Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 19-04-2020 Ran by channeal (administrator) on NEAL1-DELL (Dell Inc. Dell DXP051 ) (20-04-2020 21:22:00) Running from C:\Users\channeal\Desktop Loaded Profiles: channeal & UpdatusUser (Available Profiles: channeal & UpdatusUser) Platform: Microsoft Windows 10 Home Version 1909 18363.778 (X86) Language: English (United States) Default browser: Chrome Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Adobe Inc. -> Adobe Systems) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvLaunch.exe (Creative Technology Ltd) [File not signed] C:\Program Files\Creative\Shared Files\CTAudSvc.exe (Dell Inc. -> ) C:\Program Files\Dell Printers\Printer SSW\Status Monitor\dlm1db.exe (Dell Inc. -> Dell Inc.) C:\Program Files\Dell Printers\Printer SSW\Status Monitor\dlm1pl.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files\Dropbox\Client\Dropbox.exe <3> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Facebook, Inc. -> Facebook) C:\Users\channeal\AppData\Local\Facebook\Games\FacebookGameroom.exe (HGST, Inc. -> ) C:\Program Files\Touro Cloud Backup\Touro Cloud Backup.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\channeal\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd) C:\Windows\System32\Ctxfihlp.exe (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd) C:\Windows\System32\CTxfispi.exe (Nova Development -> ) C:\Program Files\Nova Development\Greeting Card Factory Deluxe 8.0\ReminderApp.exe (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files\Nuance\PaperPort\PDFProFiltSrvPP.exe (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files\Nuance\PaperPort\pptd40nt.exe (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files\Nuance\PDFViewer\PdfPro7Hook.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe (Sony Mobile Communications AB -> Sony) C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe (Sony Mobile Communications AB -> Sony) C:\Program Files\Sony\Xperia Companion\XperiaCompanionAgent.exe (SUPERAntiSpyware.com -> SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe (Support.com Inc -> SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (Vivaldi Technologies AS -> Vivaldi Technologies AS) C:\Users\channeal\AppData\Local\Vivaldi\Application\update_notifier.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [96328 2020-04-10] (Avast Software s.r.o. -> AVAST Software) HKLM\...\Run: [StatusAutoRunC1765nf] => C:\Program Files\Dell Printers\Printer SSW\Status Monitor\dlm1pl.exe [3024360 2013-02-06] (Dell Inc. -> Dell Inc.) HKLM\...\Run: [ReminderApp] => C:\Program Files\Nova Development\Greeting Card Factory Deluxe 8.0\ReminderApp.exe [144672 2009-10-20] (Nova Development -> ) HKLM\...\Run: [PPort14reminder] => C:\Program Files\Nuance\PaperPort\Ereg\Ereg.exe [330056 2013-03-14] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM\...\Run: [PDFProHook] => C:\Program Files\Nuance\PDFViewer\pdfpro7hook.exe [641864 2013-03-20] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM\...\Run: [PaperPort PTD] => C:\Program Files\Nuance\PaperPort\pptd40nt.exe [36168 2013-05-29] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM\...\Run: [LauncherC1765nf] => C:\Program Files\Dell Printers\Printer SSW\Launcher\dlm1launcher.exe [2471928 2013-08-13] (Dell Inc. -> Dell Inc.) HKLM\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2068856 2011-10-13] (Flexera Software LLC -> Flexera Software LLC.) HKLM\...\Run: [IndexSearch] => C:\Program Files\Nuance\PaperPort\IndexSearch.exe [18248 2013-05-29] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Run: [Dropbox] => C:\Program Files\Dropbox\Client\Dropbox.exe [6287872 2020-04-14] (Dropbox, Inc -> Dropbox, Inc.) HKLM\...\Run: [Opera Browser Assistant] => C:\Program Files\Opera\assistant\browser_assistant.exe [3024920 2020-04-08] (Opera Software AS -> Opera Software) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [265016 2020-03-22] (Apple Inc. -> Apple Inc.) HKLM\...\Run: [CTxfiHlp] => C:\WINDOWS\system32\CTXFIHLP.EXE* [35552 2019-05-02] () [File not signed] HKU\S-1-5-21-2559438547-1515831249-1651957702-1000\...\Run: [Touro Cloud Backup] => C:\Program Files\Touro Cloud Backup\Touro Cloud Backup.exe [2012256 2014-10-13] (HGST, Inc. -> ) HKU\S-1-5-21-2559438547-1515831249-1651957702-1000\...\Run: [XperiaCompanionAgent] => C:\Program Files\Sony\Xperia Companion\XperiaCompanionAgent.exe [2135904 2018-08-28] (Sony Mobile Communications AB -> Sony) HKU\S-1-5-21-2559438547-1515831249-1651957702-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [8097712 2020-03-28] (Support.com Inc -> SUPERAntiSpyware) HKU\S-1-5-21-2559438547-1515831249-1651957702-1000\...\Run: [Vivaldi Update Notifier] => C:\Users\channeal\AppData\Local\Vivaldi\Application\update_notifier.exe [1623624 2019-05-29] (Vivaldi Technologies AS -> Vivaldi Technologies AS) HKU\S-1-5-21-2559438547-1515831249-1651957702-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [29184 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-2559438547-1515831249-1651957702-1003\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun HKU\S-1-5-21-2559438547-1515831249-1651957702-1003\...\RunOnce: [mctadmin] => C:\Windows\System32\mctadmin.exe HKU\S-1-5-21-2559438547-1515831249-1651957702-1003\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-18\...\Run: [CtxfiReg] => CTXFIREG.exe /FAIL2 HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\80.0.3987.163\Installer\chrmstp.exe [2020-04-03] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> Startup: C:\Users\channeal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2020-04-15] ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\channeal\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook, Inc. -> Facebook) FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Scheduled Tasks (Whitelisted) ============ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {07FB92C8-C029-46F4-83F1-E202763A7C8D} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {13F404AB-6ECA-4121-B03F-6D88DF729B14} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {1670B880-6B34-4F5D-98A1-C3DF9171B915} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\WINDOWS\system32\sipnotify.exe Task: {1AB25964-04B4-442C-9FB0-668CD8EDBDAE} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {1E8DBF27-0437-4E42-A908-B3ACF6BFBC98} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {24FA84A0-E087-48EC-BC51-2B9C4C815D78} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40b4-8963-D3C761B18371} Task: {25E0911F-A461-43C7-BD7B-C41731EEB26A} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {29FAEBDD-A356-49BF-A0E2-B07E168BB247} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2DC3C86C-1FD2-44F9-A883-F5E41E5A963A} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {367F930A-A3DB-4112-B1F1-50E92A171C88} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {42357A98-9D61-4571-9052-B87290C540D6} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_32_0_0_363_Plugin.exe [1458232 2020-04-15] (Adobe Inc. -> Adobe) Task: {44BA6EC3-5EB9-43A7-A33B-02E64F76BA31} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [110792 2020-04-10] (Mozilla Corporation -> Mozilla Foundation) Task: {5D5CCD43-BF1B-46C5-BD61-78498CDC5CFA} - System32\Tasks\{97ABC276-820A-4943-AA4D-A5754260C008} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe" -d "C:\Program Files\VS Revo Group\Revo Uninstaller" Task: {6335A02C-38B4-43A3-B335-1986DD12B5AF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [153752 2017-02-05] (Google Inc -> Google Inc.) Task: {6DB48DB3-82C6-4637-AEF8-E4977F6905ED} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.) Task: {73C26D1C-6344-49F8-AFC4-0BA189BE6BFB} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {7A07FB38-C8B4-49FC-A099-2EC2D4985E31} - System32\Tasks\Microsoft\Windows\End Of Support\Notify2 => C:\WINDOWS\system32\sipnotify.exe Task: {7B089A6E-43C2-4330-8743-24DDC2AC1E6A} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {7C5CB001-9EA9-4E32-90FB-F18B7B358D70} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {856D7388-8F2D-48E2-BE01-048A0CB6BB5F} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {884A10B3-1149-4EFA-9103-613035DDF681} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1410152 2020-02-27] (Avast Software s.r.o. -> Avast Software) Task: {8C88D421-4DB4-4F15-9C47-02DB3183B8F9} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe Task: {8E2DEEBE-61A7-4A7F-B5B5-8D682209B795} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {92BBDF7C-1F95-4E85-9209-0EA718CF61BA} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {962F88AE-2FEE-43E0-942F-EEEBC6B2F955} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {9BEF3CEA-6DBE-4836-8FAB-CE3C71F22ABF} - \Microsoft\Windows\Setup\EOSNotify2 -> No File <==== ATTENTION Task: {A4BAD1A7-F548-4F1D-AC5A-F10B55E7E8D3} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {AB540FC0-7E66-4A19-B9F5-3AB3BF755D77} - System32\Tasks\Opera scheduled assistant Autoupdate 1585738425 => C:\Program Files\Opera\launcher.exe [1355800 2020-04-08] (Opera Software AS -> Opera Software) Task: {ADDC1482-1888-4C98-A379-EABDF739BD26} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2812592 2020-04-10] (Avast Software s.r.o. -> AVAST Software) Task: {ADF8761B-C252-478B-BE25-2457B8A72B53} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61} Task: {B1199A96-4856-4AC9-A7AF-DA152270661E} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1} Task: {B27EF02F-4FE6-4766-85C7-FDF1D5A04359} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems) Task: {B3246BA0-F186-488B-A0B5-31E6649D46CE} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {B77817B6-A56D-44AB-A11E-EC9138EC312D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {B94E517E-C5D8-4671-AF36-BF89AC22D802} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {BB115BE9-3DFC-4331-A3AF-302A4A4A6CAF} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {BDECDE5F-A2AF-4546-B3F5-CCB6158FC8EF} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {C1A31276-434C-4D2B-9C70-71EDB20FE37E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C499EAD7-B44D-4391-B4C5-C966E56A71A8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-04-15] (Adobe Inc. -> Adobe) Task: {CCFF0463-2972-4499-9260-15B109C5275B} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E} Task: {D10DD5C4-96A1-45E7-B402-A6CD40D96D9C} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2018-01-29] (Dropbox, Inc -> Dropbox, Inc.) Task: {D90C835E-CF88-4700-90AE-6A716745EE87} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {D9400BD3-E491-4BE1-8F57-8BEDD08FC525} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {DFEA3440-A7E0-48AC-9335-852927DF114D} - System32\Tasks\Opera scheduled Autoupdate 1488032057 => C:\Program Files\Opera\launcher.exe [1355800 2020-04-08] (Opera Software AS -> Opera Software) Task: {E79B2998-8F63-451A-A56D-26EDC0A5098A} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47c2-B62A-B7C4CED925CB} Task: {E804D353-F0BE-41F6-8078-4179F42F6118} - \Microsoft\Windows\Setup\EOSNotify -> No File <==== ATTENTION Task: {EE570C71-C27F-4524-87BB-59F0D81A197A} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-04] (Piriform Software Ltd -> Piriform Software Ltd) Task: {F01AB67C-B66E-466D-A07B-8ADD70A06BF6} - System32\Tasks\{A2F08BBD-394A-4449-B8A8-3C0580409A9F} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\Maxthon5\Bin\Mx3Uninstall.exe" Task: {F28A662B-7453-492E-8D86-ED13D035457D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [14679256 2019-02-05] (Piriform Software Ltd -> Piriform Software Ltd) Task: {F655E7AB-10CF-46A9-BFAD-CBDA79A1DC23} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2018-01-29] (Dropbox, Inc -> Dropbox, Inc.) Task: {F704CBE9-43EB-41E8-ADBB-C3DB63DBA9A6} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {F8E00B1C-4393-4253-A05B-974A3F636CA9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [153752 2017-02-05] (Google Inc -> Google Inc.) Task: {FFA0E9ED-DD76-424B-A1C7-AAB0F6594FF1} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 194.168.4.100 194.168.8.100 Tcpip\..\Interfaces\{3D72390A-BFE7-41C9-A155-E7BED6B3E286}: [DhcpNameServer] 194.168.4.100 194.168.8.100 Internet Explorer: ================== HKU\S-1-5-21-2559438547-1515831249-1651957702-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://my.yahoo.com/ BHO: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files\Nuance\PDFViewer\Bin\PlusIEContextMenu.dll [2011-06-30] (Zeon Corporation -> Zeon Corporation) BHO: Ghostery Plugin -> {6BF739DD-3323-4C6A-975B-C7E00A50B154} -> C:\Program Files\Ghostery\bin\ghostery.dll [2015-10-30] (Ghostery, Inc. -> Ghostery, Inc.) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2017-02-05] (Google Inc -> Google Inc.) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2017-02-05] (Google Inc -> Google Inc.) Toolbar: HKU\S-1-5-21-2559438547-1515831249-1651957702-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2017-02-05] (Google Inc -> Google Inc.) DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://files.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF DefaultProfile: djovqv3q.2016-1552672499866 FF ProfilePath: C:\Users\channeal\AppData\Roaming\Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866 [2020-04-20] FF Homepage: Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866 -> hxxps://my.yahoo.com/ FF Notifications: Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866 -> hxxps://www.pinterest.co.uk FF Extension: (F.B Purity - Cleans up Facebook (WX)) - C:\Users\channeal\AppData\Roaming\Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866\Extensions\fbpElectroWebExt@fbpurity.com.xpi [2020-04-13] [UpdateUrl:hxxps://www.fbpurity.com/FF-FBP-Ext-Updates.json] FF Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\channeal\AppData\Roaming\Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866\Extensions\firefox@ghostery.com.xpi [2020-04-14] FF Extension: (clean-youtube) - C:\Users\channeal\AppData\Roaming\Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2020-01-23] FF Extension: (youtubetmadblock) - C:\Users\channeal\AppData\Roaming\Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866\Extensions\jid1-w4wG5nJhx4LJZr@jetpack.xpi [2019-03-15] FF Extension: (New Tab Override) - C:\Users\channeal\AppData\Roaming\Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866\Extensions\newtaboverride@agenedia.com.xpi [2019-12-30] FF Extension: (Avast Online Security) - C:\Users\channeal\AppData\Roaming\Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866\Extensions\wrc@avast.com.xpi [2020-04-11] FF Extension: (HMA VPN Proxy Unblocker) - C:\Users\channeal\AppData\Roaming\Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866\Extensions\{7b53ddc2-1c09-4312-92a2-363c143c5c3e}.xpi [2020-04-05] FF Extension: (No Name) - C:\Users\channeal\AppData\Roaming\Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-04-01] FF Extension: (Share Button for Facebook™) - C:\Users\channeal\AppData\Roaming\Mozilla\Firefox\Profiles\djovqv3q.2016-1552672499866\Extensions\{d4e0dc9c-c356-438e-afbe-dca439f4399d}.xpi [2019-08-25] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_32_0_0_363.dll [2020-04-15] (Adobe Inc. -> ) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-05] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin: ZEON/PDF,version=2.0 -> C:\Program Files\Nuance\PDFViewer\bin\nppdf.dll [2011-07-15] (Zeon Corporation -> Zeon Corporation) FF Plugin HKU\S-1-5-21-2559438547-1515831249-1651957702-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\channeal\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-19] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FF Plugin HKU\S-1-5-21-2559438547-1515831249-1651957702-1000: sony.com/MediaGoDetector -> C:\Program Files\Sony\Media Go\npMediaGoDetector.dll [2016-10-24] (Sony Network Entertainment International LLC) [File not signed] Chrome: ======= CHR Profile: C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default [2020-04-19] CHR Notifications: Default -> hxxps://www.facebook.com CHR HomePage: Default -> hxxp://my.yahoo.com/ CHR StartupUrls: Default -> "hxxps://my.yahoo.com/" CHR Extension: (Docs) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12] CHR Extension: (Google Drive) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-02-05] CHR Extension: (YouTube) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-02-05] CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-04-14] CHR Extension: (Adobe Acrobat) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-03-15] CHR Extension: (Sheets) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12] CHR Extension: (Google Docs Offline) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-15] CHR Extension: (Avast Online Security) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-03-13] CHR Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2020-04-02] CHR Extension: (Chrome Web Store Payments) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-12] CHR Extension: (Gmail) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-12] CHR Extension: (Chrome Media Router) - C:\Users\channeal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-04] CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] Opera: ======= OPR StartupUrls: "hxxps://uk.yahoo.com/" ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [143776 2017-01-31] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com) R2 AdobeARMservice; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [88648 2020-02-25] (Adobe Inc. -> Adobe Systems) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [4903328 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [318792 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [881504 2020-04-10] (Avast Software s.r.o. -> AVAST Software) S3 Creative ALchemy AL6 Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2018-02-07] (Creative Labs) [File not signed] S3 Creative Audio Engine Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2017-02-05] (Creative Labs) [File not signed] R2 CTAudSvcService; C:\Program Files\Creative\Shared Files\CTAudSvc.exe [286720 2010-02-12] (Creative Technology Ltd) [File not signed] S2 dbupdate; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2018-01-29] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2018-01-29] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [37384 2020-04-14] (Dropbox, Inc -> Dropbox, Inc.) R2 DLNBDB; C:\Program Files\Dell Printers\Printer SSW\Status Monitor\dlm1db.exe [191464 2013-02-06] (Dell Inc. -> ) R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [3126496 2017-02-21] (Paramount Software UK Ltd -> Paramount Software UK Ltd) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [5247944 2019-02-01] (Malwarebytes Corporation -> Malwarebytes) R2 PDFProFiltSrvPP; C:\Program Files\Nuance\PaperPort\PDFProFiltSrvPP.exe [77640 2013-05-29] (Nuance Communications, Inc. -> Nuance Communications, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3379072 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [91560 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [1427808 2018-08-28] (Sony Mobile Communications AB -> Sony) ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [175464 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [187696 