﻿Лог утилиты random's system information tool 1.17(автор: random/random)
Run by Администратор at 2023-06-29 22:53:27
Майкрософт Windows 10 Pro для рабочих станций 
Системный раздел C:  Свободно 129 GB (54%) размер 238 GB
Total RAM: 16326 MB (69% free)
X64


====== Список процессов ======

C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
C:\WINDOWS\system32\fontdrvhost.exe
C:\WINDOWS\system32\fontdrvhost.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-206d98d8-a42b-45d0-87f6-007a2d109600 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-7edae299-fc96-4c1b-be13-80385067c83a -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-c33ca476-7131-4572-8361-aa0e138c6c30 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-344a4c73-e265-4b5f-b217-883afea95e01 -LifetimeId:dca322ca-5721-46d0-87f4-4eea555c162b -DeviceGroupId:WudfDefaultDevicePool -HostArg:0
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
C:\WINDOWS\system32\dwm.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s ProfSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s camsvc
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s NlaSvc
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s netprofm
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s Dnscache
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
"C:\Program Files (x86)\AnyDesk\AnyDesk.exe" --service
C:\WINDOWS\system32\svchost.exe -k AzureAttestService -s AzureAttestService
"C:\Program Files\Seagull\BarTender 2022\Licensing.Service.exe" /Service  /InstanceName="SACHA"
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s CryptSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\WINDOWS\System32\svchost.exe -k HPZ12
C:\WINDOWS\System32\svchost.exe -k HPZ12
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_78a6016d246f965a\RstMwService.exe
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s WdiServiceHost
"C:\Program Files (x86)\Yandex\YandexBrowser\23.5.3.904\service_update.exe" --run-as-service
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
"C:\Program Files\Microsoft SQL Server\MSSQL15.BARTENDER\MSSQL\Binn\sqlservr.exe" -sBARTENDER
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s TapiSrv
C:\WINDOWS\system32\dashost.exe
"C:\Program Files\Microsoft SQL Server\MSSQL15.BARTENDER\MSSQL\Binn\sqlceip.exe" -Service BARTENDER
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\sihost.exe
"C:\Program Files (x86)\Yandex\YandexBrowser\23.5.3.904\service_update.exe" --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\WINDOWS\TEMP\Crashpad --url=https://crash-reports.browser.yandex.net/submit --annotation=machine_id=2c674607b744703347e580620638b4c3 --annotation=main_process_pid=4292 --annotation=plat=Win64 --annotation=prod=Yandex --annotation=session_logout=False --annotation=ver=23.5.3.904 --initial-client-data=0x21c,0x220,0x224,0x1f8,0x1b4,0x7ff72239dd98,0x7ff72239dda8,0x7ff72239ddb8
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
C:\WINDOWS\system32\taskhostw.exe
C:\WINDOWS\system32\taskhostw.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
"C:\Program Files\Seagull\BarTender 2022\BtSystem.Service.exe"
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
C:\WINDOWS\Explorer.EXE
C:\Program Files\Classic Shell\ClassicStartMenu.exe
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s lfsvc
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
C:\Program Files\Microsoft SQL Server\120\LocalDB\Binn\sqlservr.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
"C:\WINDOWS\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
"C:\Program Files\Seagull\BarTender 2022\Maestro.Service.exe"
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s BITS
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.121.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe" -ComServer:Background -Embedding
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\Администратор\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Администратор\AppData\Local\Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=114.0.5735.134 "--annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --annotation=ver=114.0.1823.58 --initial-client-data=0x164,0x168,0x16c,0x140,0x178,0x7ffec3444210,0x7ffec3444220,0x7ffec3444230
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
"C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe" -ServerName:App.AppX2y379sjp88wjq1y80217mddj3fargf2y.mca
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" 
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --type=crashpad-handler "--user-data-dir=C:\Users\Администратор\AppData\Roaming\Microsoft\Skype for Store" /prefetch:7 --no-rate-limit --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Администратор\AppData\Roaming\Microsoft\Skype for Store\Crashpad" --url=appcenter://generic?aid=a8902fe7-ef45-455c-8513-5e56d48e36fd&iid=bdcde13a-d20a-4cc1-7a91-3d7161cd54af&uid=bdcde13a-d20a-4cc1-7a91-3d7161cd54af --annotation=IsOfficialBuild=1 --annotation=_companyName=Skype --annotation=_productName=skype-preview --annotation=_version=8.99.0.202 "--annotation=exe=C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --annotation=plat=Win64 --annotation=prod=Electron --annotation=ver=19.1.8 --initial-client-data=0x608,0x60c,0x610,0x604,0x614,0x7ff65d3b1730,0x7ff65d3b1740,0x7ff65d3b1750
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc
C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p -s AarSvc
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --type=gpu-process --user-data-dir="C:\Users\Администратор\AppData\Roaming\Microsoft\Skype for Store" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2156 --field-trial-handle=2272,i,6689696786259468929,15877959240817531131,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=ru --service-sandbox-type=none --user-data-dir="C:\Users\Администратор\AppData\Roaming\Microsoft\Skype for Store" --mojo-platform-channel-handle=2540 --field-trial-handle=2272,i,6689696786259468929,15877959240817531131,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --type=renderer --user-data-dir="C:\Users\Администратор\AppData\Roaming\Microsoft\Skype for Store" --app-user-model-id=Microsoft.Skype.SkypeDesktop --app-path="C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\resources\app.asar" --no-sandbox --no-zygote --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --ms-disable-indexeddb-transaction-timeout --lang=ru --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=36259559 --mojo-platform-channel-handle=2924 --field-trial-handle=2272,i,6689696786259468929,15877959240817531131,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand --skype-process-type=Main --skype-window-id=__MAIN_ROOT_VIEW_ID__ /prefetch:1
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Users\Администратор\AppData\Local\Mail.Ru\Disk-O\vcurrent\DiskO.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=2080 --field-trial-handle=2084,i,14482780024693246258,3931865595857180648,262144 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=ru --service-sandbox-type=none --mojo-platform-channel-handle=2040 --field-trial-handle=2084,i,14482780024693246258,3931865595857180648,262144 /prefetch:3
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=ru --service-sandbox-type=service --mojo-platform-channel-handle=2496 --field-trial-handle=2084,i,14482780024693246258,3931865595857180648,262144 /prefetch:8
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --extension-process --renderer-sub-type=extension --lang=ru --js-flags=--ms-user-locale=ru_RU --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --time-ticks-at-unix-epoch=-1688068165189006 --launch-time-ticks=41114704 --mojo-platform-channel-handle=3652 --field-trial-handle=2084,i,14482780024693246258,3931865595857180648,262144 /prefetch:1
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=ru --service-sandbox-type=audio --user-data-dir="C:\Users\Администратор\AppData\Roaming\Microsoft\Skype for Store" --mojo-platform-channel-handle=3896 --field-trial-handle=2272,i,6689696786259468929,15877959240817531131,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
C:\WINDOWS\system32\AUDIODG.EXE 0x6c8
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\Windows\System32\oobe\UserOOBEBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2210.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe" -ServerName:App.AppXjvs2nbwryyqjz1h8d8v70f70g3rgdcyb.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"D:\distr06122017\AutoLogger\AutoLogger.exe" 
"C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2323.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe" -ServerName:App.AppXkf4yh0averk473g9chjmra34tgccdh3d.mca
C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
"D:\distr06122017\AutoLogger\AutoLogger\AV\AV_Z.exe" Script=AV\Script2.txt HiddenMode=0
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --single-argument http://google.ru/
C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe --type=crashpad-handler "--user-data-dir=C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\User Data\Crashpad" "--metrics-dir=C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\User Data" --url=https://crash-reports.browser.yandex.net/submit --annotation=install_date=1629984477 --annotation=last_update_date=1687963204 --annotation=launches_after_update=6 --annotation=machine_id=2c674607b744703347e580620638b4c3 --annotation=main_process_pid=8896 --annotation=metrics_client_id=33c1b899db1e4cc6bc8d82a9e0f30433 --annotation=plat=Win64 --annotation=prod=Yandex --annotation=session_logout=False --annotation=ver=23.5.3.904 --initial-client-data=0x158,0x15c,0x160,0x134,0x164,0x7ffe979a9b78,0x7ffe979a9b88,0x7ffe979a9b98
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=gpu-process --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2008 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 /prefetch:2
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=ru --service-sandbox-type=none --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --process-name="Network Service" --mojo-platform-channel-handle=2572 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 --brver=23.5.3.904 /prefetch:8
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=ru --service-sandbox-type=service --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --process-name="Storage Service" --mojo-platform-channel-handle=2900 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 --brver=23.5.3.904 /prefetch:8
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=renderer --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --extension-process --help-url=https://api.browser.yandex.ru/redirect/help/ --user-agent-info --web-ntp-url-for-renderer=https://webntp.yandex.ru/ --translate-security-origin=https://browser.translate.yandex.net/ --enable-instaserp --allow-prefetch --lang=ru --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --time-ticks-at-unix-epoch=-1688068165189213 --launch-time-ticks=125680926 --mojo-platform-channel-handle=3992 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 /prefetch:1
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=renderer --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --help-url=https://api.browser.yandex.ru/redirect/help/ --user-agent-info --web-ntp-url-for-renderer=https://webntp.yandex.ru/ --translate-security-origin=https://browser.translate.yandex.net/ --ya-custo-process --enable-instaserp --lang=ru --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=11 --time-ticks-at-unix-epoch=-1688068165189213 --launch-time-ticks=127650182 --mojo-platform-channel-handle=5384 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 /prefetch:1
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=renderer --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --help-url=https://api.browser.yandex.ru/redirect/help/ --user-agent-info --web-ntp-url-for-renderer=https://webntp.yandex.ru/ --translate-security-origin=https://browser.translate.yandex.net/ --ya-custo-process --enable-instaserp --lang=ru --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=14 --time-ticks-at-unix-epoch=-1688068165189213 --launch-time-ticks=128158659 --mojo-platform-channel-handle=5804 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 /prefetch:1
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=renderer --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --help-url=https://api.browser.yandex.ru/redirect/help/ --user-agent-info --web-ntp-url-for-renderer=https://webntp.yandex.ru/ --translate-security-origin=https://browser.translate.yandex.net/ --enable-instaserp --lang=ru --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=15 --time-ticks-at-unix-epoch=-1688068165189213 --launch-time-ticks=128491586 --mojo-platform-channel-handle=6020 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 /prefetch:1
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --lang=ru --js-flags=--ms-user-locale=ru_RU --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=18 --time-ticks-at-unix-epoch=-1688068165189006 --launch-time-ticks=128875942 --mojo-platform-channel-handle=4044 --field-trial-handle=2084,i,14482780024693246258,3931865595857180648,262144 /prefetch:1
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --lang=ru --js-flags=--ms-user-locale=ru_RU --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=21 --time-ticks-at-unix-epoch=-1688068165189006 --launch-time-ticks=129978135 --mojo-platform-channel-handle=6320 --field-trial-handle=2084,i,14482780024693246258,3931865595857180648,262144 /prefetch:1
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=renderer --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --help-url=https://api.browser.yandex.ru/redirect/help/ --user-agent-info --web-ntp-url-for-renderer=https://webntp.yandex.ru/ --translate-security-origin=https://browser.translate.yandex.net/ --enable-instaserp --lang=ru --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=18 --time-ticks-at-unix-epoch=-1688068165189213 --launch-time-ticks=132046497 --mojo-platform-channel-handle=4060 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 /prefetch:1
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=utility --utility-sub-type=deep_links_provider.mojom.DeepLinksProvider --lang=ru --service-sandbox-type=none --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --process-name="DeepLinks service" --mojo-platform-channel-handle=4064 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 --brver=23.5.3.904 /prefetch:8
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=ru --service-sandbox-type=audio --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --process-name="Audio Service" --mojo-platform-channel-handle=5576 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 --brver=23.5.3.904 /prefetch:8
"C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --type=renderer --user-id=E18CDFD4-C317-4C09-B7A7-A4BE2C43FDC9 --brand-id=yandex --help-url=https://api.browser.yandex.ru/redirect/help/ --user-agent-info --web-ntp-url-for-renderer=https://webntp.yandex.ru/ --translate-security-origin=https://browser.translate.yandex.net/ --enable-instaserp --lang=ru --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=25 --time-ticks-at-unix-epoch=-1688068165189213 --launch-time-ticks=133265294 --mojo-platform-channel-handle=5268 --field-trial-handle=2000,i,385312644413541568,12265349469223260848,131072 /prefetch:1
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --instant-process --lang=ru --js-flags=--ms-user-locale=ru_RU --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=24 --time-ticks-at-unix-epoch=-1688068165189006 --launch-time-ticks=133445597 --mojo-platform-channel-handle=6536 --field-trial-handle=2084,i,14482780024693246258,3931865595857180648,262144 /prefetch:1
"C:\Program Files\Seagull\BarTender 2022\Integration.Service.exe" /Service  /InstanceName="Service"
C:\Program Files\Microsoft SQL Server\120\LocalDB\Binn\sqlservr.exe
"C:\Program Files\Seagull\BarTender 2022\PrintScheduler.Service.exe" /Service  /InstanceName="Service"
"C:\Program Files\Seagull\BarTender 2022\net5.0\Seagull.Services.Integration.WebService.exe" --urls=http://*:5159 --Automation.ServiceUrl=http://{0}:5159 --SystemDatabase="data source=(local)\BarTender;integrated security=SSPI;initial catalog=Datastore" 
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 5.13\ksde.exe" -r
C:\WINDOWS\system32\svchost.exe -k LocalService -s W32Time
"C:\Program Files\Seagull\BarTender 2022\BarTend.exe" -Embedding
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 5.13\ksdeui.exe" -hidden
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=edge_search_indexer.mojom.SearchIndexerInterfaceBroker --lang=ru --service-sandbox-type=search_indexer --message-loop-type-ui --mojo-platform-channel-handle=4948 --field-trial-handle=2084,i,14482780024693246258,3931865595857180648,262144 /prefetch:8
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3569289489-2406125118-2109160162-5001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3569289489-2406125118-2109160162-5001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"  "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 672 796 804 8192 800 784 
"C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe" SignatureUpdate -ScheduleJob -RestrictPrivileges -Reinvoke
"C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe" SignaturesUpdateService -ScheduleJob -UnmanagedUpdate
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\Windows Defender\mpcmdrun.exe" -wddisable
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
\??\C:\WINDOWS\system32\conhost.exe 0x4
"D:\distr06122017\AutoLogger\AutoLogger\RSIT\RSITx64.exe" /silent /m3 /autolog /logfolder "D:\distr06122017\AutoLogger\AutoLogger\RSIT\Log" /nohjt /rus 

