Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

On windows startup I get "StartupCheckLibrary.dll was not found


  • Please log in to reply

#1
NickBetts

NickBetts

    New Member

  • Member
  • Pip
  • 3 posts

Hi

 

I was wondering if anyone could be kind enough to assist me with this problem. I searched the forums here, and I too noticed someone else had a problem with this specific file, which could be possibly linked to a coin-miner malware/trojan, though I do not know, this is just what I was gathering from that post.

 

Each time I load up windows that is the error I receive. Similar to that other thread I went ahead and downloaded FRST and I do have the logs, should I post it here, that is assuming anyone is able to help of course. Thanks for your time, appreciate it.

 

Nick


  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 21,316 posts
  • MVP

Please post your FRST logs.  Copy and Paste is preferred.  Use two Replies if you have to.


  • 0

#3
NickBetts

NickBetts

    New Member

  • Topic Starter
  • Member
  • Pip
  • 3 posts

Thanks for the reply, appreciate it.

FRST.txt

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21.07.2018
Ran by Nick (administrator) on NICK-PC (26-07-2018 18:06:08)
Running from G:\All Downloads
Loaded Profiles: Nick (Available Profiles: Nick & DefaultAppPool)
Platform: Windows 10 Pro Version 1803 17134.191 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Seagate) C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe
() C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(DTS, Inc) C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.3.2.220\WsAppService.exe
(MDL Forum, mod by Ratiborus) C:\ProgramData\KMSAutoS\bin\KMSSS.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(DEVGURU Co., LTD.) E:\Additional Programs\Samsung Kies\USB Drivers\25_escape\conn\ss_conn_service.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_2.1.18.0_x64__8wekyb3d8bbwe\Microsoft.Notes.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Seagate) C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedhlp.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Seagate) C:\Program Files (x86)\Seagate\DiscWizard\DiscWizardMonitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
HKLM\...\Run: [MouseDriver] => TiltWheelMouse.exe
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242904 2018-06-29] (AVAST Software)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [316392 2018-05-11] (Adobe Systems, Incorporated)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8841472 2016-06-17] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1454336 2016-06-17] (Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => G:\Apple iTunes\iTunesHelper.exe [298296 2018-03-25] (Apple Inc.)
HKLM\...\Run: [Seagate Scheduler2 Service] => C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedhlp.exe [400360 2016-09-09] (Seagate)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-12-04] (Intel Corporation)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67896 2018-03-16] (Apple Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2409944 2018-01-30] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DiscWizardMonitor.exe] => C:\Program Files (x86)\Seagate\DiscWizard\DiscWizardMonitor.exe [5589976 2016-09-09] (Seagate)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [691056 2015-07-20] (Acronis International GmbH)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [1871344 2017-11-27] (Adobe Systems Inc.)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-751853946-1792747095-3574087814-1002\ DisallowedCertificates: 9AAF24A4D6CA8CCDF64BBF916CBC77512A9B0CA7 (U)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\Run: [Google Update] => C:\Users\Nick\AppData\Local\Google\Update\1.3.33.17\GoogleUpdateCore.exe [601680 2018-05-19] (Google Inc.)
HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\Run: [Xvid] => E:\Additional Programs\Xvid\CheckUpdate.exe [8192 2011-01-17] ()
HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\Run: [DAEMON Tools Lite Automount] => E:\Additional Programs\DAEMON Tools Lite\DTAgent.exe [4471536 2015-05-21] (Disc Soft Ltd)
HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [886768 2017-11-27] (Adobe Systems Incorporated)
AppInit_DLLs: C:\Program Files C:\Program Files => No File
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{4ea165eb-1c69-4a66-b086-2180dad767c9}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{4ea165eb-1c69-4a66-b086-2180dad767c9}: [DhcpNameServer] 192.168.1.254
 
Internet Explorer:
==================
HKU\S-1-5-21-751853946-1792747095-3574087814-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.co.uk
SearchScopes: HKLM -> DefaultScope {FC936092-2040-42C6-BF4E-188275C6B3E9} URL = hxxp://www.google.co.uk/search?q={searchTerms}
SearchScopes: HKLM -> {FC936092-2040-42C6-BF4E-188275C6B3E9} URL = hxxp://www.google.co.uk/search?q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {663C5176-148E-4767-89D6-6D5D61FFA1CF} URL = hxxp://www.google.co.uk/search?q={searchTerms}
SearchScopes: HKLM-x32 -> {663C5176-148E-4767-89D6-6D5D61FFA1CF} URL = hxxp://www.google.co.uk/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-751853946-1792747095-3574087814-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-751853946-1792747095-3574087814-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2018-07-21] (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-11-27] (Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-11-27] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2018-04-28] (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-22] (Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-11-27] (Adobe Systems Incorporated)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-22] (Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-11-27] (Adobe Systems Incorporated)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -  No File
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-11-27] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-11-27] (Adobe Systems Incorporated)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-30] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-07-17] (Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-30] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-07-17] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-30] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-07-17] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-30] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-07-17] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} -  No File
 
