05-16 20:37 - 2019-04-19 05:50 - 000017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2019-05-16 20:37 - 2019-04-19 05:44 - 000185064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\pci.sys
2019-05-16 20:37 - 2019-04-19 05:43 - 000708328 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2019-05-16 20:37 - 2019-04-19 05:43 - 000631680 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2019-05-16 20:37 - 2019-04-19 05:43 - 000153832 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2019-05-16 20:37 - 2019-04-19 05:43 - 000064232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ULIAGPKX.SYS
2019-05-16 20:37 - 2019-04-19 05:43 - 000063208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\termdd.sys
2019-05-16 20:37 - 2019-04-19 05:43 - 000060648 _____ (Microsoft Corporation) C:\windows\system32\Drivers\AGP440.sys
2019-05-16 20:37 - 2019-04-19 05:43 - 000031976 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mssmbios.sys
2019-05-16 20:37 - 2019-04-19 05:43 - 000023784 _____ (Microsoft Corporation) C:\windows\system32\streamci.dll
2019-05-16 20:37 - 2019-04-19 05:43 - 000020200 _____ (Microsoft Corporation) C:\windows\system32\Drivers\isapnp.sys
2019-05-16 20:37 - 2019-04-19 05:42 - 005552864 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2019-05-16 20:37 - 2019-04-19 05:42 - 000122600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\NV_AGP.SYS
2019-05-16 20:37 - 2019-04-19 05:42 - 000068328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\volmgr.sys
2019-05-16 20:37 - 2019-04-19 05:42 - 000036064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vdrvroot.sys
2019-05-16 20:37 - 2019-04-19 05:42 - 000015080 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msisadrv.sys
2019-05-16 20:37 - 2019-04-19 05:42 - 000012136 _____ (Microsoft Corporation) C:\windows\system32\Drivers\swenum.sys
2019-05-16 20:37 - 2019-04-19 05:40 - 001211392 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000361984 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000345600 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000312320 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000236032 _____ (Microsoft Corporation) C:\windows\system32\srvsvc.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000215552 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000210432 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000063488 _____ (Microsoft Corporation) C:\windows\system32\setbcdlocale.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2019-05-16 20:37 - 2019-04-19 05:40 - 000013312 _____ (Microsoft Corporation) C:\windows\system32\sscore.dll
2019-05-16 20:37 - 2019-04-19 05:39 - 001472512 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2019-05-16 20:37 - 2019-04-19 05:39 - 000880640 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2019-05-16 20:37 - 2019-04-19 05:39 - 000733184 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2019-05-16 20:37 - 2019-04-19 05:39 - 000690688 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2019-05-16 20:37 - 2019-04-19 05:39 - 000463872 _____ (Microsoft Corporation) C:\windows\system32\certcli.dll
2019-05-16 20:37 - 2019-04-19 05:39 - 000123904 _____ (Microsoft Corporation) C:\windows\system32\bcrypt.dll
2019-05-16 20:37 - 2019-04-19 05:39 - 000043520 _____ (Microsoft Corporation) C:\windows\system32\cryptbase.dll
2019-05-16 20:37 - 2019-04-19 05:39 - 000022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2019-05-16 20:37 - 2019-04-19 05:27 - 000009728 _____ (Microsoft Corporation) C:\windows\SysWOW64\sscore.dll
2019-05-16 20:37 - 2019-04-19 05:26 - 000050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2019-05-16 20:37 - 2019-04-19 05:20 - 000025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2019-05-16 20:37 - 2019-04-19 05:20 - 000007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2019-05-16 20:37 - 2019-04-19 05:19 - 000036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptbase.dll
2019-05-16 20:37 - 2019-04-19 05:15 - 000148480 _____ (Microsoft Corporation) C:\windows\system32\appidpolicyconverter.exe
2019-05-16 20:37 - 2019-04-19 05:15 - 000017920 _____ (Microsoft Corporation) C:\windows\system32\appidcertstorecheck.exe
2019-05-16 20:37 - 2019-04-19 05:14 - 000064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2019-05-16 20:37 - 2019-04-19 05:12 - 000338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2019-05-16 20:37 - 2019-04-19 05:11 - 000296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2019-05-16 20:37 - 2019-04-19 05:08 - 000464384 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv.sys
2019-05-16 20:37 - 2019-04-19 05:08 - 000406016 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv2.sys
2019-05-16 20:37 - 2019-04-19 05:08 - 000160768 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys
2019-05-16 20:37 - 2019-04-16 18:17 - 012880896 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2019-05-16 20:37 - 2019-04-16 18:17 - 001425920 _____ (Microsoft Corporation) C:\windows\SysWOW64\ole32.dll
2019-05-16 20:37 - 2019-04-16 18:17 - 000628224 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2019-05-16 20:37 - 2019-04-16 18:17 - 000026112 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleres.dll
2019-05-16 20:37 - 2019-04-16 18:16 - 001499648 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExplorerFrame.dll
2019-05-16 20:37 - 2019-04-16 18:05 - 014184448 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2019-05-16 20:37 - 2019-04-16 18:05 - 002072576 _____ (Microsoft Corporation) C:\windows\system32\ole32.dll
2019-05-16 20:37 - 2019-04-16 18:05 - 001867776 _____ (Microsoft Corporation) C:\windows\system32\ExplorerFrame.dll
2019-05-16 20:37 - 2019-04-16 18:05 - 000878080 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2019-05-16 20:37 - 2019-04-16 18:05 - 000806400 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll
2019-05-16 20:37 - 2019-04-16 18:05 - 000516096 _____ (Microsoft Corporation) C:\windows\system32\rpcss.dll
2019-05-16 20:37 - 2019-04-16 18:05 - 000405504 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2019-05-16 20:37 - 2019-04-16 18:05 - 000026112 _____ (Microsoft Corporation) C:\windows\system32\oleres.dll
2019-05-16 20:37 - 2019-04-16 18:05 - 000008704 _____ (Microsoft Corporation) C:\windows\system32\comcat.dll
2019-05-16 20:37 - 2019-04-16 17:55 - 000007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\comcat.dll
2019-05-16 20:37 - 2019-04-16 16:15 - 000419648 _____ C:\windows\SysWOW64\locale.nls
2019-05-16 20:37 - 2019-04-16 16:15 - 000419648 _____ C:\windows\system32\locale.nls
2019-05-16 20:37 - 2019-04-14 08:42 - 000309480 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2019-05-16 20:37 - 2019-04-14 08:40 - 000111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\t2embed.dll
2019-05-16 20:37 - 2019-04-14 08:40 - 000025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2019-05-16 20:37 - 2019-04-14 08:39 - 000071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2019-05-16 20:37 - 2019-04-14 08:39 - 000010240 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2019-05-16 20:37 - 2019-04-14 08:28 - 000383720 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2019-05-16 20:37 - 2019-04-14 08:26 - 000151552 _____ (Microsoft Corporation) C:\windows\system32\t2embed.dll
2019-05-16 20:37 - 2019-04-14 08:26 - 000101376 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2019-05-16 20:37 - 2019-04-14 08:26 - 000046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2019-05-16 20:37 - 2019-04-14 08:26 - 000041472 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2019-05-16 20:37 - 2019-04-14 08:26 - 000014336 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2019-05-16 20:37 - 2019-04-14 08:12 - 000034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2019-05-16 20:37 - 2019-04-07 18:17 - 012574208 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2019-05-16 20:37 - 2019-04-07 18:17 - 011411968 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2019-05-16 20:37 - 2019-04-07 18:17 - 000617984 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmdrmsdk.dll
2019-05-16 20:37 - 2019-04-07 18:17 - 000382976 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2019-05-16 20:37 - 2019-04-07 18:17 - 000179712 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2019-05-16 20:37 - 2019-04-07 18:17 - 000160256 _____ (Microsoft Corporation) C:\windows\SysWOW64\werui.dll
2019-05-16 20:37 - 2019-04-07 18:16 - 003207168 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2019-05-16 20:37 - 2019-04-07 18:16 - 001329664 _____ (Microsoft Corporation) C:\windows\SysWOW64\quartz.dll
2019-05-16 20:37 - 2019-04-07 18:16 - 000519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2019-05-16 20:37 - 2019-04-07 18:16 - 000504320 _____ (Microsoft Corporation) C:\windows\SysWOW64\msscp.dll
2019-05-16 20:37 - 2019-04-07 18:16 - 000442368 _____ (Microsoft Corporation) C:\windows\SysWOW64\AUDIOKSE.dll
2019-05-16 20:37 - 2019-04-07 18:16 - 000354816 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfplat.dll
2019-05-16 20:37 - 2019-04-07 18:16 - 000265216 _____ (Microsoft Corporation) C:\windows\SysWOW64\msnetobj.dll
2019-05-16 20:37 - 2019-04-07 18:16 - 000103424 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfps.dll
2019-05-16 20:37 - 2019-04-07 18:16 - 000046592 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssign32.dll
2019-05-16 20:37 - 2019-04-07 18:16 - 000002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\mferror.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 001177088 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 001005056 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptui.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 000988160 _____ (Microsoft Corporation) C:\windows\SysWOW64\drmv2clt.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 000744960 _____ (Microsoft Corporation) C:\windows\SysWOW64\blackbox.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 000489984 _____ (Microsoft Corporation) C:\windows\SysWOW64\evr.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 000406016 _____ (Microsoft Corporation) C:\windows\SysWOW64\drmmgrtn.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 000373248 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioEng.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 000195072 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 000146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 000106496 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll
2019-05-16 20:37 - 2019-04-07 18:15 - 000080896 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsp.dll
2019-05-16 20:37 - 2019-04-07 18:05 - 000094440 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mountmgr.sys
2019-05-16 20:37 - 2019-04-07 18:03 - 014637568 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 012574720 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2019-05-16 20:37 - 2019-04-07 18:03 - 001574400 _____ (Microsoft Corporation) C:\windows\system32\quartz.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 001281536 _____ (Microsoft Corporation) C:\windows\system32\werconcpl.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000782848 _____ (Microsoft Corporation) C:\windows\system32\wmdrmsdk.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000499712 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000486400 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000229376 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000187904 _____ (Microsoft Corporation) C:\windows\system32\pcasvc.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000174080 _____ (Microsoft Corporation) C:\windows\system32\werui.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000086016 _____ (Microsoft Corporation) C:\windows\system32\wercplsupport.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000037376 _____ (Microsoft Corporation) C:\windows\system32\pcadm.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000034304 _____ (Microsoft Corporation) C:\windows\system32\werdiagcontroller.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000009728 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000008704 _____ (Microsoft Corporation) C:\windows\system32\pcaevts.dll