====== Папка назначенных заданий ======

C:\WINDOWS\tasks\Восстановление сервиса обновлений Яндекс Браузера.job - C:\Program Files (x86)\Yandex\YandexBrowser\23.5.3.904\service_update.exe  --repair
C:\WINDOWS\tasks\Обновление Браузера Яндекс.job - C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe  --background-update --noerrdialogs
C:\WINDOWS\tasks\Системное обновление Браузера Яндекс.job - C:\Program Files (x86)\Yandex\YandexBrowser\23.5.3.904\service_update.exe  --run-as-launcher
C:\WINDOWS\system32\tasks\Adobe Flash Player NPAPI Notifier - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe -check plugin
C:\WINDOWS\system32\tasks\Adobe Flash Player PPAPI Notifier - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_453_pepper.exe -check pepperplugin
C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\CCleaner Update - J:\distr06122017\CCleaner 5.75.8238 Free_Professional_Business_Technician Edition RePack (& Portable) by KpoJIuK\CCleaner Professional\CCUpdate.exe
C:\WINDOWS\system32\tasks\CCleanerSkipUAC - Администратор - "H:\temp\CCleaner\CCleaner.exe" $(Arg0)
C:\WINDOWS\system32\tasks\Driver Booster SkipUAC (Администратор) - "G:\distr06122017\IObit Driver Booster Pro 7.4.0.731 RePack (& Portable) by TryRooM\DriverBoosterPortable\App\DriverBooster\DriverBooster.exe" /skipuac
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /ua /installsource scheduler
C:\WINDOWS\system32\tasks\Intel PTT EK Recertification - "C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\IntelPTTEKRecertification.exe"
C:\WINDOWS\system32\tasks\MicrosoftEdgeUpdateTaskMachineCore1d722375d1e7c84 - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /c
C:\WINDOWS\system32\tasks\MicrosoftEdgeUpdateTaskMachineUA - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\Восстановление сервиса обновлений Яндекс Браузера - C:\Program Files (x86)\Yandex\YandexBrowser\23.5.3.904\service_update.exe --repair
C:\WINDOWS\system32\tasks\Обновление Браузера Яндекс - C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe --background-update --noerrdialogs
C:\WINDOWS\system32\tasks\Системное обновление Браузера Яндекс - C:\Program Files (x86)\Yandex\YandexBrowser\23.5.3.904\service_update.exe --run-as-launcher
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\Windows\WwanSvc\NotificationTask - %SystemRoot%\System32\WiFiTask.exe wwan
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe $(Arg0) $(Arg1) $(Arg2)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Recovery-Check - %SystemRoot%\System32\dsregcmd.exe /checkrecovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihpostreboot - %systemroot%\system32\sihclient.exe /PostReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\AC Power Download - %systemroot%\system32\usoclient.exe StartDownload
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Backup Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC - %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery - %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Report policies - %systemroot%\system32\usoclient.exe ReportPolicies
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work - %systemroot%\system32\usoclient.exe StartMaintenanceWork
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan Static Task - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work - %systemroot%\system32\usoclient.exe StartWork
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Work - %systemroot%\system32\usoclient.exe StartWork
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start - %systemroot%\system32\usoclient.exe StartUWork
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\UpdateModelTask - %systemroot%\system32\usoclient.exe StartModelUpdates
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - %systemroot%\system32\MusNotification.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr - %windir%\System32\UNP\UpdateNotificationMgr.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition - %SystemRoot%\system32\ClipRenew.exe -e
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\LicenseAcquisition - %SystemRoot%\system32\ClipRenew.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\StateRepository\MaintenanceTasks - %windir%\system32\rundll32.exe %windir%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\HeadsetButtonPress - %windir%\system32\speech_onecore\common\SpeechRuntime.exe StartedFromTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\PushToInstall\LoginCheck - %windir%\system32\sc.exe start pushtoinstall login
C:\WINDOWS\system32\tasks\Microsoft\Windows\PushToInstall\Registration - %windir%\system32\sc.exe start pushtoinstall registration
C:\WINDOWS\system32\tasks\Microsoft\Windows\Printing\EduPrintProv - %windir%\system32\eduprintprov.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\PI\SecureBootEncodeUEFI - %WINDIR%\system32\SecureBootEncodeUEFI.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Cellular - %windir%\system32\ProvTool.exe /turn 7 /source CellStateChangeTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5 /source LogonIdleTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Retry - %windir%\system32\ProvTool.exe /turn 5 /source ProvRetryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\RunOnReboot - %windir%\system32\ProvTool.exe /turn 5 /source ContinueSessionTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\HelloFace\FODCleanupTask - %WinDir%\System32\WinBioPlugIns\FaceFodUninstaller.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\DirectX\DirectXDatabaseUpdater - %windir%\system32\directxdatabaseupdater.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DirectX\DXGIAdapterCache - %windir%\system32\dxgiadaptercache.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe SystemCxt
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device User - %windir%\system32\devicecensus.exe UserCxt
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\LicenseImdsIntegration - %SystemRoot%\system32\fclip.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Chkdsk\SyspartRepair - %windir%\system32\bcdboot.exe %windir% /sysrepair
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\PcaPatchDbTask - %windir%\system32\rundll32.exe %windir%\system32\PcaSvc.dll,PcaPatchSdbTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\Microsoft\Office\Office 15 Subscription Heartbeat - %ProgramFiles%\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 - "C:\Program Files\Microsoft Office\Office16\msoia.exe" scan upload mininterval:2880
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 - "C:\Program Files\Microsoft Office\Office16\msoia.exe" scan upload
C:\WINDOWS\system32\tasks\DelayedItemsByChemtableSoftware\AnyDesk - "C:\Program Files (x86)\AnyDesk\AnyDesk.exe" --control
C:\WINDOWS\system32\tasks\DelayedItemsByChemtableSoftware\AnyDesk (2) - "C:\Program Files (x86)\AnyDesk\AnyDesk.exe" --control
C:\WINDOWS\system32\tasks\Avast Software\Overseer - C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe /from_scheduler:1

=========Mozilla firefox=========

ProfilePath - C:\Users\Администратор\AppData\Roaming\Mozilla\Firefox\Profiles\7j9r128p.default-release

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 32.0.0.465 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~2\Office16\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 32.0.0.465 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=3.0.17.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=3.0.18]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll


C:\Users\Администратор\AppData\Roaming\Mozilla\Firefox\Profiles\7j9r128p.default-release\extensions\
staged

C:\Users\Администратор\AppData\Roaming\Mozilla\Firefox\Profiles\7j9r128p.default-release\searchplugins\
yandex.ru-20210326.xml

C:\Users\Администратор\AppData\Roaming\Mozilla\Firefox\Profiles\7j9r128p.default-release\addons.json
uBlock Origin - extension - uBlock0@raymondhill.net
AdBlocker Ultimate - extension - adblockultimate@adblockultimate.net
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
AdBlock for Firefox - extension - jid1-NIfFY2CA8fy1tg@jetpack
Kaspersky Protection - extension - light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com
SaveFrom.net помощник: скачать Ютуб, ВКонтакт и др - extension - helper@savefrom.net
Image Block - extension - imageblock@hemantvats.com
Download Master - extension - dm@westbyte.com
AdsBlocker - extension - {35122264-167d-4030-8477-6ec45e39b502}
Image Video Block - extension - {dabe08f4-8ec2-4dc5-a4dd-fda31fb8b38c}

C:\Users\Администратор\AppData\Roaming\Mozilla\Firefox\Profiles\7j9r128p.default-release\extensions.json
Download Master - extension - dm@westbyte.com - 
ImageBlock - extension - imageblock@hemantvats.com - 
Визуальные закладки - extension - vb@yandex.ru - 
Ads Blocker - extension - {35122264-167d-4030-8477-6ec45e39b502} - 
Советник Яндекс.Маркета - extension - sovetnik@metabar.ru - 
Image Video Block - extension - {dabe08f4-8ec2-4dc5-a4dd-fda31fb8b38c} - 
CryptoPro Extension for CAdES Browser Plug-in - extension - ru.cryptopro.nmcades@cryptopro.ru - 
AdBlock — best ad blocker - extension - jid1-NIfFY2CA8fy1tg@jetpack - 
AdBlocker Ultimate - extension - adblockultimate@adblockultimate.net - 
SaveFrom.net helper - extension - helper@savefrom.net - 
uBlock Origin - extension - uBlock0@raymondhill.net - 
Kaspersky Protection - extension - light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com - 
Adblock Plus - free ad blocker - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} - 
Form Autofill - extension - formautofill@mozilla.org - 
Firefox Screenshots - extension - screenshots@mozilla.org - 
WebCompat Reporter - extension - webcompat-reporter@mozilla.org - 
Web Compatibility Interventions - extension - webcompat@mozilla.org - 
Picture-In-Picture - extension - pictureinpicture@mozilla.org - 
Yandex - extension - yandex@search.mozilla.org - 
Google - extension - google@search.mozilla.org - 
DuckDuckGo - extension - ddg@search.mozilla.org - 
Wikipedia (en) - extension - wikipedia@search.mozilla.org - 
Поиск Mail.Ru - extension - mailru@search.mozilla.org - 
Firefox Alpenglow - theme - firefox-alpenglow@mozilla.org - 
System theme — auto - theme - default-theme@mozilla.org - 
Light - theme - firefox-compact-light@mozilla.org - 
Dark - theme - firefox-compact-dark@mozilla.org - 
Add-ons Search Detection - extension - addons-search-detection@mozilla.com - 
Add-ons Restricted Domains - extension - addons-restricted-domains@mozilla.com - 

C:\Users\Администратор\AppData\Roaming\Mozilla\Firefox\Profiles\7j9r128p.default-release\pluginreg.dat

=========Google Chrome=========

C:\Users\Администратор\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage: 
default_search_provider.search_url: 

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm]
"Path"=https://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dljdacfojgikogldjffnkdcielnklkce]
"Path"=


======Снимок реестра ======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.58\BHO\ie_to_edge_bho_64.dll [2023-06-22 589248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13 885560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft OneDrive for Business Browser Helper - C:\PROGRA~1\MICROS~1\Office16\GROOVEEX.DLL [2017-02-22 2179376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2017-08-13 551736]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.58\BHO\ie_to_edge_bho.dll [2023-06-22 454592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2017-08-13 760632]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9961627E-4059-41B4-8E0E-A7D6B3854ADF}]
IE 4.x-6.x BHO for Download Master - C:\PROGRA~2\DOWNLO~1\dmiehlp.dll [2017-06-23 165096]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2017-08-13 507192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13 885560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2017-08-13 760632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2019-12-07 86016]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2017-08-13 163640]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Администратор\AppData\Roaming\uTorrent\uTorrent.exe [2021-08-26 2082792]
"Microsoft Edge Update"=C:\Users\Администратор\AppData\Local\Microsoft\EdgeUpdate\1.3.171.39\MicrosoftEdgeUpdateCore.exe [2023-01-11 263592]
"Opera Stable"=C:\Users\Администратор\AppData\Local\Programs\Opera\launcher.exe [2023-06-20 2716064]
"CCleaner Smart Cleaning"=D:\distr06122017\CCleaner 6.12.10459 Free  Pro  Business  Technician Edition RePack (& Portable) by elchupacabra\CCleaner\CCleaner64.exe [2023-05-04 40760632]
"YandexBrowserAutoLaunch_ECDD6029C5CCE0A7929A253137E11B62"=C:\Users\Администратор\AppData\Local\Yandex\YandexBrowser\Application\browser.exe [2023-06-20 4921496]
"Viber"=C:\Users\Администратор\AppData\Local\Viber\Viber.exe [2023-06-13 75652816]
"MicrosoftEdgeAutoLaunch_FFBC0C4C8F28BBA2DFD10D307A538E97"=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [2023-06-22 4113856]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
AnyDesk.lnk - C:\Program Files (x86)\AnyDesk\AnyDesk.exe