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [143128 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [56088 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [40936 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [148424 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [355712 2020-04-20] (Avast Software s.r.o. -> AVAST Software) S3 aswNetNd6; C:\WINDOWS\system32\DRIVERS\aswNetNd6.sys [36104 2017-07-11] (AVAST Software s.r.o. -> AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [93824 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [73040 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [691264 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [396048 2020-04-16] (Avast Software s.r.o. -> AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [177512 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [277672 2020-04-10] (Avast Software s.r.o. -> AVAST Software) R3 e1express; C:\WINDOWS\system32\DRIVERS\e1e6232.sys [219352 2009-06-05] (Intel Corporation -> Intel Corporation) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae.sys [128552 2019-12-17] (Malwarebytes Corporation -> Malwarebytes) R2 giveio; C:\Windows\system32\giveio.sys [5248 1996-04-03] () [File not signed] S3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [107168 2019-12-17] (Malwarebytes Corporation -> Malwarebytes) S3 MBAMWebProtection; C:\WINDOWS\System32\DRIVERS\mwac.sys [85232 2019-12-17] (Malwarebytes Corporation -> Malwarebytes) R0 pssnap; C:\WINDOWS\System32\DRIVERS\pssnap.sys [16016 2015-10-12] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com) R2 speedfan; C:\Windows\system32\speedfan.sys [24184 2012-12-29] (SOKNO S.R.L. -> Almico Software) R3 VSTHWBS2; C:\WINDOWS\system32\DRIVERS\VSTBS23.SYS [266752 2019-03-19] (Microsoft Windows -> Conexant Systems, Inc.) R3 VST_DPV; C:\WINDOWS\system32\DRIVERS\VSTDPV3.SYS [980992 2019-03-19] (Microsoft Windows -> Conexant Systems, Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [38280 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [268768 2019-03-19] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [47584 2019-03-19] (Microsoft Windows -> Microsoft Corporation) R3 winachsf; C:\WINDOWS\system32\DRIVERS\VSTCNXT3.SYS [661504 2019-03-19] (Microsoft Windows -> Conexant Systems, Inc.) U3 idsvc; no ImagePath ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) =================== (If an entry is included in the fixlist, the file/folder will be moved.) 2020-04-20 21:22 - 2020-04-20 21:26 - 000032118 _____ C:\Users\channeal\Desktop\FRST.txt 2020-04-20 20:32 - 2019-03-19 03:41 - 000001105 _____ C:\Users\TEMP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-04-20 19:47 - 2020-04-20 20:24 - 000315573 _____ C:\Users\channeal\Desktop\Fixlog.txt 2020-04-20 19:43 - 2020-04-20 19:43 - 002009600 _____ (Farbar) C:\Users\channeal\Desktop\FRST(1).exe 2020-04-20 19:19 - 2020-04-20 19:19 - 000000000 _____ C:\Users\channeal\Downloads\FRST.exe 2020-04-20 17:13 - 2020-04-20 17:33 - 000000716 ____H C:\Users\channeal\AppData\Roaming\{59E61040-6428-D1B9-A8AB-D3DEB01CF21C} 2020-04-20 11:00 - 2020-04-20 20:32 - 000000020 ___SH C:\Users\TEMP\ntuser.ini 2020-04-19 16:30 - 2020-04-19 16:30 - 000001980 _____ C:\Users\channeal\Desktop\Zoom.lnk 2020-04-19 16:29 - 2020-04-19 16:29 - 000000000 ____D C:\Users\channeal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2020-04-18 22:40 - 2020-04-20 21:25 - 000000000 ____D C:\FRST 2020-04-18 18:16 - 2020-04-18 18:17 - 000061440 _____ ( ) C:\Users\channeal\Desktop\VEW.exe 2020-04-18 17:42 - 2020-04-18 17:42 - 000000420 _____ C:\Users\channeal\Desktop\This PC - Shortcut.lnk 2020-04-17 18:24 - 2020-04-17 18:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2020-04-16 20:42 - 2020-04-17 13:38 - 000000000 ____D C:\Users\channeal\AppData\Local\D3DSCache 2020-04-16 20:08 - 2020-04-20 21:25 - 000054568 _____ C:\WINDOWS\system32\BMXState-{00000005-00000000-00000004-00001102-00000005-10031102}.rfx 2020-04-16 19:41 - 2020-04-16 19:42 - 051714624 _____ (Creative Technology Ltd) C:\Users\channeal\Downloads\SBXF_PCDRV_L11_2_30_0012.exe 2020-04-16 19:25 - 2020-04-16 19:30 - 000329044 _____ C:\WINDOWS\Minidump\041620-88359-01.dmp 2020-04-16 19:25 - 2020-04-16 19:25 - 000000000 ____D C:\WINDOWS\Minidump 2020-04-16 18:51 - 2020-04-16 18:52 - 051233576 _____ (Creative Technology Ltd) C:\Users\channeal\Downloads\SBXF_PCDRV_L11_2_30_0004(1).exe 2020-04-16 18:00 - 2020-04-16 18:00 - 090168232 _____ (Creative Technology Ltd) C:\Users\channeal\Downloads\XFXA_PCDRV_LB_WIN8_1_05_0001(2).exe 2020-04-16 17:36 - 2020-04-16 17:36 - 064536808 _____ (Creative Technology Ltd) C:\Users\channeal\Downloads\CSL_PCAPPBETA_LB_2_61_49(1).exe 2020-04-16 17:35 - 2020-04-16 17:36 - 064536808 _____ (Creative Technology Ltd) C:\Users\channeal\Downloads\CSL_PCAPPBETA_LB_2_61_49.exe 2020-04-16 16:07 - 2020-02-03 21:54 - 000835688 _____ (Adobe) C:\WINDOWS\system32\FlashPlayerApp.exe 2020-04-16 16:07 - 2020-02-03 21:54 - 000179608 _____ (Adobe) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2020-04-16 15:56 - 2020-04-16 15:56 - 000000000 ____D C:\ProgramData\ssh 2020-04-16 14:49 - 2020-04-16 14:49 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2020-04-16 14:49 - 2020-04-16 14:49 - 004308480 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2020-04-16 14:49 - 2020-04-16 14:49 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2020-04-16 14:49 - 2020-04-16 14:49 - 001291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe 2020-04-16 14:49 - 2020-04-16 14:49 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2020-04-16 14:49 - 2020-04-16 14:49 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe 2020-04-16 14:49 - 2020-04-16 14:49 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\system32\gnsdk_fp.dll 2020-04-16 14:49 - 2020-04-16 14:49 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll 2020-04-16 14:49 - 2020-04-16 14:49 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll 2020-04-16 14:49 - 2020-04-16 14:49 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx 2020-04-16 14:49 - 2020-04-16 14:49 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll 2020-04-16 14:49 - 2020-04-16 14:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL 2020-04-16 14:48 - 2020-04-16 14:48 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 002315680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 001874328 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 001870408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 001555904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 001417976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 001272360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 001108040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 001013000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 000983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 000757632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll 2020-04-16 14:48 - 2020-04-16 14:48 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 018027520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 007017472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 006285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 005910016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 003819520 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 003512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 003243296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 002536448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe 2020-04-16 14:47 - 2020-04-16 14:47 - 002399232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 001792312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 001616704 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 001474048 _____ C:\WINDOWS\system32\rdpnano.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 001400320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 001310720 _____ (Microsoft Corporation) C:\WINDOWS\system32\msjet40.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe 2020-04-16 14:47 - 2020-04-16 14:47 - 001080832 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 001000448 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000946688 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000692736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000446232 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2020-04-16 14:47 - 2020-04-16 14:47 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2020-04-16 14:47 - 2020-04-16 14:47 - 000399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe 2020-04-16 14:47 - 2020-04-16 14:47 - 000363840 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrd3x40.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2020-04-16 14:47 - 2020-04-16 14:47 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\msexcl40.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000319160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapisrv.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msltus40.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2020-04-16 14:47 - 2020-04-16 14:47 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFMCP.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\recdisc.exe 2020-04-16 14:47 - 2020-04-16 14:47 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe 2020-04-16 14:47 - 2020-04-16 14:47 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcXtrnal.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000079672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2020-04-16 14:47 - 2020-04-16 14:47 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000059221 _____ C:\WINDOWS\system32\srms.dat 2020-04-16 14:47 - 2020-04-16 14:47 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrTasks.exe 2020-04-16 14:47 - 2020-04-16 14:47 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe 2020-04-16 14:47 - 2020-04-16 14:47 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll 2020-04-16 14:47 - 2020-04-16 14:47 - 000023864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys 2020-04-16 14:47 - 2020-04-16 14:47 - 000018448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 019850240 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 006523048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 002865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2020-04-16 14:46 - 2020-04-16 14:46 - 002084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 001223680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 001157120 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 001123840 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 001031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 001018552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 001007104 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000954368 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000798720 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000746352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000706048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000682496 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2020-04-16 14:46 - 2020-04-16 14:46 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000571392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000568120 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2020-04-16 14:46 - 2020-04-16 14:46 - 000451072 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2020-04-16 14:46 - 2020-04-16 14:46 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpviewerax.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000267280 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys 2020-04-16 14:46 - 2020-04-16 14:46 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasrad.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2020-04-16 14:46 - 2020-04-16 14:46 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000179712 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys 2020-04-16 14:46 - 2020-04-16 14:46 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys 2020-04-16 14:46 - 2020-04-16 14:46 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys 2020-04-16 14:46 - 2020-04-16 14:46 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000097592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys 2020-04-16 14:46 - 2020-04-16 14:46 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfrgui.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasacct.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000054800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000051512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumapi.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\iaspolcy.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys 2020-04-16 14:46 - 2020-04-16 14:46 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmtask.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\posetup.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ias.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll 2020-04-16 14:46 - 2020-04-16 14:46 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe 2020-04-16 14:46 - 2020-04-16 14:46 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 002999808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 002307584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 002259872 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 002234680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2020-04-16 14:45 - 2020-04-16 14:45 - 002078096 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 001909248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 001797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 001684992 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 001429312 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 001402880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 001298432 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 001077424 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000904504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000713728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000673464 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2020-04-16 14:45 - 2020-04-16 14:45 - 000647680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000636696 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000587064 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000462864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2020-04-16 14:45 - 2020-04-16 14:45 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000361784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2020-04-16 14:45 - 2020-04-16 14:45 - 000356368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2020-04-16 14:45 - 2020-04-16 14:45 - 000331064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2020-04-16 14:45 - 2020-04-16 14:45 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000277304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2020-04-16 14:45 - 2020-04-16 14:45 - 000258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2020-04-16 14:45 - 2020-04-16 14:45 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000205840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2020-04-16 14:45 - 2020-04-16 14:45 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000136328 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000130112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000080912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys 2020-04-16 14:45 - 2020-04-16 14:45 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetDriverInstall.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlrmdr.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000039936 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe 2020-04-16 14:45 - 2020-04-16 14:45 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDJPN.DLL 2020-04-16 14:45 - 2020-04-16 14:45 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDKOR.DLL 2020-04-16 14:45 - 2020-04-16 14:45 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106.dll 2020-04-16 14:45 - 2020-04-16 14:45 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 007070736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 002978816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 002799104 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 002584008 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 002203664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 001659736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 001477112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 001394544 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2020-04-16 14:44 - 2020-04-16 14:44 - 001247024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 001180160 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 001111992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2020-04-16 14:44 - 2020-04-16 14:44 - 001071120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 001020032 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 001007672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000980792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000880952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsperformancerecordercontrol.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000787160 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000766464 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000701936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000597816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000554168 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000478792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000453432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000407864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000405632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000398864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000397624 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000397624 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000392208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000380944 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000353080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000220984 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpr.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000193552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000150536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000142648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000136504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000115000 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000102760 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000102248 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000086056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000043008 _____ C:\WINDOWS\system32\runexehelper.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Websocket.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000031544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hwpolicy.