2019-05-16 20:37 - 2019-04-07 18:03 - 000005120 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2019-05-16 20:37 - 2019-04-07 18:03 - 000005120 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 004120576 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 001484800 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 001202176 _____ (Microsoft Corporation) C:\windows\system32\drmv2clt.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 001068544 _____ (Microsoft Corporation) C:\windows\system32\cryptui.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000842240 _____ (Microsoft Corporation) C:\windows\system32\blackbox.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000680448 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000641024 _____ (Microsoft Corporation) C:\windows\system32\msscp.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000632320 _____ (Microsoft Corporation) C:\windows\system32\evr.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000497664 _____ (Microsoft Corporation) C:\windows\system32\drmmgrtn.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000438784 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000433152 _____ (Microsoft Corporation) C:\windows\system32\mfplat.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000325632 _____ (Microsoft Corporation) C:\windows\system32\msnetobj.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000295936 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000284672 _____ (Microsoft Corporation) C:\windows\system32\EncDump.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000206848 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000190976 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000141824 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000081920 _____ (Microsoft Corporation) C:\windows\system32\cryptsp.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000060416 _____ (Microsoft Corporation) C:\windows\system32\mssign32.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000011264 _____ (Microsoft Corporation) C:\windows\system32\msmmsp.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000008192 _____ (Microsoft Corporation) C:\windows\SysWOW64\spwmp.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdxm.ocx
2019-05-16 20:37 - 2019-04-07 18:02 - 000004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxmasf.dll
2019-05-16 20:37 - 2019-04-07 18:02 - 000002048 _____ (Microsoft Corporation) C:\windows\system32\mferror.dll
2019-05-16 20:37 - 2019-04-07 18:01 - 000050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\rrinstaller.exe
2019-05-16 20:37 - 2019-04-07 18:01 - 000023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfpmp.exe
2019-05-16 20:37 - 2019-04-07 17:57 - 000663552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\PEAuth.sys
2019-05-16 20:37 - 2019-04-07 17:49 - 000054272 _____ (Microsoft Corporation) C:\windows\SysWOW64\wermgr.exe
2019-05-16 20:37 - 2019-04-07 17:48 - 000028672 _____ (Microsoft Corporation) C:\windows\SysWOW64\werdiagcontroller.dll
2019-05-16 20:37 - 2019-04-07 17:45 - 000125952 _____ (Microsoft Corporation) C:\windows\system32\audiodg.exe
2019-05-16 20:37 - 2019-04-07 17:45 - 000055808 _____ (Microsoft Corporation) C:\windows\system32\rrinstaller.exe
2019-05-16 20:37 - 2019-04-07 17:45 - 000024576 _____ (Microsoft Corporation) C:\windows\system32\mfpmp.exe
2019-05-16 20:37 - 2019-04-07 17:42 - 001311744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msjet40.dll
2019-05-16 20:37 - 2019-04-07 17:42 - 000376320 _____ (Microsoft Corporation) C:\windows\SysWOW64\mspbde40.dll
2019-05-16 20:37 - 2019-04-07 17:42 - 000353280 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrd3x40.dll
2019-05-16 20:37 - 2019-04-07 17:42 - 000341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msexcl40.dll
2019-05-16 20:37 - 2019-04-07 17:42 - 000240640 _____ (Microsoft Corporation) C:\windows\SysWOW64\msltus40.dll
2019-05-16 20:37 - 2019-04-07 17:38 - 000407040 _____ (Microsoft Corporation) C:\windows\system32\nltest.exe
2019-05-16 20:37 - 2019-04-07 17:35 - 000050688 _____ (Microsoft Corporation) C:\windows\system32\wermgr.exe
2019-05-16 20:37 - 2019-04-07 17:33 - 000011264 _____ (Microsoft Corporation) C:\windows\system32\pcawrk.exe
2019-05-16 20:37 - 2019-04-07 17:33 - 000009728 _____ (Microsoft Corporation) C:\windows\system32\pcalua.exe
2019-05-16 20:37 - 2019-04-07 16:05 - 000634312 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2019-05-16 20:37 - 2019-04-05 03:34 - 000064000 _____ (Microsoft Corporation) C:\windows\system32\cryptdll.dll
2019-05-16 20:37 - 2019-04-05 03:23 - 000057856 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptdll.dll
2019-05-16 01:07 - 2019-05-05 04:35 - 000178374 _____ C:\Users\ΚΩΣΤΑΣ\Desktop\Avengers.Endgame.2019.1080p.HC.HDTS.H264.AC3.YG.srt
2019-05-16 01:07 - 2019-05-05 04:35 - 000178374 _____ C:\Users\ΚΩΣΤΑΣ\Desktop\Avengers Endgame (2019) English 720p HDTC x264 AAC New Souce [Team DRSD].srt
2019-05-16 01:06 - 2019-05-16 01:06 - 000100609 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\3699681_avengers-endgame-2019-1080p-hc-hdts-h264-ac3-wow-yg-all-the-hc-hdts-releases_48732.rar
2019-05-16 00:20 - 2019-05-16 00:54 - 2311000003 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\Avengers Endgame (2019) English 720p HDTC x264 AAC New Souce [Team DRSD].mkv
2019-05-15 22:45 - 2019-05-15 22:45 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Avengers.Endgame.2019.HDTC.SPECIAL-1337x-EDITION.x264-GalaxyRG[TGx]
2019-05-15 21:53 - 2019-05-15 22:42 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Avengers Endgame (2019) 720p HDTC x264 1GB-XpoZ
2019-05-15 21:04 - 2019-05-15 21:04 - 000040425 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\avengersinfinitywar2018720pblurayx264ytsag-greek-130924.zip
2019-05-15 20:23 - 2019-05-15 21:06 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Avengers Infinity War (2018) [BluRay] [720p] [YTS.AM]
2019-05-15 02:41 - 2019-05-15 02:41 - 000046776 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\ant-man-and-the-wasp-2018-webrip-720p-yts-am-greek-136117.zip
2019-05-15 02:40 - 2019-05-15 02:40 - 000043585 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\ant-manandthewasp2018720pblurayx264ytsag-greek-134875.zip
2019-05-15 01:35 - 2019-05-15 02:44 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Ant-Man And The Wasp (2018) [BluRay] [720p] [YTS.AM]
2019-05-14 23:40 - 2019-05-14 23:41 - 000041083 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\thorragnarok2017720pblurayx264ytsag-greek-120125.zip
2019-05-14 23:40 - 2019-05-14 23:40 - 000145949 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\thorragnarok2017720pblurayx264-ytsag-greek-120055.zip
2019-05-14 23:07 - 2019-05-14 23:42 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\www.torrenting.com  - Thor.Ragnarok.2017.HDRip.XviD.AC3-EVO
2019-05-14 01:43 - 2019-05-14 01:43 - 000052764 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\spider-man-homecoming-2017-1080p-bluray-x264-yts-ag-dvd.zip
2019-05-14 00:01 - 2019-05-14 01:45 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Spider-Man.Homecoming.2017.720p.BluRay.x264-NeZu
2019-05-13 02:46 - 2019-05-13 02:46 - 000042045 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\blackpanther2018720pblurayx264ytsag-greek-125885.zip
2019-05-13 00:44 - 2019-05-13 02:48 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Black Panther (2018) [720p] [YTS.ME]
2019-05-12 22:55 - 2019-05-12 22:55 - 000050426 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\captainamericacivilwar2016720pblurayx264ytsag-greek-94830.zip
2019-05-12 22:17 - 2019-05-12 22:56 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Captain.America.Civil.War.2016.720p.BRRip.x264.AAC-ETRG
2019-05-12 18:00 - 2019-05-12 18:00 - 000047215 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\ant-man-2015-720p-hdrip-x264-aac-jyk-for-all-webrips-hdrips-correct-sync-by-zeroone.rar
2019-05-12 17:58 - 2019-05-12 17:59 - 000047224 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\ant-man-2015-720p-brrip-x264-aac-etrg-brrip-xvid-ac3-evo-by-zeroone.rar
2019-05-12 17:54 - 2019-05-12 17:54 - 000050951 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\ant-man2015720phdripx264aac-jyk720pblurayx264ytsag-greek-128028.zip
2019-05-12 17:53 - 2019-05-12 17:53 - 000050951 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\ant-man-2015-720p-bluray-h264-aac-rarbg-greek-72460.zip
2019-05-12 17:26 - 2019-05-12 18:02 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Ant.Man.2015.720p.HDRip.x264.AAC-ETRG
2019-05-12 02:26 - 2019-05-12 02:26 - 000053311 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\avengers-age-of-ultron-greek-yify-65173.zip
2019-05-12 00:09 - 2019-05-12 02:27 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Avengers Age of Ultron (2015)
2019-05-11 23:14 - 2019-05-11 23:27 - 945870690 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\Captain Marvel 2019 English 720p HDTC  x264 900MB[MB].mkv
2019-05-11 23:01 - 2019-05-11 23:01 - 000046393 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\captain-america-the-winter-soldier-greek-yify-18954.zip
2019-05-11 16:04 - 2019-05-11 23:02 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Captain America The Winter Soldier (2014)
2019-05-11 03:27 - 2019-05-11 03:27 - 000031119 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\thor-the-dark-world-greek-yify-6168.zip
2019-05-11 03:05 - 2019-05-11 03:05 - 000074552 _____ (Insecure.Com LLC.) C:\windows\system32\Drivers\npcap.sys
2019-05-11 00:18 - 2019-05-11 03:29 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Thor The Dark World (2013)
2019-05-11 00:03 - 2019-05-11 00:03 - 000043259 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\iron-man-3-greek-yify-330.zip
2019-05-10 22:07 - 2019-05-11 00:05 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Iron Man 3 (2013)
2019-05-10 03:54 - 2019-05-10 03:54 - 000040980 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\the-avengers-greek-yify-43351.zip
2019-05-10 02:54 - 2019-05-10 03:55 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\The Avengers (2012)
2019-05-09 21:05 - 2019-05-09 21:05 - 000032132 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\thor-greek-yify-15842.zip
2019-05-09 20:57 - 2019-05-09 21:13 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Thor (2011)
2019-05-09 01:57 - 2019-05-09 01:57 - 000034656 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\iron-man-2-greek-yify-10575.zip
2019-05-09 01:55 - 2019-05-09 01:55 - 000035437 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\iron-man-2-greek-yify-23810.zip
2019-05-09 01:53 - 2019-05-09 01:53 - 000035090 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\iron-man-2-greek-yify-42783.zip
2019-05-09 01:27 - 2019-05-09 20:57 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Downloads\Iron Man 2 (2010) [1080p]
2019-05-09 01:23 - 2019-06-03 04:54 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Local\BitTorrentHelper
2019-05-05 17:19 - 2019-05-05 17:19 - 000177423 _____ C:\Users\ΚΩΣΤΑΣ\Downloads\Ergasia_NetLabs_B.pdf
2019-05-04 19:57 - 2019-05-04 19:57 - 000000168 _____ C:\VirtualAlertslog.txt
2019-05-04 19:57 - 2019-05-04 19:57 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\Documents\HpReg_Backup
2019-05-04 19:37 - 2019-05-04 19:37 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\HPPSDr
2019-05-04 19:36 - 2019-05-04 20:11 - 000002016 _____ C:\Users\Public\Desktop\HP Print and Scan Doctor.lnk