C:\Users\Администратор\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dashboard.lnk - C:\Program Files (x86)\Western Digital\SSD Dashboard\Dashboard.exe
Disk-O.lnk - C:\Users\Администратор\AppData\Local\Mail.Ru\Disk-O\Disko.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HidSpiCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableFullTrustStartupTasks"=2
"EnableUIADesktopToggle"=0
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"FilterAdministratorToken"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=255

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath" = "C:\Program Files\Google\Chrome\Application\114.0.5735.199\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --channel=stable
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{9459C573-B17A-45AE-9F64-1857B5D58CEE}]
"StubPath" = "C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.58\Installer\setup.exe" --configure-user-settings --verbose-logging --system-level --msedge --channel=stable

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codecp.acm
"VIDC.X264"=x264vfw64.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"aux1"=wdmaud.drv
"aux2"=wdmaud.drv
"midi1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer1"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave4"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave5"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave6"=wdmaud.drv
"midi7"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer7"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave7"=wdmaud.drv
"wave8"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"aux3"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"wave9"=wdmaud.drv
"aux4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave3"=wdmaud.drv
"msacm.l3codecp"=l3codecp.acm

====== Ассоциации файлов ======

.inf - install - 
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

====== Список файлов и папок, созданных за последние 3 месяца ======

2023-06-29 13:16:02 ----D---- C:\WINDOWS\Panther
2023-06-28 23:25:56 ----D---- C:\Program Files\Google
2023-06-15 21:58:52 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2023-06-15 21:58:52 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2023-06-15 21:58:52 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2023-06-15 21:58:48 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2023-06-15 21:58:48 ----A---- C:\WINDOWS\system32\quickassist.exe
2023-06-15 21:58:48 ----A---- C:\WINDOWS\system32\mspaint.exe
2023-06-15 21:58:48 ----A---- C:\WINDOWS\system32\cdp.dll
2023-06-15 21:58:47 ----A---- C:\WINDOWS\SYSWOW64\WMVCORE.DLL
2023-06-15 21:58:47 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2023-06-15 21:58:47 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2023-06-15 21:58:47 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2023-06-15 21:58:47 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2023-06-15 21:58:46 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2023-06-15 21:58:46 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2023-06-15 21:58:46 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2023-06-15 21:58:46 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2023-06-15 21:58:45 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2023-06-15 21:58:45 ----A---- C:\WINDOWS\system32\HologramWorld.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\SYSWOW64\Microsoft.Uev.Office2013CustomActions.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\SYSWOW64\Microsoft.Uev.AppAgent.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\SYSWOW64\gpprefcl.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\SYSWOW64\AppVEntSubsystems32.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\system32\WMVCORE.DLL
2023-06-15 21:58:44 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\system32\mfps.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\system32\mfcore.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2023-06-15 21:58:44 ----A---- C:\WINDOWS\system32\mf.dll
2023-06-15 21:58:43 ----A---- C:\WINDOWS\system32\mqqm.dll
2023-06-15 21:58:43 ----A---- C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll
2023-06-15 21:58:43 ----A---- C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2023-06-15 21:58:43 ----A---- C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2023-06-15 21:58:43 ----A---- C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2023-06-15 21:58:43 ----A---- C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2023-06-15 21:58:43 ----A---- C:\WINDOWS\system32\gpprefcl.dll
2023-06-15 21:58:43 ----A---- C:\WINDOWS\system32\CustomShellHost.exe
2023-06-15 21:58:43 ----A---- C:\WINDOWS\system32\AgentService.exe
2023-06-15 21:58:42 ----A---- C:\WINDOWS\system32\fclip.exe
2023-06-15 21:58:42 ----A---- C:\WINDOWS\system32\AppVEntSubsystems64.dll
2023-06-15 21:58:42 ----A---- C:\WINDOWS\system32\AppVEntSubsystemController.dll
2023-06-15 21:58:41 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2023-06-15 21:58:41 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2023-06-15 21:58:41 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2023-06-15 21:58:41 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2023-06-15 21:58:41 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2023-06-15 21:58:41 ----A---- C:\WINDOWS\SYSWOW64\AcXtrnal.dll
2023-06-15 21:58:41 ----A---- C:\WINDOWS\SYSWOW64\AcLayers.dll
2023-06-15 21:58:41 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2023-06-15 21:58:40 ----A---- C:\WINDOWS\SYSWOW64\NAPCRYPT.DLL
2023-06-15 21:58:40 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2023-06-15 21:58:39 ----A---- C:\WINDOWS\SYSWOW64\sqlsrv32.dll
2023-06-15 21:58:39 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2023-06-15 21:58:39 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2023-06-15 21:58:39 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2023-06-15 21:58:38 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2023-06-15 21:58:38 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2023-06-15 21:58:38 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2023-06-15 21:58:37 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2023-06-15 21:58:37 ----A---- C:\WINDOWS\SYSWOW64\dswave.dll
2023-06-15 21:58:37 ----A---- C:\WINDOWS\SYSWOW64\dnscmmc.dll
2023-06-15 21:58:37 ----A---- C:\WINDOWS\SYSWOW64\dmusic.dll
2023-06-15 21:58:37 ----A---- C:\WINDOWS\SYSWOW64\dmsynth.dll
2023-06-15 21:58:37 ----A---- C:\WINDOWS\SYSWOW64\dmloader.dll
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\wsp_health.dll
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\tsgqec.dll
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\SIHClient.exe
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\mstscax.dll
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\FileHistory.exe
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\fhuxgraphics.dll
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\CPFilters.dll
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\AcXtrnal.dll
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\AcLayers.dll
2023-06-15 21:58:36 ----A---- C:\WINDOWS\system32\AcGenral.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\wshrm.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\NAPCRYPT.DLL
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\msimsg.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\msi.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\iscsiwmiv2.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\iscsiwmi.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\iscsium.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\iscsiexe.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\iscsied.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\iscsidsc.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\iscsicli.exe
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\IESettingSync.exe
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2023-06-15 21:58:35 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2023-06-15 21:58:34 ----A---- C:\WINDOWS\system32\ieframe.dll
2023-06-15 21:58:33 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2023-06-15 21:58:33 ----A---- C:\WINDOWS\system32\mshtml.dll
2023-06-15 21:58:33 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2023-06-15 21:58:32 ----A---- C:\WINDOWS\system32\edgehtml.dll
2023-06-15 21:58:32 ----A---- C:\WINDOWS\system32\dswave.dll
2023-06-15 21:58:32 ----A---- C:\WINDOWS\system32\dnscmmc.dll
2023-06-15 21:58:32 ----A---- C:\WINDOWS\system32\dmusic.dll
2023-06-15 21:58:32 ----A---- C:\WINDOWS\system32\dmsynth.dll
2023-06-15 21:58:32 ----A---- C:\WINDOWS\system32\dmloader.dll
2023-06-15 21:58:32 ----A---- C:\WINDOWS\system32\ClipUp.exe
2023-06-15 21:58:30 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2023-06-15 21:58:30 ----A---- C:\WINDOWS\SYSWOW64\rtutils.dll
2023-06-15 21:58:30 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\vertdll.dll
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\tcbloader.dll
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\skci.dll
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\SgrmEnclave_secure.dll
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\SgrmEnclave.dll
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\securekernel.exe
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\resutils.dll
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\hvix64.exe
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\hvax64.exe
2023-06-15 21:58:30 ----A---- C:\WINDOWS\system32\drivers\winhvr.sys
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\winbio.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\mspatcha.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\msdelta.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\enrollmentapi.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2023-06-15 21:58:29 ----A---- C:\WINDOWS\SYSWOW64\console.dll
2023-06-15 21:58:28 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2023-06-15 21:58:28 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2023-06-15 21:58:28 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2023-06-15 21:58:28 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2023-06-15 21:58:28 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2023-06-15 21:58:28 ----A---- C:\WINDOWS\SYSWOW64\rdpserverbase.dll
2023-06-15 21:58:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2023-06-15 21:58:27 ----A---- C:\WINDOWS\SYSWOW64\OneCoreUAPCommonProxyStub.dll
2023-06-15 21:58:27 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2023-06-15 21:58:27 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2023-06-15 21:58:27 ----A---- C:\WINDOWS\SYSWOW64\InstallServiceTasks.dll
2023-06-15 21:58:27 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2023-06-15 21:58:27 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2023-06-15 21:58:26 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2023-06-15 21:58:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2023-06-15 21:58:26 ----A---- C:\WINDOWS\SYSWOW64\TileDataRepository.dll
2023-06-15 21:58:26 ----A---- C:\WINDOWS\SYSWOW64\TextInputMethodFormatter.dll
2023-06-15 21:58:26 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2023-06-15 21:58:26 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2023-06-15 21:58:26 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2023-06-15 21:58:26 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\XInputUap.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\GameInput.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\d3d9on12.dll
2023-06-15 21:58:25 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2023-06-15 21:58:24 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2023-06-15 21:58:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2023-06-15 21:58:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-06-15 21:58:24 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2023-06-15 21:58:24 ----A---- C:\WINDOWS\SYSWOW64\ShellCommonCommonProxyStub.dll
2023-06-15 21:58:24 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2023-06-15 21:58:24 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2023-06-15 21:58:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2023-06-15 21:58:23 ----A---- C:\WINDOWS\SYSWOW64\PCPKsp.dll
2023-06-15 21:58:23 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2023-06-15 21:58:23 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2023-06-15 21:58:23 ----A---- C:\WINDOWS\system32\wudriver.dll
2023-06-15 21:58:23 ----A---- C:\WINDOWS\system32\windowsudk.shellcommon.dll
2023-06-15 21:58:23 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-06-15 21:58:23 ----A---- C:\WINDOWS\system32\LsaIso.exe
2023-06-15 21:58:23 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2023-06-15 21:58:23 ----A---- C:\WINDOWS\system32\kernel32.dll
2023-06-15 21:58:23 ----A---- C:\WINDOWS\system32\iumcrypt.dll
2023-06-15 21:58:23 ----A---- C:\WINDOWS\system32\ActionQueue.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\xpsservices.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\twinui.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\rtutils.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\npmproxy.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\nlmsprep.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\nlmproxy.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\nlasvc.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\nlaapi.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\netprofm.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\ncsi.dll
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\drivers\rassstp.sys
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2023-06-15 21:58:22 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\msIso.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\laps.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\iertutil.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\edgeIso.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\CustomInstallExec.exe
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2023-06-15 21:58:21 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\wininet.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\urlmon.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\sppobjs.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\SppExtComObj.Exe
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\sppcext.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\omadmclient.exe
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\MdmDiagnostics.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\LocationFrameworkPS.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\jsproxy.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2023-06-15 21:58:20 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2023-06-15 21:58:19 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2023-06-15 21:58:19 ----A---- C:\WINDOWS\system32\wuuhext.dll
2023-06-15 21:58:19 ----A---- C:\WINDOWS\system32\witnesswmiv2provider.dll
2023-06-15 21:58:19 ----A---- C:\WINDOWS\system32\sscore.dll
2023-06-15 21:58:19 ----A---- C:\WINDOWS\system32\srvsvc.dll
2023-06-15 21:58:19 ----A---- C:\WINDOWS\system32\sppsvc.exe
2023-06-15 21:58:19 ----A---- C:\WINDOWS\system32\shell32.dll
2023-06-15 21:58:19 ----A---- C:\WINDOWS\system32\mspatchc.dll
2023-06-15 21:58:19 ----A---- C:\WINDOWS\system32\mspatcha.dll
2023-06-15 21:58:19 ----A---- C:\WINDOWS\system32\msdelta.dll
2023-06-15 21:58:18 ----A---- C:\WINDOWS\system32\netlogon.dll
2023-06-15 21:58:18 ----A---- C:\WINDOWS\system32\KernelBase.dll