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000031248 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000031032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys 2020-04-16 14:44 - 2020-04-16 14:44 - 000028344 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000020352 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll 2020-04-16 14:44 - 2020-04-16 14:44 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe 2020-04-16 14:44 - 2020-04-16 14:44 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2020-04-16 14:43 - 2020-04-16 14:44 - 000441072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 004755968 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 003560960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 003131392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 002800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2020-04-16 14:43 - 2020-04-16 14:43 - 002711864 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 002440704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 001539688 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 001473848 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 001469440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 001264128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 001260544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 001213752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 001150464 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 001013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000935040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000627000 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000607544 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000587264 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000538160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000526352 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mousocoreworker.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000415976 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000402528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000374584 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2020-04-16 14:43 - 2020-04-16 14:43 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000265528 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000162856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2020-04-16 14:43 - 2020-04-16 14:43 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000152080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2020-04-16 14:43 - 2020-04-16 14:43 - 000138768 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000105592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000089912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys 2020-04-16 14:43 - 2020-04-16 14:43 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSystray.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\AtBroker.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys 2020-04-16 14:43 - 2020-04-16 14:43 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll 2020-04-16 14:43 - 2020-04-16 14:43 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe 2020-04-16 14:43 - 2020-04-16 14:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 006084344 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 003307008 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 003037696 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 002875904 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 001512960 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 001484384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 001421312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 001260544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 001139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 001101312 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000776488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000673704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2020-04-16 14:42 - 2020-04-16 14:42 - 000542288 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000531672 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2020-04-16 14:42 - 2020-04-16 14:42 - 000306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.th.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000274464 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2020-04-16 14:42 - 2020-04-16 14:42 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Winlangdb.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000133464 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47mrm.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000123952 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000120560 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000085008 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe 2020-04-16 14:42 - 2020-04-16 14:42 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguageProfileCallback.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll 2020-04-16 14:42 - 2020-04-16 14:42 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 014818816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 005112832 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 004867944 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 004575120 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 004150272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 002760720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2020-04-16 14:41 - 2020-04-16 14:41 - 002740736 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 002377216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 002058240 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2020-04-16 14:41 - 2020-04-16 14:41 - 002021888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 001985104 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 001661952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 001498112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 001454400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 001245184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 001055376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 001004544 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000993280 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000842552 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000786040 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000689680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2020-04-16 14:41 - 2020-04-16 14:41 - 000659968 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000627216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000551824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000404992 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 000400440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000344376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2020-04-16 14:41 - 2020-04-16 14:41 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000268008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000213984 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000185952 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000134416 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000096000 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 000094976 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000068408 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000042792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAProfileNotificationHandler.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe 2020-04-16 14:41 - 2020-04-16 14:41 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprtPS.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll 2020-04-16 14:41 - 2020-04-16 14:41 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 003971808 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 001916744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 001541120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 001452544 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 001401344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000899688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000802304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000632832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000622592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000550712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000537912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2020-04-16 14:40 - 2020-04-16 14:40 - 000523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000506232 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000488960 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000487784 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2020-04-16 14:40 - 2020-04-16 14:40 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000320016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2020-04-16 14:40 - 2020-04-16 14:40 - 000306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys 2020-04-16 14:40 - 2020-04-16 14:40 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys 2020-04-16 14:40 - 2020-04-16 14:40 - 000264440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000251512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Acx01000.sys 2020-04-16 14:40 - 2020-04-16 14:40 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys 2020-04-16 14:40 - 2020-04-16 14:40 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000142648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2020-04-16 14:40 - 2020-04-16 14:40 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000108856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000104976 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000072808 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000050544 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000046928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000042336 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcicda.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcProxyStubs.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciwave.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciseq.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000023864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys 2020-04-16 14:40 - 2020-04-16 14:40 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys 2020-04-16 14:40 - 2020-04-16 14:40 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscadminui.exe 2020-04-16 14:40 - 2020-04-16 14:40 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll 2020-04-16 14:40 - 2020-04-16 14:40 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUserRes.dll 2020-04-16 14:39 - 2020-04-16 14:39 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000564536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000504848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000425272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2020-04-16 14:39 - 2020-04-16 14:39 - 000325136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000319976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000239928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000235320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000192016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000173880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000167224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000162320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000160568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000158736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000156984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000156984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\viac7.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000144400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000133432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000109072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2020-04-16 14:39 - 2020-04-16 14:39 - 000066872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000047416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000041784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciidex.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbscan.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS 2020-04-16 14:39 - 2020-04-16 14:39 - 000023952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll 2020-04-16 14:39 - 2020-04-16 14:39 - 000022840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\flpydisk.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000017208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll 2020-04-16 14:39 - 2020-04-16 14:39 - 000014648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys 2020-04-16 14:39 - 2020-04-16 14:39 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sfloppy.sys 2020-04-16 14:00 - 2020-04-20 21:25 - 000000788 _____ C:\WINDOWS\system32\DVCState-{00000005-00000000-00000004-00001102-00000005-10031102}.rfx 2020-04-16 13:33 - 2020-04-16 13:33 - 090168232 _____ (Creative Technology Ltd) C:\Users\channeal\Downloads\XFXA_PCDRV_LB_WIN8_1_05_0001(1).exe 2020-04-16 01:14 - 2020-04-15 16:55 - 000000000 ____D C:\Windows.old 2020-04-16 01:02 - 2020-04-16 01:02 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines 2020-04-16 01:01 - 2020-04-16 01:01 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2020-04-16 01:00 - 2020-04-16 01:00 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2020-04-16 00:57 - 2020-04-16 01:14 - 000000000 ____D C:\Program Files\MSBuild 2020-04-16 00:57 - 2020-04-16 00:57 - 000000000 ____D C:\WINDOWS\system32\msmq 2020-04-16 00:57 - 2020-04-16 00:57 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2020-04-16 00:57 - 2020-04-16 00:57 - 000000000 ____D C:\Program Files\Reference Assemblies 2020-04-16 00:57 - 2020-04-16 00:57 - 000000000 ____D C:\inetpub 2020-04-16 00:57 - 2019-02-06 03:41 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2020-04-16 00:57 - 2019-02-06 03:41 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2020-04-16 00:57 - 2019-02-06 03:41 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2020-04-16 00:56 - 2019-03-19 03:15 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XPSSHHDR.dll 2020-04-16 00:56 - 2019-03-19 03:09 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll 2020-04-16 00:56 - 2018-08-09 23:53 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2020-04-16 00:52 - 2020-04-16 00:52 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2020-04-15 23:02 - 2020-04-15 23:02 - 066861416 _____ (Creative Technology Ltd) C:\Users\channeal\Downloads\XFXA_PCDRV_LB_1_03_02.exe 2020-04-15 23:00 - 2020-04-15 23:00 - 090168232 _____ (Creative Technology Ltd) C:\Users\channeal\Downloads\XFXA_PCDRV_LB_WIN8_1_05_0001.exe 2020-04-15 22:53 - 2020-04-15 22:53 - 086827000 _____ (Creative Technology Ltd) C:\Users\channeal\Downloads\XFXA_PCDRV_LB_1_04_0000.exe 2020-04-15 19:58 - 2020-04-16 12:46 - 000002322 _____ C:\Users\channeal\AppData\Roaming\Microsoft\Windows\Start Menu\Seaport.lnk 2020-04-15 19:51 - 2020-04-15 19:51 - 000001270 _____ C:\Users\channeal\Desktop\Facebook Gameroom.lnk 2020-04-15 19:51 - 2020-04-15 19:51 - 000000000 ____D C:\Users\channeal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook 2020-04-15 19:51 - 2020-04-15 19:51 - 000000000 ____D C:\Users\channeal\AppData\Local\Facebook 2020-04-15 17:29 - 2020-04-20 16:36 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2559438547-1515831249-1651957702-1000 2020-04-15 17:29 - 2020-04-17 17:30 - 000000000 ___RD C:\Users\channeal\OneDrive 2020-04-15 17:28 - 2020-04-15 17:28 - 000000000 ____D C:\Users\channeal\AppData\Local\Comms 2020-04-15 17:26 - 2020-04-15 17:35 - 000000000 ____D C:\Users\channeal\Desktop\JPG Files 2020-04-15 17:21 - 2020-04-15 17:33 - 000000000 ____D C:\Users\channeal\Desktop\PDF files 2020-04-15 17:19 - 2020-04-17 11:23 - 000000000 ____D C:\ProgramData\Packages 2020-04-15 17:19 - 2020-04-15 17:36 - 000000000 ____D C:\Users\channeal\Desktop\Word Docs 2020-04-15 17:12 - 2019-03-18 15:10 - 008229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0008.dll 2020-04-15 17:03 - 2020-04-15 19:35 - 000000000 ____D C:\Users\channeal\AppData\Local\PlaceholderTileLogoFolder 2020-04-15 17:03 - 2020-04-15 17:03 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2020-04-15 17:02 - 2020-04-15 17:02 - 000001450 _____ C:\Users\channeal\Desktop\Microsoft Edge.lnk 2020-04-15 17:00 - 2020-04-15 17:01 - 000000000 ____D C:\Users\channeal\AppData\Local\MicrosoftEdge 2020-04-15 17:00 - 2020-04-15 17:00 - 000000000 ___HD C:\Users\channeal\MicrosoftEdgeBackups 2020-04-15 16:58 - 2020-04-15 16:58 - 000000000 ____D C:\Users\channeal\AppData\Local\Publishers 2020-04-15 16:57 - 2020-04-16 16:10 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-04-15 16:57 - 2020-04-16 16:10 - 000000000 ___RD C:\Users\channeal\3D Objects 2020-04-15 16:56 - 2020-04-17 00:06 - 000000000 ____D C:\Users\channeal\AppData\Local\Packages 2020-04-15 16:56 - 2020-04-15 16:58 - 000000000 ____D C:\Users\channeal\AppData\Local\ConnectedDevicesPlatform 2020-04-15 16:56 - 2020-04-15 16:56 - 000000020 ___SH C:\Users\channeal\ntuser.ini 2020-04-15 16:51 - 2020-04-20 20:28 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-04-15 16:51 - 2020-04-20 16:36 - 000003762 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-04-15 16:51 - 2020-04-20 16:36 - 000003496 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2020-04-15 16:51 - 2020-04-20 16:36 - 000003484 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1585738425 2020-04-15 16:51 - 2020-04-20 16:36 - 000003362 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2020-04-15 16:51 - 2020-04-20 16:36 - 000003346 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater 2020-04-15 16:51 - 2020-04-20 16:36 - 000003336 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA 2020-04-15 16:51 - 2020-04-20 16:36 - 000003292 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1488032057 2020-04-15 16:51 - 2020-04-20 16:36 - 000003240 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2020-04-15 16:51 - 2020-04-20 16:36 - 000003134 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2020-04-15 16:51 - 2020-04-20 16:36 - 000003088 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2020-04-15 16:51 - 2020-04-20 16:36 - 000002376 _____ C:\WINDOWS\system32\Tasks\{97ABC276-820A-4943-AA4D-A5754260C008} 2020-04-15 16:51 - 2020-04-20 16:36 - 000002294 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2020-04-15 16:51 - 2020-04-20 16:36 - 000002242 _____ C:\WINDOWS\system32\Tasks\{A2F08BBD-394A-4449-B8A8-3C0580409A9F} 2020-04-15 16:51 - 2020-04-20 16:36 - 000002080 _____ C:\WINDOWS\system32\Tasks\SidebarExecute 2020-04-15 16:51 - 2020-04-20 16:07 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software 2020-04-15 16:51 - 2020-04-18 11:54 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update 2020-04-15 16:51 - 2020-04-15 16:51 - 000011433 _____ C:\WINDOWS\diagwrn.xml 2020-04-15 16:51 - 2020-04-15 16:51 - 000011433 _____ C:\WINDOWS\diagerr.xml 2020-04-15 16:51 - 2020-04-15 16:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\WPD 2020-04-15 16:51 - 2020-04-15 16:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\NCH Software 2020-04-15 16:51 - 2020-04-15 16:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2020-04-15 16:51 - 2020-04-15 16:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Apple 2020-04-15 16:51 - 2020-04-15 16:51 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2020-04-15 16:44 - 2020-04-20 20:32 - 000000000 ____D C:\Users\TEMP 2020-04-15 16:44 - 2017-08-09 19:27 - 000000000 ____D C:\Users\TEMP\AppData\Roaming\Mozilla 2020-04-15 16:44 - 2017-06-09 14:07 - 000000000 ____D C:\Users\TEMP\AppData\Local\Trusteer 2020-04-15 16:44 - 2017-02-11 18:49 - 000000000 ____D C:\Users\TEMP\AppData\Local\Microsoft Help 2020-04-15 16:44 - 2010-11-21 01:46 - 000000000 ____D C:\Users\TEMP\AppData\Roaming\Media Center Programs 2020-04-15 16:35 - 2020-04-20 19:29 - 000000000 ____D C:\Users\channeal 2020-04-15 16:35 - 2020-04-17 17:30 - 000002416 _____ C:\Users\channeal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-04-15 16:35 - 2020-04-15 16:45 - 000000000 ____D C:\Users\UpdatusUser 2020-04-15 16:35 - 2019-03-19 03:41 - 000001105 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-04-15 16:34 - 2020-04-16 16:06 - 000912284 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-04-15 16:21 - 2020-04-15 16:21 - 000000000 ____D C:\Users\Public\Documents\Dell 2020-04-15 16:21 - 2020-04-15 16:21 - 000000000 ____D C:\ProgramData\Documents\Dell 2020-04-15 16:20 - 2020-04-15 16:20 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2020-04-15 16:16 - 2020-04-20 21:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-04-15 16:15 - 2020-04-16 16:00 - 000494560 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-04-15 15:40 - 2019-03-19 03:40 - 000000001 ___SH C:\BOOTNXT 2020-04-15 15:13 - 2020-04-15 16:56 - 000000000 ___DC C:\WINDOWS\Panther 2020-04-15 15:06 - 2020-04-15 15:13 - 000000036 _____ C:\WINDOWS\progress.ini 2020-04-15 14:49 - 2020-04-15 16:54 - 000000000 ___HD C:\$GetCurrent 2020-04-15 14:48 - 2020-04-15 16:56 - 000000000 ____D C:\Windows10Upgrade 2020-04-15 14:47 - 2020-04-15 14:47 - 000000000 ____D C:\temp 2020-04-15 13:18 - 2020-04-15 13:18 - 000000316 _____ C:\Users\channeal\Desktop\upgrade.ps1 2020-04-14 13:19 - 2020-04-14 13:19 - 000037384 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2020-04-14 13:19 - 2020-04-14 13:19 - 000036848 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2020-04-14 13:19 - 2020-04-14 13:19 - 000036848 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2020-04-14 13:19 - 2020-04-14 13:19 - 000036848 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2020-04-13 12:52 - 2020-04-14 20:21 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2020-04-10 23:03 - 2020-04-16 01:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2020-04-10 23:03 - 2020-04-10 23:03 - 000002003 _____ C:\Users\Public\Desktop\Avast Premium Security.lnk 2020-04-10 23:03 - 2020-04-10 23:03 - 000002003 _____ C:\ProgramData\Desktop\Avast Premium Security.lnk 2020-04-10 20:58 - 2020-04-10 20:58 - 000039424 _____ () C:\WINDOWS\system32\Drivers\staport.sys 2020-04-10 20:52 - 2020-04-10 20:48 - 000284320 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2020-04-10 20:51 - 2020-04-20 16:57 - 000355712 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys 2020-04-10 20:51 - 2020-04-10 20:49 - 000177512 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2020-04-10 20:51 - 2020-04-10 20:49 - 000148424 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2020-04-10 09:48 - 2020-04-10 23:02 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-04-09 15:56 - 2020-04-09 15:56 - 000000444 _____ C:\Users\channeal\Downloads\members_export_75670234eb.zip 2020-04-08 13:04 - 2020-04-16 01:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2020-04-08 13:04 - 2020-04-08 13:04 - 000001747 _____ C:\Users\Public\Desktop\iTunes.lnk 2020-04-08 13:04 - 2020-04-08 13:04 - 000001747 _____ C:\ProgramData\Desktop\iTunes.lnk 2020-04-08 13:04 - 2020-04-08 13:04 - 000000000 ____D C:\Program Files\iPod 2020-04-08 13:03 - 2020-04-08 13:04 - 000000000 ____D C:\Program Files\iTunes 2020-04-06 13:12 - 2020-04-06 13:12 - 000047114 _____ C:\Users\channeal\Downloads\549e2a_d8e38730a7cd404f885f061d02a33585.pdf 2020-04-02 22:01 - 2020-04-02 22:01 - 000000402 _____ C:\Users\channeal\Downloads\subscribers05 (2).csv 2020-04-02 22:01 - 2020-04-02 22:01 - 000000402 _____ C:\Users\channeal\Downloads\subscribers05 (1).csv 2020-04-02 22:00 - 2020-04-02 22:00 - 000001335 _____ C:\Users\channeal\Downloads\contacts (1).csv 2020-04-02 21:58 - 2020-04-02 21:58 - 000000447 _____ C:\Users\channeal\Downloads\contacts.csv 2020-04-02 15:38 - 2020-04-02 15:38 - 000009090 _____ C:\Users\channeal\Desktop\Submissions.xlsx 2020-04-02 15:33 - 2020-04-02 15:34 - 000000255 _____ C:\Users\channeal\Downloads\subscribers05.csv 2020-03-26 14:58 - 2020-03-26 14:58 - 000001138 _____ C:\Users\channeal\Desktop\Sing For Better Health - Shortcut.lnk 2020-03-24 21:39 - 2020-03-25 16:05 - 000000716 ____H C:\Users\channeal\AppData\Roaming\{10350E9A-5055-4265-748D-05A070AF7C11} 2020-03-24 21:39 - 2020-03-24 21:39 - 000000000 ____D C:\Users\channeal\AppData\Local\Icecream 2020-03-24 21:39 - 2020-03-24 21:39 - 000000000 ____D C:\Users\channeal\AppData\Local\CrashRpt 2020-03-24 21:39 - 2020-03-24 21:39 - 000000000 ____D C:\Users\channeal\.Icecream PDF Candy Desktop 2020-03-24 21:37 - 2020-04-16 01:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Candy Desktop 2020-03-24 21:37 - 2020-03-24 21:37 - 000001042 _____ C:\Users\Public\Desktop\PDF Candy Desktop.lnk 2020-03-24 21:37 - 2020-03-24 21:37 - 000001042 _____ C:\ProgramData\Desktop\PDF Candy Desktop.lnk 2020-03-24 21:36 - 2020-03-24 21:38 - 000000000 ____D C:\Program Files\PDF Candy Desktop 2020-03-24 21:35 - 2020-03-24 21:35 - 144749408 _____ (Icecream Apps ) C:\Users\channeal\Downloads\pdfcandy_setup.exe 2020-03-24 21:31 - 2020-03-24 21:31 - 000039654 _____ C:\Users\channeal\Downloads\I CAN SEE CLEARLY NOW.pdf 2020-03-23 18:47 - 2020-03-23 18:47 - 000000000 ____D C:\Users\channeal\Documents\Zoom 2020-03-23 15:08 - 2020-04-19 16:30 - 000000000 ____D C:\Users\channeal\AppData\Roaming\Zoom ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2020-04-20 21:25 - 2019-03-19 03:46 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-04-20 21:25 - 2017-02-05 21:22 - 000054568 _____ C:\WINDOWS\system32\BMXStateBkp-{00000005-00000000-00000004-00001102-00000005-10031102}.rfx 2020-04-20 20:26 - 2019-03-19 03:35 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2020-04-20 20:08 - 2019-03-19 03:35 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-04-20 19:34 - 2017-02-05 19:52 - 000000000 ____D C:\Users\channeal\AppData\LocalLow\Mozilla 2020-04-20 19:30 - 2018-01-29 14:35 - 000000900 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2020-04-20 19:30 - 2018-01-29 14:35 - 000000896 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2020-04-20 19:06 - 2017-07-31 21:12 - 000000000 ____D C:\Users\channeal\Desktop\Computer Sundries 2020-04-20 12:40 - 2019-12-19 13:45 - 000017910 _____ C:\VEW.txt 2020-04-19 16:25 - 2019-12-22 18:31 - 000000000 ____D C:\Users\channeal\Desktop\VEW Logs 2020-04-18 22:02 - 2019-03-19 03:46 - 000000000 ___HD C:\Program Files\WindowsApps 2020-04-18 22:02 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-04-18 18:19 - 2017-02-05 19:24 - 000000000 ____D C:\Users\channeal\AppData\Local\VirtualStore 2020-04-17 18:24 - 2018-01-29 14:35 - 000000000 ____D C:\Program Files\Dropbox 2020-04-17 16:06 - 2019-03-19 03:46 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2020-04-16 20:13 - 2017-02-05 21:18 - 000445016 _____ (Creative Labs) C:\WINDOWS\system32\wrap_oal.dll 2020-04-16 20:13 - 2017-02-05 21:18 - 000109144 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\system32\OpenAL32.dll 2020-04-16 20:13 - 2017-02-05 21:18 - 000000087 ___RH C:\WINDOWS\ctfile.rfc 2020-04-16 19:59 - 2017-02-05 21:17 - 000000000 ___HD C:\Program Files\InstallShield Installation Information 2020-04-16 19:56 - 2017-02-05 21:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative 2020-04-16 19:55 - 2017-02-05 21:17 - 000000000 ____D C:\Program Files\Creative 2020-04-16 19:53 - 2017-02-05 21:17 - 000000000 ____D C:\WINDOWS\system32\Data 2020-04-16 19:52 - 2019-03-19 03:44 - 000000000 ____D C:\WINDOWS\INF 2020-04-16 18:57 - 2017-02-05 21:19 - 000000000 ____D C:\ProgramData\Creative 2020-04-16 18:44 - 2018-02-07 17:59 - 000000000 ____D C:\Users\channeal\AppData\Roaming\Creative 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ___SD C:\WINDOWS\system32\UNP 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ___RD C:\WINDOWS\PrintDialog 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\SystemResources 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugins 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\setup 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\oobe 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\migwiz 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\Dism 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\appraiser 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\ShellComponents 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\Provisioning 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\DiagTrack 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-04-16 15:56 - 2019-03-19 03:46 - 000000000 ____D C:\Program Files\Windows Defender 2020-04-16 15:56 - 2019-03-19 03:35 - 000000000 ____D C:\WINDOWS\servicing 2020-04-16 14:44 - 2017-02-06 03:13 - 000410838 __RSH C:\bootmgr 2020-04-16 12:46 - 2019-06-17 12:24 - 000002450 _____ C:\Users\channeal\Desktop\Seaport.lnk 2020-04-16 11:49 - 2017-02-05 19:35 - 000396048 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2020-04-16 11:44 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\appcompat 2020-04-16 01:14 - 