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-06-03 19:00 - 2017-08-30 23:23 - 000004168 _____ C:\windows\System32\Tasks\Avast Emergency Update
2019-06-03 18:56 - 2014-03-27 15:44 - 000000000 __SHD C:\Users\ΚΩΣΤΑΣ\IntelGraphicsProfiles
2019-06-03 18:56 - 2013-08-06 00:09 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-06-03 18:54 - 2009-07-14 08:08 - 000000006 ____H C:\windows\Tasks\SA.DAT
2019-06-03 18:53 - 2019-02-19 21:50 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\IObit
2019-06-03 18:53 - 2019-02-19 21:50 - 000000000 ____D C:\ProgramData\IObit
2019-06-03 18:53 - 2019-02-19 21:50 - 000000000 ____D C:\Program Files (x86)\IObit
2019-06-03 18:49 - 2009-07-14 07:45 - 000027760 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-06-03 18:49 - 2009-07-14 07:45 - 000027760 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-06-03 18:36 - 2016-11-30 20:05 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\LocalLow\Mozilla
2019-06-03 17:55 - 2014-01-14 17:06 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-06-03 05:23 - 2015-09-05 01:46 - 000001078 _____ C:\Users\Public\Desktop\VLC media player.lnk
2019-06-03 05:23 - 2014-01-25 18:42 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-03 05:23 - 2014-01-25 18:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-03 05:23 - 2013-08-05 16:25 - 000000000 ____D C:\Program Files\WinRAR
2019-06-03 05:22 - 2014-01-10 23:12 - 000842296 _____ (Adobe) C:\windows\SysWOW64\FlashPlayerApp.exe
2019-06-03 05:22 - 2014-01-10 23:12 - 000175160 _____ (Adobe) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-06-03 05:21 - 2012-07-27 12:40 - 000000000 ____D C:\windows\SysWOW64\Macromed
2019-06-03 05:21 - 2012-07-27 12:40 - 000000000 ____D C:\windows\system32\Macromed
2019-06-03 05:19 - 2018-10-03 16:36 - 000002794 _____ C:\windows\System32\Tasks\CCleanerSkipUAC
2019-06-03 05:19 - 2018-10-03 16:36 - 000000790 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-06-03 05:07 - 2014-01-25 18:19 - 000385880 _____ (AVAST Software) C:\windows\system32\Drivers\aswVmm.sys
2019-06-03 05:05 - 2019-03-02 02:59 - 000279120 _____ (AVAST Software) C:\windows\system32\Drivers\aswHdsKe.sys
2019-06-03 05:05 - 2019-01-21 04:07 - 000262496 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsdriver.sys
2019-06-03 05:05 - 2019-01-20 09:35 - 000037104 _____ (AVAST Software) C:\windows\system32\Drivers\aswArDisk.sys
2019-06-03 05:05 - 2019-01-20 09:34 - 000205848 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsh.sys
2019-06-03 05:05 - 2019-01-20 09:34 - 000061472 _____ (AVAST Software) C:\windows\system32\Drivers\aswbuniv.sys
2019-06-03 05:05 - 2018-12-01 01:49 - 000042288 _____ (AVAST Software) C:\windows\system32\Drivers\aswKbd.sys
2019-06-03 05:05 - 2017-12-11 23:06 - 000207448 _____ (AVAST Software) C:\windows\system32\Drivers\aswArPot.sys
2019-06-03 05:05 - 2014-01-25 18:19 - 001030784 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2019-06-03 05:05 - 2014-01-25 18:19 - 000477584 _____ (AVAST Software) C:\windows\system32\Drivers\aswSP.sys
2019-06-03 05:05 - 2014-01-25 18:19 - 000225096 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2019-06-03 05:05 - 2014-01-25 18:19 - 000087944 _____ (AVAST Software) C:\windows\system32\Drivers\aswRvrt.sys
2019-06-03 05:05 - 2014-01-25 18:18 - 000167872 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2019-06-03 05:05 - 2014-01-25 18:18 - 000112312 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2019-06-03 04:58 - 2013-08-20 15:27 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\vlc
2019-06-03 04:57 - 2013-08-06 14:28 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\uTorrent
2019-06-03 04:31 - 2016-01-06 15:52 - 000004857 _____ C:\Users\ΚΩΣΤΑΣ\Desktop\WNetWatcher.cfg
2019-05-31 20:06 - 2019-01-16 23:56 - 000003238 _____ C:\windows\System32\Tasks\{2759073D-BDB4-4C89-97AA-551D2C83B3C3}
2019-05-31 20:06 - 2015-12-03 17:03 - 000000000 ____D C:\windows\System32\Tasks\AVAST Software
2019-05-31 20:06 - 2015-07-27 20:10 - 000004476 _____ C:\windows\System32\Tasks\Adobe Acrobat Update Task
2019-05-31 20:06 - 2013-08-05 15:55 - 000003618 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-05-31 20:06 - 2013-08-05 15:55 - 000003490 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-05-31 09:37 - 2019-04-01 23:35 - 000000000 ____D C:\Program Files\Wireshark
2019-05-31 09:37 - 2013-10-05 20:27 - 000000000 ____D C:\ProgramData\Package Cache
2019-05-31 08:40 - 2019-04-01 23:41 - 000000000 ____D C:\Program Files\Npcap
2019-05-31 08:37 - 2009-07-14 06:20 - 000000000 ____D C:\windows\inf
2019-05-31 07:56 - 2013-08-05 15:44 - 000113568 _____ C:\Users\ΚΩΣΤΑΣ\AppData\Local\GDIPFONTCACHEV1.DAT
2019-05-28 20:57 - 2016-10-30 21:27 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-05-28 20:45 - 2013-05-02 12:59 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2019-05-28 02:13 - 2009-07-14 08:08 - 000032604 _____ C:\windows\Tasks\SCHEDLGU.TXT
2019-05-25 14:19 - 2009-07-14 07:45 - 000447432 _____ C:\windows\system32\FNTCACHE.DAT
2019-05-23 21:37 - 2013-08-06 00:10 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\TeamViewer
2019-05-23 20:03 - 2013-08-05 15:56 - 000002238 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-05-23 20:03 - 2013-08-05 15:56 - 000002197 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-05-20 23:35 - 2011-02-14 15:49 - 000748672 _____ C:\windows\system32\perfh008.dat
2019-05-20 23:35 - 2011-02-14 15:49 - 000138174 _____ C:\windows\system32\perfc008.dat
2019-05-20 23:35 - 2009-07-14 08:13 - 001619244 _____ C:\windows\system32\PerfStringBackup.INI
2019-05-17 20:50 - 2009-07-14 06:20 - 000000000 ____D C:\windows\rescache
2019-05-17 17:39 - 2013-08-26 21:45 - 000000000 ___RD C:\Users\ΚΩΣΤΑΣ\Virtual Machines
2019-05-17 04:43 - 2009-07-14 06:20 - 000000000 ____D C:\windows\SysWOW64\Dism
2019-05-17 04:43 - 2009-07-14 06:20 - 000000000 ____D C:\windows\system32\Dism
2019-05-17 04:37 - 2013-08-05 15:42 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ
2019-05-17 00:38 - 2014-01-10 23:43 - 000000000 ____D C:\Program Files\Waterfox
2019-05-16 20:57 - 2013-08-06 13:39 - 000000000 ____D C:\windows\system32\MRT
2019-05-16 20:47 - 2013-08-06 13:14 - 132445408 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2019-05-16 20:43 - 2012-07-27 12:05 - 001592560 _____ C:\windows\SysWOW64\PerfStringBackup.INI
2019-05-14 23:37 - 2015-11-06 20:47 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-05-11 22:57 - 2016-11-14 21:04 - 000000000 ____D C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\HpUpdate
2019-05-04 19:37 - 2016-11-14 21:04 - 000000000 ____D C:\ProgramData\HP
2019-05-04 19:36 - 2013-11-19 19:32 - 000000000 ____D C:\Program Files (x86)\Hp