2023-06-15 21:58:18 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2023-06-15 21:58:18 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2023-06-15 21:58:18 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2023-06-15 21:58:17 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2023-06-15 21:58:16 ----A---- C:\WINDOWS\system32\pacjsworker.exe
2023-06-15 21:58:16 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2023-06-15 21:58:16 ----A---- C:\WINDOWS\system32\ntdll.dll
2023-06-15 21:58:16 ----A---- C:\WINDOWS\system32\lsasrv.dll
2023-06-15 21:58:16 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2023-06-15 21:58:16 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2023-06-15 21:58:16 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\winresume.exe
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\winhttp.dll
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\webio.dll
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\schannel.dll
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\msv1_0.dll
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\KdsCli.dll
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\drivers\cldflt.sys
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\dnsapi.dll
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\crypt32.dll
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\console.dll
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\conhost.exe
2023-06-15 21:58:15 ----A---- C:\WINDOWS\system32\ci.dll
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\winload.exe
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\uReFS.dll
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\ShellAppRuntime.exe
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\refsutil.exe
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\pcasvc.dll
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\pcalua.exe
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\pcaevts.dll
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\pcadm.dll
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\NotificationController.dll
2023-06-15 21:58:14 ----A---- C:\WINDOWS\system32\drivers\refs.sys
2023-06-15 21:58:13 ----A---- C:\WINDOWS\system32\wuuhosdeployment.dll
2023-06-15 21:58:13 ----A---- C:\WINDOWS\system32\wups2.dll
2023-06-15 21:58:13 ----A---- C:\WINDOWS\system32\wups.dll
2023-06-15 21:58:13 ----A---- C:\WINDOWS\system32\wuaueng.dll
2023-06-15 21:58:13 ----A---- C:\WINDOWS\system32\wuauclt.exe
2023-06-15 21:58:13 ----A---- C:\WINDOWS\system32\wuapi.dll
2023-06-15 21:58:13 ----A---- C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2023-06-15 21:58:13 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2023-06-15 21:58:13 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\winbio.dll
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\win32kfull.sys
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\usosvc.dll
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\usocoreworker.exe
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\MoUsoCoreWorker.exe
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\drivers\SpbCx.sys
2023-06-15 21:58:12 ----A---- C:\WINDOWS\system32\drivers\HidSpiCx.sys
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\win32u.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\win32k.sys
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\TileDataRepository.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\storewuauth.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\PushToInstall.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\MapsStore.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\MapRouter.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\kerberos.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\ISM.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\InstallServiceTasks.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\InstallService.dll
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\BFE.DLL
2023-06-15 21:58:11 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2023-06-15 21:58:10 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2023-06-15 21:58:10 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2023-06-15 21:58:10 ----A---- C:\WINDOWS\system32\tquery.dll
2023-06-15 21:58:10 ----A---- C:\WINDOWS\system32\TextInputMethodFormatter.dll
2023-06-15 21:58:10 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2023-06-15 21:58:10 ----A---- C:\WINDOWS\system32\InputService.dll
2023-06-15 21:58:10 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2023-06-15 21:58:10 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2023-06-15 21:58:10 ----A---- C:\WINDOWS\system32\BingMaps.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\win32kbase.sys
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\mssvp.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\mssrch.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\mssprxy.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\mssph.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\mssitlb.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\msscntrs.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\dosvc.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\domgmt.dll
2023-06-15 21:58:09 ----A---- C:\WINDOWS\system32\d3d9on12.dll
2023-06-15 21:58:02 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2023-06-15 21:58:02 ----A---- C:\WINDOWS\system32\vaultcli.dll
2023-06-15 21:58:02 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2023-06-15 21:58:02 ----A---- C:\WINDOWS\system32\licensingdiag.exe
2023-06-15 21:58:02 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2023-06-15 21:58:01 ----A---- C:\WINDOWS\system32\XInputUap.dll
2023-06-15 21:58:01 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2023-06-15 21:58:01 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2023-06-15 21:58:01 ----A---- C:\WINDOWS\system32\smartscreenps.dll
2023-06-15 21:58:01 ----A---- C:\WINDOWS\system32\smartscreen.exe
2023-06-15 21:58:01 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2023-06-15 21:58:01 ----A---- C:\WINDOWS\system32\GameInput.dll
2023-06-15 21:58:01 ----A---- C:\WINDOWS\system32\cloudAP.dll
2023-06-15 21:58:01 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2023-06-15 21:58:00 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2023-06-15 21:58:00 ----A---- C:\WINDOWS\system32\wow64.dll
2023-06-15 21:58:00 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2023-06-15 21:58:00 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2023-06-15 21:57:59 ----A---- C:\WINDOWS\system32\wifidatacapabilityhandler.dll
2023-06-15 21:57:59 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2023-06-15 21:57:59 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2023-06-15 21:57:59 ----A---- C:\WINDOWS\system32\usbmon.dll
2023-06-15 21:57:59 ----A---- C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2023-06-15 21:57:59 ----A---- C:\WINDOWS\system32\localui.dll
2023-06-15 21:57:59 ----A---- C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2023-06-15 21:57:59 ----A---- C:\WINDOWS\system32\apisetschema.dll
2023-06-15 21:57:59 ----A---- C:\WINDOWS\explorer.exe
2023-06-15 21:57:58 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2023-06-15 21:57:58 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2023-06-15 21:57:58 ----A---- C:\WINDOWS\system32\PrinterCleanupTask.dll
2023-06-15 21:57:58 ----A---- C:\WINDOWS\system32\PCPKsp.dll
2023-06-15 21:57:58 ----A---- C:\WINDOWS\system32\MitigationClient.dll
2023-06-15 21:57:58 ----A---- C:\WINDOWS\system32\localspl.dll
2023-06-15 21:57:58 ----A---- C:\WINDOWS\system32\FaxPrinterInstaller.dll
2023-06-15 21:57:58 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2023-06-15 21:57:58 ----A---- C:\WINDOWS\system32\AppListBackupLauncher.dll
2023-06-15 21:57:57 ----A---- C:\WINDOWS\system32\mssecuser.dll
2023-06-15 21:57:57 ----A---- C:\WINDOWS\system32\drivers\mssecflt.sys
2023-06-15 21:57:56 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2023-06-15 21:57:56 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2023-06-15 21:57:56 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2023-06-15 21:57:56 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2023-06-15 21:57:56 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2023-06-15 21:57:56 ----A---- C:\WINDOWS\system32\drivers\hidspi.sys
2023-06-15 21:57:56 ----A---- C:\WINDOWS\system32\drivers\hidparse.sys
2023-06-15 21:57:56 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2023-06-15 21:57:56 ----A---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2023-06-15 21:57:56 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2023-06-15 21:48:44 ----HD---- C:\$WinREAgent
2023-06-15 21:48:37 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2023-06-15 21:48:36 ----A---- C:\WINDOWS\system32\poqexec.exe
2023-06-15 17:34:25 ----D---- C:\Program Files\LibreOffice
2023-06-08 22:31:41 ----A---- C:\WINDOWS\system32\drivers\klupd_klif_arkmon.sys
2023-06-02 22:48:52 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2023-06-02 22:48:52 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2023-06-02 22:48:52 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2023-06-02 22:48:52 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2023-06-02 22:48:52 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2023-06-02 22:48:52 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2023-06-02 22:48:51 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2023-06-02 22:48:51 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2023-06-02 22:48:51 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2023-06-02 22:48:51 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2023-06-02 22:48:51 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2023-06-02 22:48:51 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2023-06-02 22:48:50 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2023-06-02 22:48:50 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2023-06-02 22:48:50 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2023-06-02 22:48:50 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2023-06-02 22:48:50 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2023-06-02 22:48:50 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2023-06-02 22:48:50 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2023-06-02 22:48:50 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2023-06-02 22:48:49 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2023-06-02 22:48:49 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2023-06-02 22:48:49 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2023-06-02 22:48:49 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2023-06-02 22:48:49 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2023-06-02 22:48:49 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2023-06-02 22:48:49 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2023-06-02 22:48:49 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2023-06-02 22:48:48 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2023-06-02 22:48:47 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2023-06-02 22:48:47 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2023-06-02 22:48:47 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2023-06-02 22:48:47 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2023-06-02 22:48:47 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2023-06-02 22:48:47 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2023-06-02 22:48:46 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2023-06-02 22:48:46 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2023-06-02 22:48:46 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2023-06-02 22:48:46 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2023-06-02 22:48:46 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2023-06-02 22:48:46 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2023-06-02 22:48:46 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2023-06-02 22:48:46 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2023-06-02 22:48:45 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2023-06-02 22:48:45 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2023-06-02 22:48:45 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2023-06-02 22:48:45 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2023-06-02 22:48:45 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2023-06-02 22:48:45 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2023-06-02 22:48:45 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2023-06-02 22:48:45 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2023-06-02 22:48:44 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2023-06-02 22:48:44 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2023-06-02 22:48:44 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2023-06-02 22:48:44 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2023-06-02 22:48:44 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2023-06-02 22:48:44 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2023-06-02 22:48:44 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2023-06-02 22:48:44 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2023-06-02 22:48:43 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2023-06-02 22:48:43 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2023-06-02 22:48:43 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2023-06-02 22:48:43 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2023-06-02 22:48:43 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2023-06-02 22:48:43 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2023-06-02 22:48:42 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2023-06-02 22:48:42 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2023-06-02 22:48:42 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2023-06-02 22:48:42 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2023-06-02 22:48:42 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2023-06-02 22:48:42 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2023-06-02 22:48:41 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2023-06-02 22:48:41 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2023-06-02 22:48:41 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2023-06-02 22:48:41 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2023-06-02 22:48:41 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2023-06-02 22:48:41 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2023-06-02 22:48:41 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2023-06-02 22:48:41 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2023-06-02 22:48:40 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2023-06-02 22:48:40 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2023-06-02 22:48:40 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2023-06-02 22:48:40 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2023-06-02 22:48:40 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2023-06-02 22:48:40 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2023-06-02 22:48:39 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2023-06-02 22:48:39 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2023-06-02 22:48:39 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2023-06-02 22:48:39 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2023-06-02 22:48:39 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2023-06-02 22:48:39 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2023-06-02 22:48:38 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2023-06-02 22:48:38 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2023-06-02 22:48:38 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2023-06-02 22:48:38 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2023-06-02 22:48:38 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2023-06-02 22:48:38 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2023-06-02 22:48:38 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2023-06-02 22:48:38 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2023-06-02 22:48:38 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2023-06-02 22:48:38 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2023-06-02 22:48:37 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2023-06-02 22:48:37 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2023-06-02 22:48:37 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2023-06-02 22:48:37 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2023-06-02 22:48:36 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2023-06-02 22:48:36 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2023-06-02 22:48:36 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2023-06-02 22:48:36 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2023-06-02 22:48:36 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2023-06-02 22:48:36 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2023-06-02 22:48:36 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2023-06-02 22:48:36 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2023-06-02 22:48:36 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2023-06-02 22:48:36 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2023-06-02 22:48:35 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2023-06-02 22:48:35 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_32.dll