2019-04-23 23:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2020-04-16 01:14 - 2019-04-23 14:33 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2020-04-16 01:14 - 2019-04-23 14:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2020-04-16 01:14 - 2019-04-22 17:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2020-04-16 01:14 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-04-16 01:14 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-04-16 01:14 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\Registration 2020-04-16 01:14 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2020-04-16 01:14 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\Help 2020-04-16 01:14 - 2019-03-19 03:46 - 000000000 ____D C:\Program Files\Common Files\System 2020-04-16 01:14 - 2019-03-19 03:46 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared 2020-04-16 01:14 - 2019-03-19 03:43 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2020-04-16 01:14 - 2018-10-14 18:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2020-04-16 01:14 - 2017-07-26 15:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2020-04-16 01:14 - 2017-06-29 17:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicISO 2020-04-16 01:14 - 2017-05-01 18:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fotor 2020-04-16 01:14 - 2017-03-02 20:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn 2020-04-16 01:14 - 2017-02-28 23:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nova Development 2020-04-16 01:14 - 2017-02-19 18:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy 2020-04-16 01:14 - 2017-02-13 21:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCH Software Suite 2020-04-16 01:14 - 2017-02-13 21:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs 2020-04-16 01:14 - 2017-02-13 17:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom 2020-04-16 01:14 - 2017-02-09 23:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2020-04-16 01:14 - 2017-02-09 22:32 - 000000000 ____D C:\WINDOWS\SHELLNEW 2020-04-16 01:14 - 2017-02-08 13:25 - 000000000 ____D C:\WINDOWS\system32\Touro Cloud Backup 2020-04-16 01:14 - 2017-02-08 12:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 14 2020-04-16 01:14 - 2017-02-06 20:41 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-04-16 01:14 - 2010-11-21 01:46 - 000000000 ___RD C:\Users\Public\Recorded TV 2020-04-16 01:14 - 2009-07-14 03:37 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2020-04-16 01:14 - 2009-07-14 03:37 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2020-04-16 01:14 - 2009-07-14 03:37 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2020-04-16 01:04 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\IME 2020-04-16 01:02 - 2019-03-19 03:46 - 000000000 __SHD C:\Program Files\Windows Sidebar 2020-04-16 01:02 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\schemas 2020-04-16 01:02 - 2017-02-28 21:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony 2020-04-16 01:02 - 2017-02-16 10:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macrium 2020-04-16 01:02 - 2017-02-08 11:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Printers 2020-04-16 01:02 - 2009-07-14 05:52 - 000000000 ____D C:\Program Files\Microsoft Games 2020-04-16 01:02 - 2009-07-14 05:52 - 000000000 ____D C:\Program Files\DVD Maker 2020-04-16 00:57 - 2019-10-07 03:38 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2020-04-16 00:57 - 2019-10-07 03:38 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2020-04-16 00:57 - 2019-10-07 03:38 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2020-04-16 00:57 - 2019-10-07 03:38 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2020-04-16 00:57 - 2019-10-07 03:38 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2020-04-16 00:57 - 2019-10-07 03:38 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll 2020-04-16 00:57 - 2019-10-07 03:38 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2020-04-16 00:57 - 2019-03-19 03:50 - 000983552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2020-04-16 00:57 - 2019-03-19 03:50 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2020-04-16 00:57 - 2019-03-19 03:50 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2020-04-16 00:57 - 2019-03-19 03:50 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2020-04-16 00:57 - 2019-03-19 03:50 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2020-04-16 00:57 - 2019-03-19 03:50 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2020-04-16 00:57 - 2019-03-19 03:50 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2020-04-16 00:57 - 2019-03-19 03:50 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2020-04-16 00:57 - 2019-03-19 03:50 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2020-04-16 00:57 - 2019-03-19 03:50 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2020-04-16 00:57 - 2019-03-19 03:50 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2020-04-16 00:57 - 2019-03-19 03:50 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2020-04-16 00:57 - 2019-03-19 03:50 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2020-04-16 00:57 - 2019-03-19 03:50 - 000009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2020-04-16 00:57 - 2019-03-19 03:49 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2020-04-16 00:57 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2020-04-16 00:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2020-04-16 00:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2020-04-16 00:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\et-EE 2020-04-16 00:56 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\es-MX 2020-04-16 00:55 - 2019-03-19 03:49 - 000000000 ____D C:\WINDOWS\Setup 2020-04-15 23:10 - 2017-02-05 19:26 - 000000000 ____D C:\Users\channeal\AppData\Local\ElevatedDiagnostics 2020-04-15 17:35 - 2017-03-08 12:56 - 000000000 ____D C:\Users\channeal\Desktop\Greek Conversation 2020-04-15 17:27 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\ServiceState 2020-04-15 17:12 - 2019-03-19 04:39 - 000000000 ____D C:\WINDOWS\OCR 2020-04-15 17:06 - 2019-03-19 03:46 - 000000000 ____D C:\ProgramData\USOPrivate 2020-04-15 17:04 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2020-04-15 16:55 - 2019-03-19 03:46 - 000000000 ____D C:\WINDOWS\system32\spool 2020-04-15 16:52 - 2019-03-19 03:35 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2020-04-15 16:50 - 2019-03-19 03:46 - 000000000 __RHD C:\Users\Public\Libraries 2020-04-15 16:45 - 2017-02-05 19:38 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-04-15 16:45 - 2017-02-05 19:38 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-04-15 16:45 - 2017-02-05 19:38 - 000002206 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2020-04-15 16:36 - 2017-06-29 12:58 - 000000000 ____D C:\Users\channeal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBox ISO Burner v2.0 2020-04-15 16:36 - 2017-03-20 13:38 - 000000000 ____D C:\Users\channeal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft BlueScreenView 2020-04-15 16:36 - 2017-03-08 17:19 - 000000000 ____D C:\Users\channeal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan 2020-04-15 16:36 - 2017-02-10 19:30 - 000000000 ____D C:\Users\channeal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell 2020-04-15 16:35 - 2018-02-07 17:59 - 000000000 ____D C:\Users\channeal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Creative 2020-04-15 15:43 - 2017-02-05 19:33 - 000000000 ____D C:\ProgramData\AVAST Software 2020-04-15 15:40 - 2017-02-06 03:13 - 000008192 __RSH C:\BOOTSECT.BAK 2020-04-15 15:28 - 2009-07-14 05:34 - 000024256 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2020-04-15 15:28 - 2009-07-14 05:34 - 000024256 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2020-04-15 12:23 - 2017-02-25 15:13 - 000000000 ____D C:\Program Files\Opera 2020-04-15 11:53 - 2017-02-05 19:51 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service 2020-04-14 22:25 - 2017-02-06 11:05 - 000000000 ___SD C:\Users\channeal\AppData\LocalLow\Temp 2020-04-11 09:17 - 2019-04-23 23:15 - 000000000 ____D C:\Program Files\SUPERAntiSpyware 2020-04-10 20:49 - 2018-10-14 18:54 - 000040936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys 2020-04-10 20:49 - 2017-02-05 19:35 - 000277672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2020-04-10 20:49 - 2017-02-05 19:35 - 000093824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2020-04-10 20:49 - 2017-02-05 19:35 - 000073040 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2020-04-10 20:47 - 2017-11-11 11:27 - 000175464 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys 2020-04-10 20:47 - 2017-02-05 19:35 - 000691264 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2020-04-10 20:46 - 2019-01-17 15:08 - 000187696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys 2020-04-10 20:46 - 2019-01-17 15:05 - 000143128 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys 2020-04-10 20:46 - 2019-01-17 15:05 - 000056088 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys 2020-04-01 19:56 - 2017-02-08 12:36 - 000000000 ____D C:\Users\channeal\AppData\Roaming\.oit ==================== Files in the root of some directories ======== 2020-03-24 21:39 - 2020-03-25 16:05 - 000000716 ____H () C:\Users\channeal\AppData\Roaming\{10350E9A-5055-4265-748D-05A070AF7C11} 2020-04-20 17:13 - 2020-04-20 17:33 - 000000716 ____H () C:\Users\channeal\AppData\Roaming\{59E61040-6428-D1B9-A8AB-D3DEB01CF21C} 2017-07-19 13:10 - 2017-07-19 13:10 - 000002095 _____ () C:\Users\channeal\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ========================