==================== Files in the root of some directories =======

2013-12-14 15:55 - 2013-12-14 15:55 - 000004366 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\bfldb.csv
2013-12-14 15:55 - 2013-12-14 15:55 - 002592768 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\bfldb.dll
2013-12-14 15:55 - 2013-12-14 15:55 - 002248704 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\bfldongle.dll
2013-12-14 15:55 - 2013-12-14 15:55 - 002265088 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\bfluart.dll
2013-12-14 15:55 - 2013-12-14 15:55 - 002416640 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\bflusb.dll
2014-02-08 01:06 - 2014-02-08 01:06 - 000000130 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\Camdata.ini
2014-02-08 01:06 - 2014-02-08 01:06 - 000000408 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\CamLayout.ini
2014-02-08 01:06 - 2014-02-08 01:06 - 000000408 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\CamShapes.ini
2014-02-08 01:01 - 2014-02-08 01:06 - 000004547 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\CamStudio.cfg
2013-10-05 13:54 - 2013-10-05 13:54 - 000000235 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\devices.xml
2013-10-05 13:54 - 2013-10-05 13:54 - 000000012 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\settings.xml
2014-02-08 00:46 - 2014-02-08 00:46 - 000000096 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Roaming\version2.xml
2017-03-14 03:46 - 2017-03-14 03:46 - 000000000 ____H () C:\Users\ΚΩΣΤΑΣ\AppData\Local\BIT649F.tmp
2015-01-18 12:37 - 2015-01-18 12:37 - 000011636 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Local\CleanupUninstall.txt
2013-08-31 22:39 - 2013-09-01 00:01 - 001065984 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Local\file__0.localstorage
2016-12-03 16:43 - 2016-12-03 16:47 - 000000600 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Local\PUTTY.RND
2013-12-10 18:57 - 2018-12-13 19:15 - 000007605 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Local\resmon.resmoncfg
2014-09-29 17:26 - 2014-09-29 17:27 - 000016441 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Local\Tempscript.scar
2014-11-03 22:55 - 2014-11-03 22:55 - 000000003 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Local\updater.log
2014-11-03 22:55 - 2014-11-05 01:20 - 000000059 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Local\UserProducts.xml
2017-03-14 03:45 - 2017-03-14 03:45 - 000000000 _____ () C:\Users\ΚΩΣΤΑΣ\AppData\Local\{09431DAE-3F96-4286-AA18-5E17BD8998A8}

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2019-06-02 06:20
==================== End of FRST.txt ============================

mbam_scan.txt AdwCleaner[C00].txt AdwCleaner[S00].txt Addition.txt

Link to post
Share on other sites

Hi,

Please submit the file in bold to VirusTotal 
Task: {0CE38AB7-66A3-4DC7-8DE3-E212E0F1F791} - System32\Tasks\{3A852024-F994-411B-8F43-CBB0AE8B5538} => C:\Users\?OS??S\Desktop\Broken Bot\BroKen.exe

Follow the instructions on this page.
https://www.virustotal.com/gui/home/upload

If you did not installed this file and is reported as bad the n add the following lines to the Fixlist.txt 
Task: {0CE38AB7-66A3-4DC7-8DE3-E212E0F1F791} - System32\Tasks\{3A852024-F994-411B-8F43-CBB0AE8B5538} => C:\Users\?OS??S\Desktop\Broken Bot\BroKen.exe
C:\Users\?OS??S\Desktop\Broken Bot

Save the file before running the Fix.
===

Please download the attached Fixlist.txt file to  the same folder where the Farbar tool is running from.
The location is listed in the 3rd line of the FRST.txt log you have submitted.

Run FRST and click Fix only once and wait.

The Computer will restart when the fix is completed.

It will create a log (Fixlog.txt) please post it to your reply.
===

Please post the Fixlog.txt and let me know what problem persists.

fixlist.txt

Link to post
Share on other sites

Thank you for your reply. 

I'm afraid the path given is not valid, there is no such folder on my desktop, even with an elevated command prompt, the folder is not there to be accessed. I don't even remember such a folder. 

Should I run the fix and add the line with the non-existent, as it seems, path, or without it or I do something else? 

I will wait for further instructions. 

Thanks for your time. 

Link to post
Share on other sites

This is the fixlog's content, but i see that paths containing the username are like ?OS??S and im unsure if the app can read the path