2023-06-02 22:48:35 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2023-06-02 22:48:35 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2023-06-02 22:48:35 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2023-06-02 22:48:35 ----A---- C:\WINDOWS\system32\d3dx10.dll
2023-06-02 22:48:34 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2023-06-02 22:48:34 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2023-06-02 22:48:34 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2023-06-02 22:48:34 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2023-06-02 22:48:34 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2023-06-02 22:48:34 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2023-06-02 22:48:34 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2023-06-02 22:48:34 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2023-06-02 22:48:34 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2023-06-02 22:48:34 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2023-06-02 22:48:33 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2023-06-02 22:48:33 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2023-06-02 22:48:33 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2023-06-02 22:48:33 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2023-06-02 22:48:32 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2023-06-02 22:48:32 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2023-06-02 22:48:32 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2023-06-02 22:48:32 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2023-06-02 22:48:32 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2023-06-02 22:48:32 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2023-06-02 22:48:31 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2023-06-02 22:48:31 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2023-06-02 22:48:31 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2023-06-02 22:48:31 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2023-06-02 22:48:30 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2023-06-02 22:48:30 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2023-06-02 22:46:06 ----D---- C:\WINDOWS\SYSWOW64\directx
2023-06-02 22:36:57 ----D---- C:\Games
2023-06-01 18:43:51 ----A---- C:\WINDOWS\system32\drivers\klupd_klif_klark.sys
2023-06-01 18:43:46 ----A---- C:\WINDOWS\system32\drivers\klupd_klif_klbg.sys
2023-06-01 18:43:45 ----A---- C:\WINDOWS\system32\drivers\klupd_klif_mark.sys
2023-05-15 22:27:57 ----D---- C:\Program Files (x86)\Google
2023-05-14 19:33:13 ----A---- C:\WINDOWS\SYSWOW64\ConsoleLogon.dll
2023-05-14 19:33:12 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2023-05-14 19:33:11 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2023-05-14 19:33:07 ----A---- C:\WINDOWS\SYSWOW64\quickassist.exe
2023-05-14 19:33:07 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2023-05-14 19:33:07 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2023-05-14 19:33:05 ----A---- C:\WINDOWS\system32\mfsvr.dll
2023-05-14 19:33:00 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2023-05-14 19:33:00 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2023-05-14 19:33:00 ----A---- C:\WINDOWS\SYSWOW64\fwcfg.dll
2023-05-14 19:33:00 ----A---- C:\WINDOWS\SYSWOW64\CheckNetIsolation.exe
2023-05-14 19:33:00 ----A---- C:\WINDOWS\SYSWOW64\authfwcfg.dll
2023-05-14 19:32:59 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2023-05-14 19:32:57 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2023-05-14 19:32:57 ----A---- C:\WINDOWS\SYSWOW64\smphost.dll
2023-05-14 19:32:57 ----A---- C:\WINDOWS\SYSWOW64\imapi.dll
2023-05-14 19:32:57 ----A---- C:\WINDOWS\SYSWOW64\cleanmgr.exe
2023-05-14 19:32:56 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2023-05-14 19:32:55 ----A---- C:\WINDOWS\system32\termsrv.dll
2023-05-14 19:32:55 ----A---- C:\WINDOWS\system32\rdsdwmdr.dll
2023-05-14 19:32:55 ----A---- C:\WINDOWS\system32\PktMonApi.dll
2023-05-14 19:32:55 ----A---- C:\WINDOWS\system32\PktMon.exe
2023-05-14 19:32:55 ----A---- C:\WINDOWS\system32\drivers\PktMon.sys
2023-05-14 19:32:55 ----A---- C:\WINDOWS\system32\CXHProvisioningServer.dll
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\SnippingTool.exe
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\rdpudd.dll
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\rdpcredentialprovider.dll
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\rdpcore.dll
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\nshwfp.dll
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\nltest.exe
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\mmc.exe
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\fwcfg.dll
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\CheckNetIsolation.exe
2023-05-14 19:32:54 ----A---- C:\WINDOWS\system32\authfwcfg.dll
2023-05-14 19:32:53 ----A---- C:\WINDOWS\system32\ieproxy.dll
2023-05-14 19:32:51 ----A---- C:\WINDOWS\system32\wsecedit.dll
2023-05-14 19:32:51 ----A---- C:\WINDOWS\system32\StorSvc.dll
2023-05-14 19:32:51 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2023-05-14 19:32:51 ----A---- C:\WINDOWS\system32\imapi.dll
2023-05-14 19:32:51 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2023-05-14 19:32:50 ----A---- C:\WINDOWS\system32\smphost.dll
2023-05-14 19:32:50 ----A---- C:\WINDOWS\system32\mispace.dll
2023-05-14 19:32:50 ----A---- C:\WINDOWS\system32\DAFESCL.dll
2023-05-14 19:32:49 ----A---- C:\WINDOWS\system32\sdshext.dll
2023-05-14 19:32:49 ----A---- C:\WINDOWS\system32\sdrsvc.dll
2023-05-14 19:32:49 ----A---- C:\WINDOWS\system32\sdengin2.dll
2023-05-14 19:32:49 ----A---- C:\WINDOWS\system32\sdclt.exe
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.Workflow.Native.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.Workflow.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\scecli.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\rastlsext.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\PrintWorkflowService.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\Print.Workflow.Source.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\Print.PrintSupport.Source.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\npmproxy.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\nlmsprep.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\nlmproxy.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\netprovisionsp.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\netprovfw.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\netprofm.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\joinutil.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\SYSWOW64\joinproviderol.dll
2023-05-14 19:32:48 ----A---- C:\WINDOWS\system32\SecureBootEncodeUEFI.exe
2023-05-14 19:32:47 ----A---- C:\WINDOWS\SYSWOW64\userinitext.dll
2023-05-14 19:32:47 ----A---- C:\WINDOWS\SYSWOW64\netjoin.dll
2023-05-14 19:32:47 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2023-05-14 19:32:47 ----A---- C:\WINDOWS\SYSWOW64\AuthFWGP.dll
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\weretw.dll
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\werdiagcontroller.dll
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\userinit.exe
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\dmcmnutils.dll
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\BitLockerCsp.dll
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\AuthFWWizFwk.dll
2023-05-14 19:32:45 ----A---- C:\WINDOWS\SYSWOW64\AuthFWSnapin.dll
2023-05-14 19:32:44 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2023-05-14 19:32:44 ----A---- C:\WINDOWS\SYSWOW64\shimeng.dll
2023-05-14 19:32:44 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2023-05-14 19:32:44 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2023-05-14 19:32:44 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2023-05-14 19:32:44 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2023-05-14 19:32:44 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2023-05-14 19:32:43 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2023-05-14 19:32:43 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2023-05-14 19:32:43 ----A---- C:\WINDOWS\SYSWOW64\webauthn.dll
2023-05-14 19:32:43 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2023-05-14 19:32:43 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2023-05-14 19:32:43 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2023-05-14 19:32:43 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2023-05-14 19:32:43 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2023-05-14 19:32:43 ----A---- C:\WINDOWS\SYSWOW64\coreglobconfig.dll
2023-05-14 19:32:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2023-05-14 19:32:42 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountWAMExtension.dll
2023-05-14 19:32:42 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2023-05-14 19:32:42 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2023-05-14 19:32:42 ----A---- C:\WINDOWS\SYSWOW64\cdprt.dll
2023-05-14 19:32:42 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2023-05-14 19:32:41 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2023-05-14 19:32:41 ----A---- C:\WINDOWS\SYSWOW64\netplwiz.dll
2023-05-14 19:32:41 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_9.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\SYSWOW64\TpmCertResources.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\system32\winlogonext.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\system32\usercpl.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\system32\netplwiz.dll
2023-05-14 19:32:40 ----A---- C:\WINDOWS\system32\authui.dll
2023-05-14 19:32:39 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.Native.dll
2023-05-14 19:32:39 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2023-05-14 19:32:39 ----A---- C:\WINDOWS\system32\sstpsvc.dll
2023-05-14 19:32:39 ----A---- C:\WINDOWS\system32\scesrv.dll
2023-05-14 19:32:39 ----A---- C:\WINDOWS\system32\scecli.dll
2023-05-14 19:32:39 ----A---- C:\WINDOWS\system32\rastlsext.dll
2023-05-14 19:32:39 ----A---- C:\WINDOWS\system32\rastls.dll
2023-05-14 19:32:39 ----A---- C:\WINDOWS\system32\PrintWorkflowService.dll
2023-05-14 19:32:39 ----A---- C:\WINDOWS\system32\Print.Workflow.Source.dll
2023-05-14 19:32:39 ----A---- C:\WINDOWS\system32\Print.PrintSupport.Source.dll
2023-05-14 19:32:38 ----A---- C:\WINDOWS\system32\netprovisionsp.dll
2023-05-14 19:32:38 ----A---- C:\WINDOWS\system32\netprovfw.dll
2023-05-14 19:32:38 ----A---- C:\WINDOWS\system32\netjoin.dll
2023-05-14 19:32:38 ----A---- C:\WINDOWS\system32\joinutil.dll
2023-05-14 19:32:38 ----A---- C:\WINDOWS\system32\joinproviderol.dll
2023-05-14 19:32:38 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2023-05-14 19:32:36 ----A---- C:\WINDOWS\system32\userinitext.dll
2023-05-14 19:32:36 ----A---- C:\WINDOWS\system32\gdi32full.dll
2023-05-14 19:32:36 ----A---- C:\WINDOWS\system32\efscore.dll
2023-05-14 19:32:36 ----A---- C:\WINDOWS\system32\BitLockerCsp.dll
2023-05-14 19:32:36 ----A---- C:\WINDOWS\system32\AuthFWWizFwk.dll
2023-05-14 19:32:36 ----A---- C:\WINDOWS\system32\AuthFWSnapin.dll
2023-05-14 19:32:36 ----A---- C:\WINDOWS\system32\AuthFWGP.dll
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\winlogon.exe
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\usermgr.dll
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\shutdownux.dll
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\policymanager.dll
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\LogonController.dll
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\dmcmnutils.dll
2023-05-14 19:32:35 ----A---- C:\WINDOWS\system32\configmanager2.dll
2023-05-14 19:32:34 ----A---- C:\WINDOWS\system32\sechost.dll
2023-05-14 19:32:34 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\wermgr.exe
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\weretw.dll
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\wer.dll
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\userinit.exe
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\tzres.dll
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\profsvc.dll
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\dcntel.dll
2023-05-14 19:32:33 ----A---- C:\WINDOWS\system32\authz.dll
2023-05-14 19:32:32 ----A---- C:\WINDOWS\system32\ole32.dll
2023-05-14 19:32:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2023-05-14 19:32:32 ----A---- C:\WINDOWS\system32\dcomp.dll
2023-05-14 19:32:32 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\shimeng.dll
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\SettingsHandlers_Region.dll
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\SettingsHandlers_Language.dll
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\SettingsHandlers_Display.dll
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\sdbinst.exe
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\QuietHours.dll
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\InputCloudStore.dll
2023-05-14 19:32:31 ----A---- C:\WINDOWS\system32\apphelp.dll
2023-05-14 19:32:30 ----A---- C:\WINDOWS\system32\SettingsHandlers_User.dll
2023-05-14 19:32:29 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2023-05-14 19:32:29 ----A---- C:\WINDOWS\system32\wci.dll
2023-05-14 19:32:29 ----A---- C:\WINDOWS\system32\MusNotifyIcon.exe
2023-05-14 19:32:29 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2023-05-14 19:32:29 ----A---- C:\WINDOWS\system32\MusNotification.exe
2023-05-14 19:32:29 ----A---- C:\WINDOWS\system32\drivers\wcifs.sys
2023-05-14 19:32:29 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2023-05-14 19:32:28 ----A---- C:\WINDOWS\system32\wfapigp.dll
2023-05-14 19:32:28 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2023-05-14 19:32:28 ----A---- C:\WINDOWS\system32\icfupgd.dll
2023-05-14 19:32:28 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2023-05-14 19:32:28 ----A---- C:\WINDOWS\system32\fwmdmcsp.dll