Fix result of Farbar Recovery Scan Tool (x64) Version: 05-06-2019
Ran by ΚΩΣΤΑΣ (05-06-2019 19:10:11) Run:1
Running from C:\Users\ΚΩΣΤΑΣ\Desktop\frst
Loaded Profiles: ΚΩΣΤΑΣ (Available Profiles: ΚΩΣΤΑΣ)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
EmptyTemp:
CloseProcesses:
HKLM-x32\...\Run: [] => [X]
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {590CFCBB-454A-4E43-BFF7-ADF93A23541F} - \WPD\SqmUpload_S-1-5-21-3792820029-2752110351-4122056359-500 -> No File <==== ATTENTION
Task: {973A3C0E-86EA-4A23-BA7A-23256B4DCC93} - System32\Tasks\{2759073D-BDB4-4C89-97AA-551D2C83B3C3} => C:\windows\system32\pcalua.exe -a C:\Users\F7C8~1\AppData\Local\Temp\jre-8u201-windows-au.exe -d C:\windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== ATTENTION
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} -  No File
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>
S3 EagleX64; \??\C:\windows\system32\drivers\EagleX64.sys [X]
S2 iocbios2; \??\C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [X]
S3 MFE_RR; \??\C:\Users\F7C8~1\AppData\Local\Temp\mfe_rr.sys [X] <==== ATTENTION
S3 netr28ux; system32\DRIVERS\netr28ux.sys [X]
U4 npc?ap_wifi; no ImagePath
S3 SA?NDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2015.SP2b\WNt600x64\Sandra.sys [X]
S2 VBo??xAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X]
S3 vm?ci; \SystemRoot\system32\DRIVERS\vmci.sys [X]
S3 VM??netAdapter; system32\DRIVERS\vmnetadapter.sys [X]
S3 X6v?a014; \??\C:\windows\SysWOW64\Drivers\X6va014 [X]
CustomCLSID: HKU\S-1-5-21-3792820029-2752110351-4122056359-1000_Classes\CLSID\{66B6B493-6055-4572-8FC1-A0FA86D63545}\InprocServer32 -> no filepath
CustomCLSID: HKU\S-1-5-21-3792820029-2752110351-4122056359-1000_Classes\CLSID\{8D083C4F-F8B1-42ED-851B-51017CF4C161}\InprocServer32 -> no filepath
ContextMenuHandlers4: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} =>  -> No File
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers6: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} =>  -> No File
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} =>  -> No File
FirewallRules: [TCP Query User{7E4EFB81-5333-4DC4-8E6A-332DB2E2F8A9}C:\users\??stas\desktop\call of duty 4 modern warfare\iw3mp.exe] => (Allow) C:\users\??stas\desktop\call of duty 4 modern warfare\iw3mp.exe No File
FirewallRules: [UDP Query User{E4C41852-547C-47A0-A2E8-BDD839BD76BB}C:\users\??stas\desktop\call of duty 4 modern warfare\iw3mp.exe] => (Allow) C:\users\??stas\desktop\call of duty 4 modern warfare\iw3mp.exe No File
FirewallRules: [{EDE15021-D172-4D2D-8EAD-98256550B4C8}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{4471F5B7-832A-4451-8570-A74878589DA8}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [TCP Query User{4D3DBE41-8C7F-43C5-899B-E0CB71BD9DB2}C:\users\??stas\desktop\seabot decoder\seabot decoder.exe] => (Allow) C:\users\??stas\desktop\seabot decoder\seabot decoder.exe No File
FirewallRules: [UDP Query User{E963E5B6-18BF-433F-B270-F1A214169509}C:\users\??stas\desktop\seabot decoder\seabot decoder.exe] => (Allow) C:\users\??stas\desktop\seabot decoder\seabot decoder.exe No File
FirewallRules: [{C31262D3-BC3B-40CC-AFBE-526C617E6DAA}] => (Block) C:\users\??stas\desktop\seabot decoder\seabot decoder.exe No File
FirewallRules: [{488F7D90-C2CE-4F01-BA11-1B3769E3FBBB}] => (Block) C:\users\??stas\desktop\seabot decoder\seabot decoder.exe No File
Task: {0CE38AB7-66A3-4DC7-8DE3-E212E0F1F791} - System32\Tasks\{3A852024-F994-411B-8F43-CBB0AE8B5538} => C:\Users\?OS??S\Desktop\Broken Bot\BroKen.exe
C:\Users\?OS??S\Desktop\Broken Bot

*****************

Restore point was successfully created.
Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{590CFCBB-454A-4E43-BFF7-ADF93A23541F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{590CFCBB-454A-4E43-BFF7-ADF93A23541F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WPD\SqmUpload_S-1-5-21-3792820029-2752110351-4122056359-500" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{973A3C0E-86EA-4A23-BA7A-23256B4DCC93}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{973A3C0E-86EA-4A23-BA7A-23256B4DCC93}" => removed successfully
C:\windows\System32\Tasks\{2759073D-BDB4-4C89-97AA-551D2C83B3C3} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2759073D-BDB4-4C89-97AA-551D2C83B3C3}" => removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\Software\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => not found
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => not found
"HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => removed successfully
HKLM\Software\Classes\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => not found
HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8 => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => removed successfully
HKLM\System\CurrentControlSet\Services\EagleX64 => removed successfully
EagleX64 => service removed successfully
HKLM\System\CurrentControlSet\Services\iocbios2 => removed successfully
iocbios2 => service removed successfully
HKLM\System\CurrentControlSet\Services\MFE_RR => removed successfully
MFE_RR => service removed successfully
HKLM\System\CurrentControlSet\Services\netr28ux => removed successfully
netr28ux => service removed successfully
npc?ap_wifi => service not found.
SA?NDRA => service not found.
VBo??xAswDrv => service not found.
vm?ci => service not found.
VM??netAdapter => service not found.
X6v?a014 => service not found.
HKU\S-1-5-21-3792820029-2752110351-4122056359-1000_Classes\CLSID\{66B6B493-6055-4572-8FC1-A0FA86D63545} => removed successfully
HKU\S-1-5-21-3792820029-2752110351-4122056359-1000_Classes\CLSID\{8D083C4F-F8B1-42ED-851B-51017CF4C161} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MagicISO => removed successfully
HKLM\Software\Classes\CLSID\{DB85C504-C730-49DD-BEC1-7B39C6103B7A} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PowerISO => removed successfully
HKLM\Software\Classes\CLSID\{967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\MagicISO => removed successfully
HKLM\Software\Classes\CLSID\{DB85C504-C730-49DD-BEC1-7B39C6103B7A} => not found
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PowerISO => removed successfully
HKLM\Software\Classes\CLSID\{967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7E4EFB81-5333-4DC4-8E6A-332DB2E2F8A9}C:\users\??stas\desktop\call of duty 4 modern warfare\iw3mp.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E4C41852-547C-47A0-A2E8-BDD839BD76BB}C:\users\??stas\desktop\call of duty 4 modern warfare\iw3mp.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EDE15021-D172-4D2D-8EAD-98256550B4C8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4471F5B7-832A-4451-8570-A74878589DA8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{4D3DBE41-8C7F-43C5-899B-E0CB71BD9DB2}C:\users\??stas\desktop\seabot decoder\seabot decoder.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E963E5B6-18BF-433F-B270-F1A214169509}C:\users\??stas\desktop\seabot decoder\seabot decoder.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C31262D3-BC3B-40CC-AFBE-526C617E6DAA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{488F7D90-C2CE-4F01-BA11-1B3769E3FBBB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0CE38AB7-66A3-4DC7-8DE3-E212E0F1F791}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0CE38AB7-66A3-4DC7-8DE3-E212E0F1F791}" => removed successfully
C:\windows\System32\Tasks\{3A852024-F994-411B-8F43-CBB0AE8B5538} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3A852024-F994-411B-8F43-CBB0AE8B5538}" => removed successfully
"C:\Users\?OS??S\Desktop\Broken Bot" => not found

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 14942501 B
Java, Flash, Steam htmlcache => 371047526 B
Windows/system/drivers => 263818637 B
Edge => 0 B
Chrome => 10455623 B
Firefox => 14803346 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 84271 B
systemprofile32 => 1132534 B
LocalService => 66228 B
NetworkService => 66228 B
ΚΩΣΤΑΣ => 336803971 B

RecycleBin => 173355141 B
EmptyTemp: => 1.1 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 19:12:14 ====

Link to post
Share on other sites

Thanks for your answer.

I suspect that other entries in the previous fixlog might state "not found" because the username is in greek and something fails when encoding.

Just a fyi, actually after i ran the disguised powershell script, no problem occured, but i want to be sure that there is no file to steal and send my information to a remote server.

Is there anything else i can do to be sure that i'm clean?

Thanks in advance.

This is the new fixlog:

Fix result of Farbar Recovery Scan Tool (x64) Version: 05-06-2019
Ran by ΚΩΣΤΑΣ (06-06-2019 19:10:05) Run:2
Running from C:\Users\ΚΩΣΤΑΣ\Desktop\frst
Loaded Profiles: ΚΩΣΤΑΣ (Available Profiles: ΚΩΣΤΑΣ)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
Task: {0CE38AB7-66A3-4DC7-8DE3-E212E0F1F791} - System32\Tasks\{3A852024-F994-411B-8F43-CBB0AE8B5538} => C:\Users\ΚΩΣΤΑΣ\Desktop\Broken Bot\BroKen.exe
C:\Users\ΚΩΣΤΑΣ\Desktop\Broken Bot

*****************

Restore point was successfully created.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0CE38AB7-66A3-4DC7-8DE3-E212E0F1F791}" => not found
"C:\windows\System32\Tasks\{3A852024-F994-411B-8F43-CBB0AE8B5538}" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3A852024-F994-411B-8F43-CBB0AE8B5538}" => not found
"C:\Users\ΚΩΣΤΑΣ\Desktop\Broken Bot" => not found

==== End of Fixlog 19:10:22 ====

 

Link to post
Share on other sites

Please download Sophos Virus Removal Tool and save it to your computer's Desktop.

  • Right-click the icon and select Run as administrator.
  • Click Yes to accept any security warnings that may appear.
  • Click the Next button.
  • Select 'I accept the terms in the license agreement', then click Next twice.
  • Click the Install button and wait until the installation is complete.
  • Click the Finish button. The tool created a shortcut icon on the Desktop of your computer.
  • Now, double-click the Sophos Virus Removal Tool shortcut icon to run the tool.
  • Click Yes to accept any security warnings that may appear.
  • After it updates and a "Start Scanning" button appears in the lower right:
    • Disconnect from the Internet or physically unplug your Internet cable connection.
    • Close all open programs, scheduling/updating tasks and background processes that might activate during the scan including the screensaver.
    • Temporarily disable your anti-virus and real-time anti-spyware protection.



Windows Vista and above:
C:\ProgramData\Sophos\Sophos Virus Removal Tool\Logs\SophosVirusRemovalTool.log
 
Please post the contents of the log in your next reply and note any errors encountered.
===

Link to post
Share on other sites

It came with "no threats were detected"

This is the log:

2019-06-07 17:39:48.823    Sophos Virus Removal Tool version 2.7.0
2019-06-07 17:39:48.823    Copyright (c) 2009-2018 Sophos Limited. All rights reserved.