2023-05-14 19:32:28 ----A---- C:\WINDOWS\system32\fwbase.dll
2023-05-14 19:32:28 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2023-05-14 19:32:26 ----A---- C:\WINDOWS\system32\wintrust.dll
2023-05-14 19:32:26 ----A---- C:\WINDOWS\system32\webauthn.dll
2023-05-14 19:32:26 ----A---- C:\WINDOWS\system32\coreglobconfig.dll
2023-05-14 19:32:25 ----A---- C:\WINDOWS\system32\gdi32.dll
2023-05-14 19:32:25 ----A---- C:\WINDOWS\system32\d3d11.dll
2023-05-14 19:32:18 ----A---- C:\WINDOWS\system32\VaultCDS.dll
2023-05-14 19:32:18 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2023-05-14 19:32:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2023-05-14 19:32:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2023-05-14 19:32:18 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2023-05-14 19:32:18 ----A---- C:\WINDOWS\system32\cdd.dll
2023-05-14 19:32:18 ----A---- C:\WINDOWS\system32\aadtb.dll
2023-05-14 19:32:17 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2023-05-14 19:32:17 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2023-05-14 19:32:17 ----A---- C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2023-05-14 19:32:16 ----A---- C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2023-05-14 19:32:16 ----A---- C:\WINDOWS\system32\Windows.CloudStore.dll
2023-05-14 19:32:16 ----A---- C:\WINDOWS\system32\StartTileData.dll
2023-05-14 19:32:16 ----A---- C:\WINDOWS\system32\cdprt.dll
2023-05-14 19:32:15 ----A---- C:\WINDOWS\system32\Windows.Internal.Signals.dll
2023-05-14 19:32:15 ----A---- C:\WINDOWS\system32\win32spl.dll
2023-05-14 19:32:15 ----A---- C:\WINDOWS\system32\WiFiCloudStore.dll
2023-05-14 19:32:15 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2023-05-14 19:32:15 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2023-05-14 19:32:15 ----A---- C:\WINDOWS\system32\TpmCertResources.dll
2023-05-14 19:32:15 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2023-05-14 19:32:15 ----A---- C:\WINDOWS\system32\SettingSync.dll
2023-05-14 19:32:15 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2023-05-14 19:32:15 ----A---- C:\WINDOWS\system32\advapi32.dll
2023-05-14 19:32:14 ----A---- C:\WINDOWS\system32\XAudio2_9.dll
2023-05-14 19:32:14 ----A---- C:\WINDOWS\system32\PinEnrollmentHelper.dll
2023-05-14 19:32:14 ----A---- C:\WINDOWS\system32\ManageCI.dll
2023-05-14 19:32:14 ----A---- C:\WINDOWS\system32\HrtfApo.dll
2023-05-14 19:32:14 ----A---- C:\WINDOWS\system32\drivers\PEAuth.sys
2023-05-14 19:32:14 ----A---- C:\WINDOWS\system32\deviceregistration.dll
2023-05-14 19:32:13 ----A---- C:\WINDOWS\system32\iscsilog.dll
2023-05-14 19:32:13 ----A---- C:\WINDOWS\system32\drivers\storufs.sys
2023-05-14 19:32:13 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2023-05-14 19:32:13 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2023-05-14 19:32:13 ----A---- C:\WINDOWS\system32\drivers\BthMini.SYS
2023-05-14 19:32:13 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2023-05-14 19:32:12 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys
2023-04-17 10:59:50 ----A---- C:\WINDOWS\system32\drivers\VBoxNetLwf.sys
2023-04-17 10:59:48 ----A---- C:\WINDOWS\system32\drivers\VBoxNetAdp6.sys
2023-04-14 19:34:51 ----D---- C:\Users\Администратор\AppData\Roaming\Telegram Desktop
2023-04-13 19:36:24 ----D---- C:\WINDOWS\system32\drivers\mde
2023-04-13 18:33:24 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2023-04-13 18:33:24 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2023-04-13 18:33:24 ----A---- C:\WINDOWS\system32\fveapibase.dll
2023-04-13 18:33:24 ----A---- C:\WINDOWS\system32\fveapi.dll
2023-04-13 18:33:24 ----A---- C:\WINDOWS\system32\BdeUISrv.exe
2023-04-13 18:33:24 ----A---- C:\WINDOWS\system32\bdesvc.dll
2023-04-13 18:33:16 ----A---- C:\WINDOWS\system32\windowsdefenderapplicationguardcsp.dll
2023-04-13 18:33:16 ----A---- C:\WINDOWS\system32\hvsigpext.dll
2023-04-13 18:33:16 ----A---- C:\WINDOWS\system32\hvsievaluator.exe
2023-04-13 18:33:16 ----A---- C:\WINDOWS\system32\drivers\mqac.sys
2023-04-13 18:33:15 ----A---- C:\WINDOWS\system32\AssignedAccessShellProxy.dll
2023-04-13 18:33:14 ----A---- C:\WINDOWS\SYSWOW64\provplatformdesktop.dll
2023-04-13 18:33:14 ----A---- C:\WINDOWS\SYSWOW64\provmigrate.dll
2023-04-13 18:33:14 ----A---- C:\WINDOWS\SYSWOW64\provlaunch.exe
2023-04-13 18:33:14 ----A---- C:\WINDOWS\SYSWOW64\provisioningcommandscsp.dll
2023-04-13 18:33:13 ----A---- C:\WINDOWS\SYSWOW64\wshrm.dll
2023-04-13 18:33:13 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2023-04-13 18:33:13 ----A---- C:\WINDOWS\SYSWOW64\certmgr.dll
2023-04-13 18:33:12 ----A---- C:\WINDOWS\SYSWOW64\upnp.dll
2023-04-13 18:33:12 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2023-04-13 18:33:12 ----A---- C:\WINDOWS\SYSWOW64\curl.exe
2023-04-13 18:33:11 ----A---- C:\WINDOWS\system32\wslapi.dll
2023-04-13 18:33:11 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2023-04-13 18:33:11 ----A---- C:\WINDOWS\system32\provplatformdesktop.dll
2023-04-13 18:33:11 ----A---- C:\WINDOWS\system32\provmigrate.dll
2023-04-13 18:33:11 ----A---- C:\WINDOWS\system32\provlaunch.exe
2023-04-13 18:33:11 ----A---- C:\WINDOWS\system32\provisioningcommandscsp.dll
2023-04-13 18:33:10 ----A---- C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2023-04-13 18:33:10 ----A---- C:\WINDOWS\system32\DscCore.dll
2023-04-13 18:33:10 ----A---- C:\WINDOWS\system32\certmgr.dll
2023-04-13 18:33:08 ----A---- C:\WINDOWS\system32\mshta.exe
2023-04-13 18:33:08 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2023-04-13 18:33:08 ----A---- C:\WINDOWS\system32\edpcsp.dll
2023-04-13 18:33:08 ----A---- C:\WINDOWS\system32\EDPCleanup.exe
2023-04-13 18:33:08 ----A---- C:\WINDOWS\system32\curl.exe
2023-04-13 18:33:05 ----A---- C:\WINDOWS\system32\upnp.dll
2023-04-13 18:33:05 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2023-04-13 18:33:05 ----A---- C:\WINDOWS\system32\ssdpapi.dll
2023-04-13 18:33:04 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2023-04-13 18:33:04 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2023-04-13 18:33:04 ----A---- C:\WINDOWS\SYSWOW64\EsdSip.dll
2023-04-13 18:33:04 ----A---- C:\WINDOWS\SYSWOW64\dsprop.dll
2023-04-13 18:33:04 ----A---- C:\WINDOWS\SYSWOW64\DMAlertListener.ProxyStub.dll
2023-04-13 18:33:04 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2023-04-13 18:33:04 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\vss_ps.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\unenrollhook.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\setupcl.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\omadmapi.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\offlinesam.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\NtlmShared.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\ncrypt.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\keyiso.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\enterpriseresourcemanager.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\dbgcore.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\credui.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2023-04-13 18:33:03 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2023-04-13 18:33:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Management.Workplace.dll
2023-04-13 18:33:02 ----A---- C:\WINDOWS\SYSWOW64\tzautoupdate.dll
2023-04-13 18:33:02 ----A---- C:\WINDOWS\SYSWOW64\mskeyprotect.dll
2023-04-13 18:33:02 ----A---- C:\WINDOWS\SYSWOW64\EnterpriseAppMgmtClient.dll
2023-04-13 18:33:02 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2023-04-13 18:33:02 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2023-04-13 18:33:01 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2023-04-13 18:33:01 ----A---- C:\WINDOWS\SYSWOW64\PhoneOm.dll
2023-04-13 18:33:01 ----A---- C:\WINDOWS\SYSWOW64\fidocredprov.dll
2023-04-13 18:33:01 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2023-04-13 18:33:00 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2023-04-13 18:33:00 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2023-04-13 18:33:00 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2023-04-13 18:32:59 ----A---- C:\WINDOWS\SYSWOW64\sxstrace.exe
2023-04-13 18:32:59 ----A---- C:\WINDOWS\SYSWOW64\sxs.dll
2023-04-13 18:32:59 ----A---- C:\WINDOWS\SYSWOW64\msobjs.dll
2023-04-13 18:32:59 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2023-04-13 18:32:59 ----A---- C:\WINDOWS\SYSWOW64\LicensingWinRT.dll
2023-04-13 18:32:59 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2023-04-13 18:32:58 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2023-04-13 18:32:58 ----A---- C:\WINDOWS\system32\vpnike.dll
2023-04-13 18:32:58 ----A---- C:\WINDOWS\system32\lsm.dll
2023-04-13 18:32:58 ----A---- C:\WINDOWS\system32\drivers\raspppoe.sys
2023-04-13 18:32:58 ----A---- C:\WINDOWS\system32\drivers\ndiswan.sys
2023-04-13 18:32:58 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2023-04-13 18:32:56 ----A---- C:\WINDOWS\system32\lapscsp.dll
2023-04-13 18:32:56 ----A---- C:\WINDOWS\system32\gpsvc.dll
2023-04-13 18:32:56 ----A---- C:\WINDOWS\system32\gpapi.dll
2023-04-13 18:32:56 ----A---- C:\WINDOWS\system32\EsdSip.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\Win32AppSettingsProvider.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\unenrollhook.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\tdh.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\sxstrace.exe
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\sxssrv.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\sxs.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\prauthproviders.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\omadmprc.exe
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\omadmapi.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\enterpriseresourcemanager.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\dynamoapi.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\dsprop.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\DMPushRouterCore.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\DmOmaCpMo.exe
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\dmenterprisediagnostics.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\dmcsps.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\declaredconfiguration.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\dcsvc.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\d3d9.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\d3d8thk.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\credui.dll
2023-04-13 18:32:55 ----A---- C:\WINDOWS\system32\coredpus.dll
2023-04-13 18:32:54 ----A---- C:\WINDOWS\system32\LicensingWinRT.dll
2023-04-13 18:32:53 ----A---- C:\WINDOWS\system32\services.exe
2023-04-13 18:32:53 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2023-04-13 18:32:53 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2023-04-13 18:32:53 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2023-04-13 18:32:53 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2023-04-13 18:32:52 ----A---- C:\WINDOWS\system32\msobjs.dll
2023-04-13 18:32:52 ----A---- C:\WINDOWS\system32\msaudite.dll
2023-04-13 18:32:52 ----A---- C:\WINDOWS\system32\dbgcore.dll
2023-04-13 18:32:52 ----A---- C:\WINDOWS\system32\adtschema.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\wldp.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\WinTypes.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\wincorlib.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\samsrv.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\samlib.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\rpcss.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\offlinesam.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\NtlmShared.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\ncrypt.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\keyiso.dll
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\IPHLPAPI.DLL
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2023-04-13 18:32:51 ----A---- C:\WINDOWS\system32\combase.dll
2023-04-13 18:32:50 ----A---- C:\WINDOWS\system32\setupcl.dll
2023-04-13 18:32:49 ----A---- C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2023-04-13 18:32:49 ----A---- C:\WINDOWS\system32\osk.exe
2023-04-13 18:32:48 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2023-04-13 18:32:48 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2023-04-13 18:32:47 ----A---- C:\WINDOWS\system32\vss_ps.dll
2023-04-13 18:32:47 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2023-04-13 18:32:46 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2023-04-13 18:32:46 ----A---- C:\WINDOWS\system32\user32.dll
2023-04-13 18:32:46 ----A---- C:\WINDOWS\system32\MdmDiagnosticsTool.exe
2023-04-13 18:32:46 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2023-04-13 18:32:46 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2023-04-13 18:32:46 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2023-04-13 18:32:46 ----A---- C:\WINDOWS\system32\EAMProgressHandler.dll
2023-04-13 18:32:46 ----A---- C:\WINDOWS\system32\drivers\ipnat.sys
2023-04-13 18:32:45 ----A---- C:\WINDOWS\system32\windows.storage.dll
2023-04-13 18:32:45 ----A---- C:\WINDOWS\system32\PhoneOm.dll
2023-04-13 18:32:45 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2023-04-13 18:32:45 ----A---- C:\WINDOWS\system32\fidocredprov.dll
2023-04-13 18:32:45 ----A---- C:\WINDOWS\system32\esent.dll
2023-04-13 18:32:45 ----A---- C:\WINDOWS\system32\AppxSip.dll
2023-04-13 18:32:45 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2023-04-13 18:32:44 ----A---- C:\WINDOWS\system32\FntCache.dll
2023-04-13 18:32:44 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2023-04-13 18:32:33 ----A---- C:\WINDOWS\system32\Windows.Management.Workplace.dll
2023-04-13 18:32:33 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2023-04-13 18:32:33 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2023-04-13 18:32:33 ----A---- C:\WINDOWS\system32\mskeyprotect.dll
2023-04-13 18:32:33 ----A---- C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2023-04-13 18:32:33 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2023-04-13 18:32:33 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2023-04-13 18:32:32 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2023-04-13 18:32:32 ----A---- C:\WINDOWS\system32\pkeyhelper.dll
2023-04-13 18:32:32 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2023-04-13 18:32:31 ----A---- C:\WINDOWS\system32\spoolsv.exe
2023-04-13 18:32:31 ----A---- C:\WINDOWS\splwow64.exe
2023-04-13 18:32:30 ----A---- C:\WINDOWS\system32\ofdeploy.exe
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\Windows.Management.Service.dll
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\Windows.Management.ModernDeployment.ConfigProviders.dll
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\PhoneServiceRes.dll
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\PhoneService.dll
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\OmaDmAgent.dll
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\lpasvc.dll
2023-04-13 18:32:29 ----A---- C:\WINDOWS\system32\autopilot.dll
2023-04-13 18:32:28 ----A---- C:\WINDOWS\system32\mssecwfpu.dll
2023-04-13 18:32:28 ----A---- C:\WINDOWS\system32\drivers\mssecwfp.sys
2023-04-13 18:32:28 ----A---- C:\WINDOWS\system32\drivers\msseccore.sys
2023-04-13 18:32:27 ----A---- C:\WINDOWS\system32\ClipRenew.exe
2023-04-13 18:32:26 ----A---- C:\WINDOWS\system32\drivers\usbprint.sys
2023-04-13 18:32:26 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2023-04-13 18:32:26 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2023-04-13 18:32:26 ----A---- C:\WINDOWS\system32\drivers\spacedump.sys

====== Список файлов и папок, измененных за последние 3 месяца ======

2023-06-29 22:53:27 ----D---- C:\WINDOWS\Prefetch
2023-06-29 22:53:14 ----D---- C:\WINDOWS\Temp
2023-06-29 22:52:07 ----D---- C:\WINDOWS\SystemTemp
2023-06-29 22:51:40 ----D---- C:\WINDOWS\system32\Tasks
2023-06-29 22:49:39 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2023-06-29 22:49:36 ----SHD---- C:\System Volume Information
2023-06-29 22:49:33 ----D---- C:\ProgramData\NVIDIA
2023-06-29 22:49:31 ----ASH---- C:\DumpStack.log.tmp
2023-06-29 22:48:45 ----D---- C:\WINDOWS\system32\sru
2023-06-29 22:48:45 ----D---- C:\WINDOWS\system32\catroot2
2023-06-29 22:44:13 ----D---- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-06-29 22:42:19 ----D---- C:\WINDOWS\System32
2023-06-29 22:42:19 ----D---- C:\WINDOWS\INF
2023-06-29 22:42:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2023-06-29 22:36:11 ----D---- C:\WINDOWS\system32\SleepStudy
2023-06-29 18:18:16 ----D---- C:\Users\Администратор\AppData\Roaming\uTorrent
2023-06-29 18:17:17 ----D---- C:\Windows
2023-06-29 13:26:09 ----D---- C:\WINDOWS\system32\config
2023-06-29 13:21:24 ----D---- C:\Program Files (x86)\AnyDesk
2023-06-29 13:16:23 ----HD---- C:\Program Files\WindowsApps
2023-06-29 13:16:23 ----D---- C:\WINDOWS\AppReadiness
2023-06-29 13:15:59 ----D---- C:\WINDOWS\Logs
2023-06-29 13:15:58 ----RD---- C:\Program Files
2023-06-28 23:30:26 ----SHD---- C:\WINDOWS\Installer
2023-06-28 23:26:05 ----RD---- C:\Program Files (x86)
2023-06-28 23:09:20 ----D---- C:\Users\Администратор\AppData\Roaming\ChemTable Software
2023-06-28 22:52:47 ----D---- C:\WINDOWS\WinSxS
2023-06-28 22:48:00 ----D---- C:\WINDOWS\debug
2023-06-28 19:45:55 ----D---- C:\Users\Администратор\AppData\Roaming\vlc
2023-06-28 19:15:29 ----D---- C:\Users\Администратор\AppData\Roaming\ViberPC
2023-06-28 19:14:20 ----SD---- C:\Users\Администратор\AppData\Roaming\Microsoft
2023-06-28 18:15:17 ----RD---- C:\WINDOWS\Microsoft.NET
2023-06-25 14:09:35 ----D---- C:\Program Files\Mozilla Firefox
2023-06-25 14:09:35 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2023-06-16 20:59:32 ----D---- C:\WINDOWS\Performance
2023-06-16 14:56:04 ----RSD---- C:\WINDOWS\assembly
2023-06-16 07:09:01 ----D---- C:\WINDOWS\system32\DriverStore
2023-06-16 07:08:57 ----SHD---- C:\Boot
2023-06-16 07:08:06 ----D---- C:\WINDOWS\system32\drivers
2023-06-15 23:55:03 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2023-06-15 23:55:03 ----D---- C:\WINDOWS\SYSWOW64\sppui
2023-06-15 23:55:03 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2023-06-15 23:55:03 ----D---- C:\WINDOWS\SYSWOW64\migration
2023-06-15 23:55:03 ----D---- C:\WINDOWS\SysWOW64
2023-06-15 23:55:02 ----D---- C:\WINDOWS\SystemResources
2023-06-15 23:55:02 ----D---- C:\WINDOWS\system32\WinMetadata
2023-06-15 23:55:01 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\wbem
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\sppui
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\ru-RU
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\oobe
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\nl-NL
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\migwiz
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\migration
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\fr-FR
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\fr-CA
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\en-US
2023-06-15 23:55:01 ----D---- C:\WINDOWS\system32\Boot
2023-06-15 23:55:01 ----D---- C:\WINDOWS\ShellExperiences
2023-06-15 23:55:00 ----D---- C:\WINDOWS\bcastdvr
2023-06-15 23:55:00 ----D---- C:\Program Files\Windows Defender Advanced Threat Protection
2023-06-15 23:55:00 ----D---- C:\Program Files\Internet Explorer
2023-06-15 23:54:57 ----D---- C:\WINDOWS\system32\drivers\UMDF
2023-06-15 22:01:29 ----D---- C:\WINDOWS\CbsTemp
2023-06-15 21:57:57 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2023-06-15 17:34:26 ----RSD---- C:\WINDOWS\Fonts
2023-06-15 17:31:10 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
2023-06-15 17:29:47 ----D---- C:\Program Files\Far Manager
2023-06-14 20:24:09 ----D---- C:\WINDOWS\system32\MRT
2023-06-14 20:20:50 ----AC---- C:\WINDOWS\system32\MRT.exe
2023-06-08 22:18:35 ----D---- C:\Program Files (x86)\Microsoft
2023-06-04 21:10:20 ----D---- C:\WINDOWS\system32\WDI
2023-06-03 16:50:30 ----D---- C:\Users\Администратор\AppData\Roaming\AnyDesk
2023-06-02 23:43:37 ----D---- C:\WINDOWS\SoftwareDistribution
2023-06-02 23:22:01 ----D---- C:\WINDOWS\system32\Logs
2023-06-02 23:22:01 ----D---- C:\WINDOWS\system32\CatRoot
2023-05-24 19:01:09 ----D---- C:\ProgramData\Kaspersky Lab
2023-05-24 19:01:09 ----D---- C:\Program Files (x86)\Kaspersky Lab
2023-05-14 22:13:14 ----D---- C:\WINDOWS\SYSWOW64\wbem
2023-05-14 22:13:14 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2023-05-14 22:13:14 ----D---- C:\WINDOWS\SYSWOW64\ru
2023-05-14 22:13:14 ----D---- C:\WINDOWS\SYSWOW64\en-US
2023-05-14 22:13:14 ----D---- C:\WINDOWS\SYSWOW64\en
2023-05-14 22:13:14 ----D---- C:\WINDOWS\SYSWOW64\drivers\ru-RU
2023-05-14 22:13:14 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2023-05-14 22:13:12 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2023-05-14 22:13:12 ----D---- C:\WINDOWS\system32\ru
2023-05-14 22:13:12 ----D---- C:\WINDOWS\system32\en
2023-05-14 22:13:12 ----D---- C:\WINDOWS\system32\drivers\ru-RU
2023-05-14 22:13:12 ----D---- C:\WINDOWS\system32\drivers\en-US
2023-05-14 22:13:12 ----D---- C:\WINDOWS\apppatch
2023-05-14 22:13:12 ----D---- C:\Program Files (x86)\Internet Explorer
2023-05-14 22:13:11 ----D---- C:\WINDOWS\system32\CodeIntegrity
2023-05-06 22:31:08 ----D---- C:\Program Files\Microsoft Update Health Tools
2023-04-29 16:51:58 ----DC---- C:\WINDOWS\system32\DRVSTORE
2023-04-29 16:51:55 ----D---- C:\Program Files\Oracle
2023-04-13 19:36:25 ----D---- C:\WINDOWS\SYSWOW64\Dism
2023-04-13 19:36:24 ----D---- C:\WINDOWS\system32\es-MX
2023-04-13 19:36:24 ----D---- C:\WINDOWS\system32\el-GR
2023-04-13 19:36:24 ----D---- C:\WINDOWS\system32\Dism
2023-04-13 19:36:24 ----D---- C:\WINDOWS\system32\de-DE
2023-04-13 19:36:24 ----D---- C:\WINDOWS\system32\DDFs
2023-04-13 19:36:24 ----D---- C:\WINDOWS\PolicyDefinitions
2023-04-05 21:04:04 ----A---- C:\WINDOWS\system32\sedplugins.dll
2023-04-05 21:04:04 ----A---- C:\WINDOWS\system32\QualityUpdateAssistant.dll

File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed

====== Список драйверов (тип запуска: R=Запущен, S=остановлен, 0=Загрузочный, 1=Системный, 2=Автоматически, 3=Вручную, 4=Отключено) ======

R0 cm_km;AO Kaspersky Lab Cryptographic Module x64 (56 bit); C:\WINDOWS\system32\DRIVERS\cm_km.sys [2022-02-17 237288]
R0 iaStorAC;@oem143.inf,%iaStorAC.ServiceName%;Intel(R) Chipset SATA/PCIe RST Premium Controller; C:\WINDOWS\System32\drivers\iaStorAC.sys [2021-04-20 1489272]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2021-06-14 57168]
R0 klupd_klif_arkmon;klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [2023-06-08 367904]
R0 klupd_klif_klbg;klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [2023-06-01 179864]
R0 MsSecCore;@%SystemRoot%\System32\Drivers\msseccore.sys,-1001; C:\WINDOWS\system32\drivers\msseccore.sys [2023-04-13 26480]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2022-08-11 44032]
R1 AsIO;AsIO; SysWow64\drivers\AsIO.sys []
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2019-12-07 78136]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2023-02-20 95232]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2020-05-30 27552]
R1 klbackupdisk;Kaspersky Lab klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [2022-02-17 105280]
R1 klbackupflt;Kaspersky Lab klbackupflt; C:\WINDOWS\system32\DRIVERS\klbackupflt.sys [2022-02-17 206600]
R1 kldisk;kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [2022-02-17 119568]
R1 klflt;Kaspersky Lab Kernel DLL; C:\WINDOWS\system32\DRIVERS\klflt.sys [2022-02-17 522504]
R1 klgse;Kaspersky Lab Security Extender Driver; C:\WINDOWS\system32\DRIVERS\klgse.sys [2023-04-27 713264]
R1 klhk;Kaspersky Lab service driver; C:\WINDOWS\system32\DRIVERS\klhk.sys [2023-04-27 1826328]
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2022-02-17 1049864]
R1 klim6;@oem165.inf,%KLIM6_Desc%;Kaspersky Anti-Virus NDIS 6 Filter; C:\WINDOWS\system32\DRIVERS\klim6.sys [2022-02-17 90896]
R1 klpd;Kaspersky Lab format recognizer driver; C:\WINDOWS\system32\DRIVERS\klpd.sys [2022-02-17 78088]
R1 klpnpflt;Kaspersky Lab klpnpflt; C:\WINDOWS\system32\DRIVERS\klpnpflt.sys [2022-02-17 88328]
R1 klwfp;klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [2022-02-17 150280]
R1 klwtp;KLwtp - WFP callout traffic inspector; C:\WINDOWS\system32\DRIVERS\klwtp.sys [2022-02-17 325400]
R1 kneps;kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [2022-02-17 294680]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2023-01-12 145760]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2023-06-15 493056]
R2 hcmon;VMware hcmon; C:\WINDOWS\system32\DRIVERS\hcmon.sys [2018-11-02 84752]
R2 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2023-04-13 197120]
R3 cmuda3;@oem20.inf,%CMUDA.SvcDesc%;C-Media PCI Audio Interface; C:\WINDOWS\system32\drivers\cmudax3.sys [2009-05-19 1154560]
R3 dot4;@oem99.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2015-03-23 146856]
R3 Dot4Print;@oem70.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\WINDOWS\System32\drivers\Dot4Prt.sys [2015-03-23 21928]
R3 dot4usb;@oem99.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2015-03-23 43944]
R3 ETDSMBus;ETDSMBus; C:\WINDOWS\system32\DRIVERS\ETDSMBus.sys [2021-05-16 53808]
R3 int0800;@oem83.inf,%Flashud_svcdesc%;Intel 28F320C3 Flash Update Device Driver v6.4; C:\WINDOWS\System32\drivers\flashud.sys [2019-08-28 62984]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [2022-02-17 104728]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2022-02-17 107328]
R3 kltun;@oem84.inf,%devicedescription%;Kaspersky VPN; C:\WINDOWS\system32\DRIVERS\kltun.sys [2023-04-15 86776]
R3 klupd_klif_klark;klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [2023-06-01 350848]
R3 klupd_klif_mark;klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [2023-06-01 259440]
R3 MSHUSBVideo;@oem203.inf,%FilterDisplayName%;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\WINDOWS\System32\Drivers\nx6000.sys [2010-12-13 36720]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-1; C:\WINDOWS\system32\drivers\msquic.sys [2021-03-26 322376]
R3 NVHDA;@oem215.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2020-05-30 206776]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2016-11-14 12905016]
R3 nvvad_WaveExtensible;@oem73.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2021-11-26 48552]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2019-12-07 43832]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2019-12-07 319800]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2019-12-07 884752]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2019-12-07 172344]
S0 klelam;klelam; C:\WINDOWS\system32\DRIVERS\klelam.sys [2021-02-19 41656]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2019-12-07 81720]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2019-12-07 105480]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2019-12-07 168464]
S0 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2022-09-14 142176]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2019-12-07 23040]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2022-01-28 694272]
S3 amdgpio2;@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2019-12-07 18432]
S3 amdi2c;@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2019-12-07 45568]
S3 AmUStor;@oem132.inf,%SERVICE_NAME%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStorU.sys [2021-07-08 150816]
S3 androidusb;ADB Interface Driver; C:\WINDOWS\System32\Drivers\androidusb.sys [2013-07-16 38424]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2023-03-18 18432]
S3 AppvStrm;@%systemroot%\system32\drivers\AppvStrm.sys,-101; C:\WINDOWS\system32\drivers\AppvStrm.sys [2023-03-18 144768]
S3 AppvVemgr;@%systemroot%\system32\drivers\AppvVemgr.sys,-101; C:\WINDOWS\system32\drivers\AppvVemgr.sys [2023-03-18 178224]
S3 AppvVfs;@%systemroot%\system32\drivers\AppvVfs.sys,-101; C:\WINDOWS\system32\drivers\AppvVfs.sys [2023-03-18 158768]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2019-12-07 279040]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2023-05-14 113664]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2021-03-26 106496]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2023-05-14 45568]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\drivers\BTHport.sys [2023-05-14 1565696]
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\drivers\BTHUSB.sys [2023-05-14 110592]
S3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2019-12-07 66576]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2019-12-07 1853752]
S3 Dot4Scan;@oem107.inf,%Dot4Scan_Name%;Scan Class Driver for IEEE-1284.4; C:\WINDOWS\system32\DRIVERS\Dot4Scan.sys [2015-03-23 14760]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2023-06-15 104448]
S3 HidSpiCx;HidSpi KMDF Class Extension; C:\WINDOWS\system32\drivers\HidSpiCx.sys [2023-06-15 98304]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2023-03-18 96112]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2019-12-07 30208]
S3 HyperVideo;HyperVideo; C:\WINDOWS\System32\drivers\HyperVideo.sys [2019-12-07 41784]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2019-12-07 36352]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2019-12-07 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2019-12-07 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2019-12-07 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2019-12-07 96256]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2019-12-07 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2019-12-07 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2019-12-07 177664]
S3 iaStorAfs;@oem143.inf,%iaStorAfs.ServiceName%;iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [2021-04-20 73080]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2021-03-26 47104]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2019-12-07 30720]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2019-12-07 59704]
S3 kbldfltr;kbldfltr; C:\WINDOWS\system32\drivers\kbldfltr.sys [2021-03-26 29000]
S3 klids;klids; \??\C:\ProgramData\Kaspersky Lab\AVP21.3\Bases\klids.sys [2023-06-28 235704]
S3 LHidFilt;@oem45.inf,%LHidFilt.SvcDesc%;Logicool SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2020-10-25 63552]
S3 LMouFilt;@oem45.inf,%LMouFilt.SvcDesc%;Logicool SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2020-10-25 54336]
S3 LUsbFilt;@oem85.inf,%FltDisplayName%;Logitech SetPoint KMDF USB Filter; C:\WINDOWS\System32\Drivers\LUsbFilt.Sys [2018-04-14 50808]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2019-12-07 537608]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2019-12-07 64016]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2022-04-20 386048]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2019-12-07 65024]
S3 MsSecFlt;@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001; C:\WINDOWS\system32\drivers\mssecflt.sys [2023-06-15 351104]
S3 MsSecWfp;@%SystemRoot%\System32\Drivers\mssecwfp.sys,-1001; C:\WINDOWS\system32\drivers\mssecwfp.sys [2023-04-13 29568]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2019-12-07 72720]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2022-04-20 210944]
S3 netvsc;netvsc; C:\WINDOWS\System32\drivers\netvsc.sys [2022-06-17 252264]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2023-05-14 131400]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2019-12-07 17408]
S3 portcfg;portcfg; C:\WINDOWS\System32\drivers\portcfg.sys [2019-12-07 27136]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2019-12-07 35128]