2019-06-07 17:39:48.823    This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2019-06-07 17:39:48.823    Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2019-06-07 17:39:48.823    Checking for updates...
2019-06-07 17:39:50.584    Update progress: proxy server not available
2019-06-07 17:39:59.884    Option all = no
2019-06-07 17:39:59.884    Option recurse = yes
2019-06-07 17:39:59.884    Option archive = no
2019-06-07 17:39:59.884    Option service = yes
2019-06-07 17:39:59.884    Option confirm = yes
2019-06-07 17:39:59.884    Option sxl = yes
2019-06-07 17:39:59.884    Option max-data-age = 35
2019-06-07 17:39:59.884    Option vdl-logging = yes
2019-06-07 17:39:59.894    Customer ID:    094260ca9b3af99f9d4a3909fc47a743
2019-06-07 17:39:59.894    Machine ID:    edc733f183ee493486e29af8828a6191
2019-06-07 17:39:59.894    Component SVRTcli.exe version 2.7.0
2019-06-07 17:39:59.894    Component control.dll version 2.7.0
2019-06-07 17:39:59.894    Component SVRTservice.exe version 2.7.0
2019-06-07 17:39:59.894    Component engine\osdp.dll version 1.44.1.2443
2019-06-07 17:39:59.894    Component engine\veex.dll version 3.75.0.2443
2019-06-07 17:39:59.894    Component engine\savi.dll version 9.0.13.2443
2019-06-07 17:39:59.894    Component rkdisk.dll version 1.5.33.1
2019-06-07 17:39:59.894    Version info:    Product version    2.7.0
2019-06-07 17:39:59.894    Version info:    Detection engine    3.75.0
2019-06-07 17:39:59.894    Version info:    Detection data    5.61
2019-06-07 17:39:59.894    Version info:    Build date    12/3/2019
2019-06-07 17:39:59.894    Version info:    Data files added    453
2019-06-07 17:39:59.894    Version info:    Last successful update    (not yet updated)
2019-06-07 17:40:06.164    Downloading updates...
2019-06-07 17:40:06.164    Update progress: [I96736] sdds.svrt_v1.10: adding primary package C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED baseVersion=1
2019-06-07 17:40:06.164    Update progress: [I95020] sdds.svrt_v1.10: looking for packages included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2019-06-07 17:40:06.164    Update progress: [I22529] sdds.svrt_v1.10: looking for supplements included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2019-06-07 17:40:06.164    Update progress: [V81533] SU::createCachedPackageSource creating cached package source for http://d2.sophosupd.com/update-B: url=SOPHOS
2019-06-07 17:40:06.164    Update progress: [V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
2019-06-07 17:40:06.164    Update progress: [V81533] SU::createCachedPackageSource creating package source to download customer file
2019-06-07 17:40:06.164    Update progress: [V81533] SU::createCachedPackageSource creating cached package source
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: catalogue/sdds.data0910.xml
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: catalogue/sdds.data0910.xml: 218 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 24a2a39cede8960c1aa9e38253d102fex000.xml: 4465 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 24a2a39cede8960c1aa9e38253d102fex000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 040efd8733da718b80b143a07af298f8x000.xml: 8673 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 040efd8733da718b80b143a07af298f8x000.xml: 63 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE567/5d387c9bc4ca438eee2069a3b4da986dx000.xml: 590 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE567/5d387c9bc4ca438eee2069a3b4da986dx000.xml: 124 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: SXLSUP/9658bb75e4104455fe802645d41af3dax000.xml: 598 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: SXLSUP/9658bb75e4104455fe802645d41af3dax000.xml: 203 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE560/0167d8cf884d717c1779abc52d17cb71x000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE560/0167d8cf884d717c1779abc52d17cb71x000.xml: 125 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE557/13239828b0b1bf83de4692d775629148x000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE557/13239828b0b1bf83de4692d775629148x000.xml: 94 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE554/1883db40022af8cbc8fd680f1c4185ddx000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE554/1883db40022af8cbc8fd680f1c4185ddx000.xml: 124 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE565/1ce171d7f5b9565065bf17a44774f0a1x000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE565/1ce171d7f5b9565065bf17a44774f0a1x000.xml: 125 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE550/1e04bd4f6cc5b189217b416d0cacd23ax000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE550/1e04bd4f6cc5b189217b416d0cacd23ax000.xml: 219 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE553/236bb4ca0d2561a8e59124e4a65837c9x000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE553/236bb4ca0d2561a8e59124e4a65837c9x000.xml: 249 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE558/3a1dfb2d23615d09497b1db3305e32dax000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE558/3a1dfb2d23615d09497b1db3305e32dax000.xml: 94 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE552/49e28e1f82adf19b43a3acfb11c919bax000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE552/49e28e1f82adf19b43a3acfb11c919bax000.xml: 249 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE551/69eda22632d06ac2df0c576c5946841fx000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE551/69eda22632d06ac2df0c576c5946841fx000.xml: 203 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE561/6c1dd3a5196572a9bb41e9156eb30577x000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE561/6c1dd3a5196572a9bb41e9156eb30577x000.xml: 125 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE555/9f59846a02fa77254f4813df557d969bx000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE555/9f59846a02fa77254f4813df557d969bx000.xml: 156 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE559/bf3b91a4649162f3b240ef9f3d9d7c65x000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE559/bf3b91a4649162f3b240ef9f3d9d7c65x000.xml: 109 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE563/cc18c9c4f72ead6c0bb51284002291cax000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE563/cc18c9c4f72ead6c0bb51284002291cax000.xml: 219 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE556/cd085cdff0109eb84b9c16d718521445x000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE556/cd085cdff0109eb84b9c16d718521445x000.xml: 124 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE562/d7da1c8549bd88228f71a41e440c4772x000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE562/d7da1c8549bd88228f71a41e440c4772x000.xml: 109 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE564/fc86ecada014384667e0ec752820eec7x000.xml: 601 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE564/fc86ecada014384667e0ec752820eec7x000.xml: 109 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE566/33e65543d2311c3ab14899831490d684x000.xml: 6944 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE566/33e65543d2311c3ab14899831490d684x000.xml: 16 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: cc4cc36498680327b039e06779ebfd8ax000.xml: 615 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: cc4cc36498680327b039e06779ebfd8ax000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 0d88b8ed0f67aeec3147dbe83b9b09ebx000.xml: 320 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 0d88b8ed0f67aeec3147dbe83b9b09ebx000.xml: 62 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 0c458d84352f35f2b272f8b87e9f9576x000.xml: 753 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 0c458d84352f35f2b272f8b87e9f9576x000.xml: 593 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5c7f0eec8cb5f488397216dcfb7e98e8x000.xml: 331 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5c7f0eec8cb5f488397216dcfb7e98e8x000.xml: 218 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5c518d5be60608ac6bd5325ef02b8a7ex000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5c518d5be60608ac6bd5325ef02b8a7ex000.xml: 94 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 211a9b2ae569945c9fe3e1ca74a2c644x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 211a9b2ae569945c9fe3e1ca74a2c644x000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 24be0fc59a0372038b7fbb3af3e19d21x000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 24be0fc59a0372038b7fbb3af3e19d21x000.xml: 250 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e4ccc0244dafdc3a404f8bb420c2a165x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e4ccc0244dafdc3a404f8bb420c2a165x000.xml: 93 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 1b5385d6d93fc43e87fc7d723b90aab9x000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 1b5385d6d93fc43e87fc7d723b90aab9x000.xml: 109 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 44df079c17c27192400c73a86d16785fx000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 44df079c17c27192400c73a86d16785fx000.xml: 297 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 32f2c03993b8d3414be5d9d714792de3x000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 32f2c03993b8d3414be5d9d714792de3x000.xml: 125 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 13ff2225063d88f220fa6841f37c8371x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 13ff2225063d88f220fa6841f37c8371x000.xml: 93 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 9e72c50dc4507dfba988367b178eda4ax000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 9e72c50dc4507dfba988367b178eda4ax000.xml: 141 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e0a2f9d4b770945eb817f82acf76dc76x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e0a2f9d4b770945eb817f82acf76dc76x000.xml: 93 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4c204ac4b99df718739c309d0f4ab76bx000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4c204ac4b99df718739c309d0f4ab76bx000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 46e9b0f78df0d20502af43f391ffc506x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 46e9b0f78df0d20502af43f391ffc506x000.xml: 94 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7fe1eebcf235024389043a634ef20366x000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7fe1eebcf235024389043a634ef20366x000.xml: 93 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 9ec625dcb3a242e1fece93286451a352x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 9ec625dcb3a242e1fece93286451a352x000.xml: 188 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: eaba289b0a9e187ed96137c42bf85645x000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: eaba289b0a9e187ed96137c42bf85645x000.xml: 93 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e4e261308128b5b42bf54c232030ea27x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e4e261308128b5b42bf54c232030ea27x000.xml: 125 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d9072ffa19fc0ff71a828d7ca2bc7828x000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d9072ffa19fc0ff71a828d7ca2bc7828x000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 1d98051334b3ea8a0b042e0bb99bc283x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 1d98051334b3ea8a0b042e0bb99bc283x000.xml: 187 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: da92f17acb85d0a5bdb85ace75b37afcx000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: da92f17acb85d0a5bdb85ace75b37afcx000.xml: 94 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d2bd1911114961b92c55d33d6faa1a9ax000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d2bd1911114961b92c55d33d6faa1a9ax000.xml: 109 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 65b7509646b00610cf1732a01f49a46fx000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 65b7509646b00610cf1732a01f49a46fx000.xml: 125 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f6ec5061dd7e77923111541727311aa2x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f6ec5061dd7e77923111541727311aa2x000.xml: 140 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4f4a648042a613c869eddf17703b772ax000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4f4a648042a613c869eddf17703b772ax000.xml: 141 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d86540a0b23bc7236508f5b443729232x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d86540a0b23bc7236508f5b443729232x000.xml: 109 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 20d640fb5ddff12944b1b5c3e34a4ca7x000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 20d640fb5ddff12944b1b5c3e34a4ca7x000.xml: 140 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 2ee4a92ec19fb16304c745c83ce570dbx000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 2ee4a92ec19fb16304c745c83ce570dbx000.xml: 109 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 59c292069cc0fcbe6fbcf8d4289432a4x000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 59c292069cc0fcbe6fbcf8d4289432a4x000.xml: 281 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: ace8e7b646829af68be5b32bbcc82570x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: ace8e7b646829af68be5b32bbcc82570x000.xml: 172 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7a3833618c1adde4d2e20d2de6f3fa16x000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7a3833618c1adde4d2e20d2de6f3fa16x000.xml: 62 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 9368403163321ca023d9919cfc51be64x000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 9368403163321ca023d9919cfc51be64x000.xml: 62 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 2c9f2b4a3bd9b8aa278af484075cffbbx000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 2c9f2b4a3bd9b8aa278af484075cffbbx000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 542303d59e10e8dcd6b025d5e810d68dx000.xml: 338 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 542303d59e10e8dcd6b025d5e810d68dx000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 594ba543f4dc5e05c3724386ffdfcea3x000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 594ba543f4dc5e05c3724386ffdfcea3x000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c1939ceacb06dd1e766a94e547bb53d2x000.xml: 320 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c1939ceacb06dd1e766a94e547bb53d2x000.xml: 109 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 9a56c54c94579b58a63bed5912a88ad4x000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 9a56c54c94579b58a63bed5912a88ad4x000.xml: 94 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 693d2bd866bc2383f65818534f731a4ax000.xml: 332 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 693d2bd866bc2383f65818534f731a4ax000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a54269aab7201fdcac8dceb898c19c78x000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a54269aab7201fdcac8dceb898c19c78x000.xml: 62 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: be554c1758906c0e2ac5ebd48dadff53x000.xml: 332 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: be554c1758906c0e2ac5ebd48dadff53x000.xml: 156 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 64d7278616df3eb7fb1dd18c4d043259x000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 64d7278616df3eb7fb1dd18c4d043259x000.xml: 31 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: cce1831d34544d43399669ebd66bf7fdx000.xml: 332 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: cce1831d34544d43399669ebd66bf7fdx000.xml: 16 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 17868953af074d14cf9181ad9cac215bx000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 17868953af074d14cf9181ad9cac215bx000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a6c0d9b44b39bbea622d87b66bb15ae7x000.xml: 333 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a6c0d9b44b39bbea622d87b66bb15ae7x000.xml: 47 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: dcc6483498aef08cacf725a05267f994x000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: dcc6483498aef08cacf725a05267f994x000.xml: 31 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 99f5442f7bae6abf7d91f78a1a5b32c2x000.xml: 333 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 99f5442f7bae6abf7d91f78a1a5b32c2x000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 808403d185ce54df6c695b4b345ed1b2x000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 808403d185ce54df6c695b4b345ed1b2x000.xml: 47 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f2dfa72175e1a2ea4c29db22a5da3693x000.xml: 333 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f2dfa72175e1a2ea4c29db22a5da3693x000.xml: 31 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e2503aa4c05fd5182173fb651a21d68ex000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e2503aa4c05fd5182173fb651a21d68ex000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c2069b7f89595e5aa7bf0a15a70529d3x000.xml: 333 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c2069b7f89595e5aa7bf0a15a70529d3x000.xml: 15 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 11bee95d774651a4549d1bc4e011f94dx000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 11bee95d774651a4549d1bc4e011f94dx000.xml: 32 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 04e05c8e856b5a2488c73d9b0f087b8ex000.xml: 333 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 04e05c8e856b5a2488c73d9b0f087b8ex000.xml: 78 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: cd09c5477786d1eeb3a80a356e29eee7x000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: cd09c5477786d1eeb3a80a356e29eee7x000.xml: 124 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4cdf742f8ff860dfc2fbc0ab1f699049x000.xml: 333 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4cdf742f8ff860dfc2fbc0ab1f699049x000.xml: 47 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b453b4080acea4056c9a973232d04f56x000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b453b4080acea4056c9a973232d04f56x000.xml: 16 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 337bf9e04361ca88efb79ead4632f185x000.xml: 335 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 337bf9e04361ca88efb79ead4632f185x000.xml: 93 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 35f9330b0b40ef946c930c9f26ed1a5cx000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 35f9330b0b40ef946c930c9f26ed1a5cx000.xml: 32 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 8f422683e8fca726d075a2e4e8798275x000.xml: 335 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 8f422683e8fca726d075a2e4e8798275x000.xml: 15 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 0fea17bdea611b2babeabdf11fc181a0x000.xml: 877 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 0fea17bdea611b2babeabdf11fc181a0x000.xml: 16 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 8534dfbe63e9954b850f7e5921a80baex000.xml: 335 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 8534dfbe63e9954b850f7e5921a80baex000.xml: 31 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 73b341db210324287bf953115a0828eax000.xml: 1027 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 73b341db210324287bf953115a0828eax000.xml: 16 ms
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 19c599df6d6440eb3d1b8c2bfca257fex000.xml: 335 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 19c599df6d6440eb3d1b8c2bfca257fex000.xml: 31 ms
2019-06-07 17:40:06.164    Update progress: [I49502] sdds.data0910.xml: found supplement IDE562 LATEST path= baseVersion= [included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=]
2019-06-07 17:40:06.164    Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE562 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE562 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I49502] sdds.data0910.xml: found supplement IDE563 LATEST path= baseVersion= [included from product IDE562 LATEST path=]
2019-06-07 17:40:06.164    Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE563 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE563 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I49502] sdds.data0910.xml: found supplement IDE564 LATEST path= baseVersion= [included from product IDE563 LATEST path=]
2019-06-07 17:40:06.164    Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE564 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE564 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I49502] sdds.data0910.xml: found supplement IDE565 LATEST path= baseVersion= [included from product IDE564 LATEST path=]
2019-06-07 17:40:06.164    Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE565 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE565 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I49502] sdds.data0910.xml: found supplement IDE566 LATEST path= baseVersion= [included from product IDE565 LATEST path=]
2019-06-07 17:40:06.164    Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE566 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE566 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I49502] sdds.data0910.xml: found supplement IDE567 LATEST path= baseVersion= [included from product IDE566 LATEST path=]
2019-06-07 17:40:06.164    Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE567 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE567 LATEST path=
2019-06-07 17:40:06.164    Update progress: [I19463] Syncing product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2019-06-07 17:40:06.164    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a5f9a9701bd51a95af10cb0c395d29f9x000.xml: 81125 bytes
2019-06-07 17:40:06.164    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a5f9a9701bd51a95af10cb0c395d29f9x000.xml: 171 ms
2019-06-07 17:40:06.164    Update progress: [I19463] Product download size 218285021 bytes
2019-06-07 17:40:11.644    Update progress: [I19463] Syncing product IDE562 LATEST path=
2019-06-07 17:40:11.644    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 08740e2c8499d353c13edccb0101863ex000.xml: 26999 bytes
2019-06-07 17:40:11.644    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 08740e2c8499d353c13edccb0101863ex000.xml: 109 ms
2019-06-07 17:40:11.644    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: db1e75c3b72ac2a28fc257de64b1bb9dx000.xml: 397 bytes
2019-06-07 17:40:11.644    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: db1e75c3b72ac2a28fc257de64b1bb9dx000.xml: 359 ms
2019-06-07 17:40:11.644    Update progress: [I19463] Product download size 2221009 bytes
2019-06-07 17:40:11.974    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 6b4cf27b8b1b1885317e6fd17e5d3778x000.xml: 5786 bytes
2019-06-07 17:40:11.974    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 6b4cf27b8b1b1885317e6fd17e5d3778x000.xml: 78 ms
2019-06-07 17:40:12.134    Update progress: [I19463] Syncing product IDE563 LATEST path=
2019-06-07 17:40:12.134    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c2064317131ec2bb64217a8beb0a3dc5x000.xml: 27755 bytes
2019-06-07 17:40:12.134    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c2064317131ec2bb64217a8beb0a3dc5x000.xml: 140 ms
2019-06-07 17:40:12.134    Update progress: [I19463] Product download size 2258739 bytes
2019-06-07 17:40:14.224    Update progress: [I19463] Syncing product IDE564 LATEST path=
2019-06-07 17:40:14.224    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b31805dbf2a988abbc4a8c67da695c53x000.xml: 29226 bytes
2019-06-07 17:40:14.224    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b31805dbf2a988abbc4a8c67da695c53x000.xml: 343 ms
2019-06-07 17:40:14.224    Update progress: [I19463] Product download size 1821417 bytes
2019-06-07 17:40:16.994    Update progress: [I19463] Syncing product IDE565 LATEST path=
2019-06-07 17:40:16.994    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 59511491e02f7189056be86f467170e2x000.xml: 26230 bytes
2019-06-07 17:40:16.994    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 59511491e02f7189056be86f467170e2x000.xml: 219 ms
2019-06-07 17:40:16.994    Update progress: [I19463] Product download size 1847133 bytes
2019-06-07 17:40:18.894    Update progress: [I19463] Syncing product IDE566 LATEST path=
2019-06-07 17:40:18.894    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 873aec15e2e8e3ca7821558ce6f715e4x000.xml: 3363 bytes
2019-06-07 17:40:18.894    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 873aec15e2e8e3ca7821558ce6f715e4x000.xml: 63 ms
2019-06-07 17:40:18.894    Update progress: [I19463] Product download size 211871 bytes
2019-06-07 17:40:19.074    Update progress: [I19463] Syncing product IDE567 LATEST path=
2019-06-07 17:40:19.074    Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f430c089bf466bb070b959d79391e4c2x000.xml: 124 bytes
2019-06-07 17:40:19.074    Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f430c089bf466bb070b959d79391e4c2x000.xml: 125 ms
2019-06-07 17:40:19.264    Installing updates...
2019-06-07 17:40:19.864    Error level 1
2019-06-07 17:40:47.004    Update successful
2019-06-07 17:41:10.124    Option all = no
2019-06-07 17:41:10.124    Option recurse = yes
2019-06-07 17:41:10.124    Option archive = no
2019-06-07 17:41:10.124    Option service = yes
2019-06-07 17:41:10.124    Option confirm = yes
2019-06-07 17:41:10.124    Option sxl = yes
2019-06-07 17:41:10.124    Option max-data-age = 35
2019-06-07 17:41:10.124    Option vdl-logging = yes
2019-06-07 17:41:10.124    Customer ID:    094260ca9b3af99f9d4a3909fc47a743
2019-06-07 17:41:10.124    Machine ID:    edc733f183ee493486e29af8828a6191
2019-06-07 17:41:10.124    Component SVRTcli.exe version 2.7.0
2019-06-07 17:41:10.124    Component control.dll version 2.7.0
2019-06-07 17:41:10.124    Component SVRTservice.exe version 2.7.0
2019-06-07 17:41:10.124    Component engine\osdp.dll version 1.44.1.2443
2019-06-07 17:41:10.124    Component engine\veex.dll version 3.75.0.2443
2019-06-07 17:41:10.124    Component engine\savi.dll version 9.0.13.2443
2019-06-07 17:41:10.124    Component rkdisk.dll version 1.5.33.1
2019-06-07 17:41:10.124    Version info:    Product version    2.7.0
2019-06-07 17:41:10.124    Version info:    Detection engine    3.75.0
2019-06-07 17:41:10.124    Version info:    Detection data    5.61
2019-06-07 17:41:10.124    Version info:    Build date    12/3/2019
2019-06-07 17:41:10.124    Version info:    Data files added    454
2019-06-07 17:41:10.124    Version info:    Last successful update    7/6/2019 8:40:47 μμ