====== Список служб (тип запуска: R=Запущена, S=остановлена, 0=Загрузочная, 1=Системная, 2=Автоматически, 3=Вручную, 4=Отключено) ======

R2 AnyDesk;AnyDesk Service; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [2023-06-28 4038208]
R2 AzureAttestService;AzureAttestService; C:\WINDOWS\system32\svchost.exe -k AzureAttestService;"ServiceDll" = C:\Program Files\Microsoft\AzureAttestService\AzureAttestService.dll
R2 BarTender Integration Service;BarTender Integration Service; C:\Program Files\Seagull\BarTender 2022\Integration.Service.exe [2022-06-06 50856]
R2 BarTender Licensing Service;BarTender Licensing Service; C:\Program Files\Seagull\BarTender 2022\Licensing.Service.exe [2022-06-06 36520]
R2 BarTender Print Scheduler;BarTender Print Scheduler; C:\Program Files\Seagull\BarTender 2022\PrintScheduler.Service.exe [2022-06-06 34984]
R2 BarTender System Service;BarTender System Service; C:\Program Files\Seagull\BarTender 2022\BtSystem.Service.exe [2022-06-06 482472]
R2 CDPUserSvc_4454f;CDPUserSvc_4454f; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = 
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; %SystemRoot%\system32\svchost.exe -k LocalService -p;"ServiceDll" = %SystemRoot%\System32\DispBroker.Desktop.dll
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -p;"ServiceDll" = %SystemRoot%\System32\dusmsvc.dll
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-11-14 1163712]
R2 KSDE5.13;Kaspersky Secure Connection Service 5.13; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 5.13\ksde.exe [2023-04-15 32008]
R2 Maestro;Printer Maestro; C:\Program Files\Seagull\BarTender 2022\Maestro.Service.exe [2022-06-06 240808]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2022-11-12 26112]
R2 MSSQL$BARTENDER;SQL Server (BARTENDER); C:\Program Files\Microsoft SQL Server\MSSQL15.BARTENDER\MSSQL\Binn\sqlservr.exe [2019-09-24 626280]
R2 Net Driver HPZ12;Net Driver HPZ12; %SystemRoot%\System32\svchost.exe -k HPZ12;"ServiceDll" = C:\Windows\System32\HPZinw12.dll
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-11-14 1879488]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-11-14 932728]
R2 OneSyncSvc_4454f;OneSyncSvc_4454f; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = 
R2 Pml Driver HPZ12;Pml Driver HPZ12; %SystemRoot%\System32\svchost.exe -k HPZ12;"ServiceDll" = C:\Windows\System32\HPZipm12.dll
R3 AarSvc_4454f;AarSvc_4454f; C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p;"ServiceDll" = 
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; %SystemRoot%\system32\svchost.exe -k LocalService -p;"ServiceDll" = %SystemRoot%\System32\BthAvctpSvc.dll
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; %SystemRoot%\system32\svchost.exe -k appmodel -p;"ServiceDll" = %SystemRoot%\system32\CapabilityAccessManager.dll
R3 cbdhsvc_4454f;cbdhsvc_4454f; C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p;"ServiceDll" = 
R3 PimIndexMaintenanceSvc_4454f;PimIndexMaintenanceSvc_4454f; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = 
S2 AVP21.3;Kaspersky Anti-Virus Service 21.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avp.exe [2022-02-17 184768]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = %SystemRoot%\System32\CDPUserSvc.dll
S2 edgeupdate;Служба "Обновление Microsoft Edge" (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-03-26 213920]
S2 Intel(R) TPM Provisioning Service;@oem8.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [2020-05-30 737552]
S2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-11-14 2521024]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; %SystemRoot%\system32\svchost.exe -k AarSvcGroup -p;"ServiceDll" = %SystemRoot%\System32\AarSvc.dll
S3 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2015-05-14 936456]
S3 AssignedAccessManagerSvc;@%SystemRoot%\system32\assignedaccessmanagersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k AssignedAccessManagerSvc;"ServiceDll" = %SystemRoot%\System32\assignedaccessmanagersvc.dll
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; %SystemRoot%\system32\svchost.exe -k autoTimeSvc;"ServiceDll" = %SystemRoot%\System32\autotimesvc.dll
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; %SystemRoot%\system32\svchost.exe -k BcastDVRUserService;"ServiceDll" = %SystemRoot%\System32\BcastDVRUserService.dll
S3 BcastDVRUserService_4454f;BcastDVRUserService_4454f; C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService;"ServiceDll" = 
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; %SystemRoot%\system32\svchost.exe -k BthAppGroup -p;"ServiceDll" = %SystemRoot%\System32\Microsoft.Bluetooth.UserService.dll
S3 BluetoothUserService_4454f;BluetoothUserService_4454f; C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p;"ServiceDll" = 
S3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\BTAGService.dll
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalService -p;"ServiceDll" = %SystemRoot%\System32\CaptureService.dll
S3 CaptureService_4454f;CaptureService_4454f; C:\WINDOWS\system32\svchost.exe -k LocalService -p;"ServiceDll" = 
S3 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k ClipboardSvcGroup -p;"ServiceDll" = %SystemRoot%\System32\cbdhsvc.dll
S3 cloudidsvc;@%SystemRoot%\system32\cloudidsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k CloudIdServiceGroup -p;"ServiceDll" = %SystemRoot%\system32\cloudidsvc.dll
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; %SystemRoot%\system32\svchost.exe -k DevicesFlow;"ServiceDll" = %SystemRoot%\System32\ConsentUxClient.dll
S3 ConsentUxUserSvc_4454f;ConsentUxUserSvc_4454f; C:\WINDOWS\system32\svchost.exe -k DevicesFlow;"ServiceDll" = 
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-09-27 382696]
S3 CredentialEnrollmentManagerUserSvc_4454f;CredentialEnrollmentManagerUserSvc_4454f; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-09-27 382696]
S3 dcsvc;@%systemroot%\system32\dcsvc,-100; %systemroot%\system32\svchost.exe -k netsvcs -p;"ServiceDll" = %SystemRoot%\system32\dcsvc.dll
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; %SystemRoot%\system32\svchost.exe -k DevicesFlow -p;"ServiceDll" = %SystemRoot%\System32\deviceaccess.dll
S3 DeviceAssociationBrokerSvc_4454f;DeviceAssociationBrokerSvc_4454f; C:\WINDOWS\system32\svchost.exe -k DevicesFlow -p;"ServiceDll" = 
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; %SystemRoot%\system32\svchost.exe -k DevicesFlow;"ServiceDll" = %SystemRoot%\System32\Windows.Devices.Picker.dll
S3 DevicePickerUserSvc_4454f;DevicePickerUserSvc_4454f; C:\WINDOWS\system32\svchost.exe -k DevicesFlow;"ServiceDll" = 
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; %SystemRoot%\system32\svchost.exe -k DevicesFlow;"ServiceDll" = %SystemRoot%\System32\DevicesFlowBroker.dll
S3 DevicesFlowUserSvc_4454f;DevicesFlowUserSvc_4454f; C:\WINDOWS\system32\svchost.exe -k DevicesFlow;"ServiceDll" = 
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; %SystemRoot%\System32\svchost.exe -k diagnostics;"ServiceDll" = %systemroot%\system32\DiagSvc.dll
S3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p;"ServiceDll" = %SystemRoot%\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
S3 edgeupdatem;Служба "Обновление Microsoft Edge" (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-03-26 213920]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2019-11-08 46184]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll" = %SystemRoot%\system32\FrameServer.dll
S3 GoogleChromeElevationService;Google Chrome Elevation Service (GoogleChromeElevationService); C:\Program Files\Google\Chrome\Application\114.0.5735.199\elevation_service.exe [2023-06-24 1742616]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; %SystemRoot%\System32\svchost.exe -k GraphicsPerfSvcGroup;"ServiceDll" = %SystemRoot%\System32\GraphicsPerfSvc.dll
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-07-31 136120]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p;"ServiceDll" = %SystemRoot%\System32\hvhostsvc.dll
S3 iaStorAfsService;@oem143.inf,%iaStorAfsService.ServiceName%;Intel(R) Optane(TM) Memory Service; C:\WINDOWS\System32\iaStorAfsService.exe [2021-04-20 2958328]
S3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; %SystemRoot%\System32\svchost.exe -k netsvcs -p;"ServiceDll" = %SystemRoot%\system32\InstallService.dll
S3 Intel(R) Capability Licensing Service TCP IP Interface;@oem8.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [2020-05-30 761088]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p;"ServiceDll" = %SystemRoot%\System32\IpxlatCfg.dll
S3 klvssbridge64_21.3;Kaspersky Volume Shadow Copy Service Bridge 21.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\vssbridge64.exe [2021-02-19 479280]
S3 kpm_launch_service;Kaspersky Password Manager Service; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.2\kpm_service.exe [2022-04-28 374920]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; %SystemRoot%\system32\svchost.exe -k netsvcs;"ServiceDll" = %SystemRoot%\System32\LanguageOverlayServer.dll
S3 McpManagementService;@%SystemRoot%\system32\McpManagementService.dll,-100; %SystemRoot%\system32\svchost.exe -k McpManagementServiceGroup;"ServiceDll" = %SystemRoot%\System32\McpManagementService.dll
S3 MessagingService_4454f;MessagingService_4454f; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = 
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.58\elevation_service.exe [2023-06-22 1744320]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p;"ServiceDll" = %SystemRoot%\System32\MixedRealityRuntime.dll
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2023-06-23 247200]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; %SystemRoot%\system32\svchost.exe -k netsvcs -p;"ServiceDll" = %SystemRoot%\System32\NaturalAuth.dll
S3 ose;Office  Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-07-31 202928]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2021-03-26 106496]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; %SystemRoot%\system32\svchost.exe -k PrintWorkflow;"ServiceDll" = %SystemRoot%\System32\PrintWorkflowService.dll
S3 PrintWorkflowUserSvc_4454f;PrintWorkflowUserSvc_4454f; C:\WINDOWS\system32\svchost.exe -k PrintWorkflow;"ServiceDll" = 
S4 AppVClient;@%systemroot%\system32\AppVClient.exe,-102; C:\WINDOWS\system32\AppVClient.exe [2023-03-18 777104]
S4 DialogBlockingService;@%SystemRoot%\system32\DialogBlockingService.dll,-100; %SystemRoot%\system32\svchost.exe -k DialogBlockingService;"ServiceDll" = %SystemRoot%\System32\DialogBlockingService.dll
S4 HfcDisableService;@oem143.inf,%HfcDisableService.ServiceName%;Intel(R) RST HFC Disable Service; C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_78a6016d246f965a\HfcDisableService.exe [2021-04-20 1643000]
S4 MsKeyboardFilter;@%SystemRoot%\system32\KeyboardFilterSvc.dll,-101; %SystemRoot%\system32\svchost.exe -k netsvcs -p;"ServiceDll" = %SystemRoot%\System32\KeyboardFilterSvc.dll

-----------------EOF-----------------