2019-06-07 17:44:26.832    Couldn't apply option 'SXLLiveProtection' to the detection engine.
2019-06-07 18:05:25.568    Could not open C:\hiberfil.sys
2019-06-07 18:12:51.089    Could not open C:\Program Files (x86)\Microsoft Office\root\client\AppvIsvStream32.dll
2019-06-07 18:12:51.089    Could not open C:\Program Files (x86)\Microsoft Office\root\client\AppvIsvStream64.dll
2019-06-07 18:13:02.696    Could not open C:\Program Files (x86)\Microsoft Office\root\Flattener\AppvIsvStream32.dll
2019-06-07 18:13:02.711    Could not open C:\Program Files (x86)\Microsoft Office\root\Flattener\AppvIsvStream64.dll
2019-06-07 18:13:04.193    Could not open C:\Program Files (x86)\Microsoft Office\root\Integration\AppvIsvStream32.dll
2019-06-07 18:13:04.209    Could not open C:\Program Files (x86)\Microsoft Office\root\Integration\AppvIsvStream64.dll
2019-06-07 18:13:11.775    Could not open C:\Program Files (x86)\Microsoft Office\root\Office16\ADDINS\Microsoft Power Query for Excel Integrated\bin\AppvIsvStream32.dll
2019-06-07 18:13:11.775    Could not open C:\Program Files (x86)\Microsoft Office\root\Office16\ADDINS\Microsoft Power Query for Excel Integrated\bin\AppvIsvStream64.dll
2019-06-07 18:13:42.507    Could not open C:\Program Files (x86)\Microsoft Office\root\Office16\AppvIsvStream32.dll
2019-06-07 18:13:42.507    Could not open C:\Program Files (x86)\Microsoft Office\root\Office16\AppvIsvStream64.dll
2019-06-07 18:13:44.426    Could not open C:\Program Files (x86)\Microsoft Office\root\Office16\DCF\AppvIsvStream32.dll
2019-06-07 18:13:44.426    Could not open C:\Program Files (x86)\Microsoft Office\root\Office16\DCF\AppvIsvStream64.dll
2019-06-07 18:14:30.446    Could not open C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\AppvIsvStream64.dll
2019-06-07 18:14:37.169    Could not open C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\DW\AppvIsvStream32.dll
2019-06-07 18:14:38.027    Could not open C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\EQUATION\AppvIsvStream32.dll
2019-06-07 18:14:42.177    Could not open C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\AppvIsvStream32.dll
2019-06-07 18:15:00.710    Could not open C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Smart Tag\AppvIsvStream32.dll
2019-06-07 18:15:01.084    Could not open C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Source Engine\AppvIsvStream32.dll
2019-06-07 18:15:07.168    Could not open C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\AppvIsvStream64.dll
2019-06-07 18:15:08.338    Could not open C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Analysis Services\AS OLEDB\130\AppvIsvStream32.dll
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{16a31f92-5c9e-11e9-aaab-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{196e0ac8-7426-11e9-a877-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{207ba3c4-531f-11e9-92fd-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{20d70ac4-44e8-11e9-bde5-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{2a19b063-3872-11e9-9749-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{4d17f1b1-8948-11e9-8716-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{53df51f8-595f-11e9-abf6-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{53df5205-595f-11e9-abf6-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{5e66b839-77fd-11e9-a7aa-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{763bb9c6-5097-11e9-b532-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{89339b5b-5494-11e9-a717-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{89339b5f-5494-11e9-a717-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{89339b6c-5494-11e9-a717-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{9219c39b-886f-11e9-b25f-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{9d23febe-7ede-11e9-aac4-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{b2d0d856-87aa-11e9-a4c0-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{b495b349-3c6a-11e9-a1b3-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{ba2842b0-51b7-11e9-835e-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{c797ec18-57b8-11e9-a654-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{d03819cb-8348-11e9-9ffa-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{d3c84c24-4b1e-11e9-a417-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{d9d21a85-6e87-11e9-9d67-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{dee8b576-38dc-11e9-95ce-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{dee8b57a-38dc-11e9-95ce-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{e0625203-8368-11e9-96ba-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:23:25.932    Could not open C:\System Volume Information\{e0625207-8368-11e9-96ba-08606ef05ff8}{3808876b-c176-4e48-b7ae-04046e6cc752}
2019-06-07 18:47:21.587    Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2019-06-07 18:47:21.587    Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2019-06-07 18:47:29.138    Could not open C:\Windows\System32\config\RegBack\DEFAULT
2019-06-07 18:47:29.138    Could not open C:\Windows\System32\config\RegBack\SAM
2019-06-07 18:47:29.138    Could not open C:\Windows\System32\config\RegBack\SECURITY
2019-06-07 18:47:29.153    Could not open C:\Windows\System32\config\RegBack\SOFTWARE
2019-06-07 18:47:29.153    Could not open C:\Windows\System32\config\RegBack\SYSTEM
2019-06-07 19:14:16.065    Could not open LOGICAL:0003:00000000
2019-06-07 19:14:16.065    Could not open D:\
2019-06-07 19:14:17.812    Error level 0

2019-06-07 23:43:03.242    Scan completed.
2019-06-07 23:43:03.242    

------------------------------------------------------------

 

Link to post
Share on other sites

  • Root Admin

Glad we could help.

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this topic with your request.

This applies only to the originator of this thread. Other members who need assistance please start your own topic in a new thread.

Thanks

 

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.