FireFox:
========
FF DefaultProfile: simvcngs.default
FF ProfilePath: C:\Users\Nick\AppData\Roaming\TomTom\HOME\Profiles\b05yeuqa.default [2017-07-28]
FF ProfilePath: C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\simvcngs.default [2018-07-26]
FF Extension: (Avast SafePrice) - C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\simvcngs.default\Extensions\[email protected] [2017-11-18]
FF Extension: (Avast Online Security) - C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\simvcngs.default\Extensions\[email protected] [2017-11-18]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2017-11-27]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt => not found
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_27_0_0_130.dll [2017-09-12] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-06-30] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-01-30] (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-03] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_130.dll [2017-09-12] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-03-30] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2018-03-02] (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2017-11-27] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-01-30] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-03] (Adobe Systems)
FF Plugin HKU\S-1-5-21-751853946-1792747095-3574087814-1002: @talk.google.com/GoogleTalkPlugin -> C:\Users\Nick\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-751853946-1792747095-3574087814-1002: @talk.google.com/O1DPlugin -> C:\Users\Nick\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-751853946-1792747095-3574087814-1002: @tools.google.com/Google Update;version=3 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.)
FF Plugin HKU\S-1-5-21-751853946-1792747095-3574087814-1002: @tools.google.com/Google Update;version=9 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Nick\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Nick\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google)
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.google.co.uk/
CHR StartupUrls: Default -> "hxxp://www.google.co.uk/"
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC=__PARAM__&q={searchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default [2018-07-26]
CHR Extension: (Angry Birds) - C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2014-12-12]
CHR Extension: (Adblock Plus) - C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-07-18]
CHR Extension: (Avast Online Security (BETA)) - C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\daanglpcpkjjlkhcbladppjphglbigam [2018-04-09]
CHR Extension: (Google Calendar) - C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2017-01-06]
CHR Extension: (Avast SafePrice) - C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-06-19]
CHR Extension: (HTTPS Everywhere) - C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2018-06-22]
CHR Extension: (IDM) - C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfppcoapnjeaecgojfeeejclphpjnin [2014-08-18]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-02]
CHR Extension: (Chrome Media Router) - C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-14]
CHR Extension: (Canvas Rider) - C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\poknhlcknimnnbfcombaooklofipaibk [2015-05-09]
CHR HKU\S-1-5-21-751853946-1792747095-3574087814-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bmkckgpgekmanipelfidlhmkfcjicion] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-01-30] (Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2321384 2018-05-11] (Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2128872 2018-05-11] (Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-03-14] (Apple Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2015-05-08] ()
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-04-24] () [File not signed]
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7780400 2018-06-29] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [322464 2018-06-29] (AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6893704 2018-06-22] ()
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8765104 2018-07-13] (Microsoft Corporation)
S3 Disc Soft Lite Bus Service; E:\Additional Programs\DAEMON Tools Lite\DiscSoftBusService.exe [1272560 2015-05-21] (Disc Soft Ltd)
R2 DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [249328 2016-06-17] (DTS, Inc)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2018-06-22] (EasyAntiCheat Ltd)
S3 ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [886032 2018-01-11] ()
S3 Intel® SUR QC SAM; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [166720 2012-07-23] (Intel Corporation)
R2 KMSEmulator; C:\ProgramData\KMSAutoS\bin\KMSSS.exe [301056 2015-07-24] (MDL Forum, mod by Ratiborus) [File not signed]
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008 2018-05-09] (Malwarebytes)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3916368 2016-01-09] (INCA Internet Co., Ltd.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-07-15] (Microsoft Corporation)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
R2 ss_conn_service; E:\Additional Programs\Samsung Kies\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2015-05-21] (DEVGURU Co., LTD.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 SystemUsageReportSvc_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe [182544 2018-01-11] ()
S3 USER_ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [886032 2018-01-11] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4451616 2018-04-12] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [106920 2018-07-14] (Microsoft Corporation)
R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.3.2.220\WsAppService.exe [441344 2017-01-05] (Wondershare) [File not signed]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2015-05-08] ()
R0 asstahci64; C:\WINDOWS\System32\drivers\asstahci64.sys [88936 2015-06-17] (Asmedia Technology)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [197160 2018-06-29] (AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [229392 2018-06-29] (AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [201328 2018-06-29] (AVAST Software)
R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [346664 2018-06-29] (AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [59592 2018-06-29] (AVAST Software)
S3 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15360 2018-06-29] (AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [239680 2018-06-29] (AVAST Software)
S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [46976 2018-06-29] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [159640 2018-06-29] (AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [111872 2018-06-29] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [85968 2018-06-29] (AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1027728 2018-06-29] (AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [467064 2018-07-23] (AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [211160 2018-06-29] (AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [381584 2018-06-29] (AVAST Software)
S3 busenum; C:\WINDOWS\System32\DRIVERS\SteelBus64.sys [132096 2013-01-10] (SteelSeries Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2015-05-22] (Disc Soft Ltd)
R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [296736 2018-05-26] (Acronis International GmbH)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2018-03-18] (REALiX™)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253664 2018-07-26] (Malwarebytes)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_485c1c3102021986\nvlddmkm.sys [17200392 2018-06-25] (NVIDIA Corporation)
S3 nvvad_WaveExtensible; C:\WINDOWS\System32\drivers\nvvad64v.sys [48064 2017-05-03] (NVIDIA Corporation)
S3 nvvhci; C:\WINDOWS\System32\DRIVERS\nvvhci.sys [57792 2017-05-03] (NVIDIA Corporation)
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2013-09-30] ()
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2013-09-30] ()
R0 PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation)
S3 RZSURROUNDVADService; C:\WINDOWS\System32\drivers\RzSurroundVAD.sys [40640 2015-02-09] (Windows ® Win 7 DDK provider)
R1 SCDEmu; C:\Windows\SysWow64\Drivers\SCDEmu.sys [113904 2014-09-21] (Power Software Ltd)
R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions)
S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [41512 2018-01-11] ()
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
R2 tib; C:\WINDOWS\system32\DRIVERS\tib.sys [1058632 2018-05-26] (Acronis International GmbH)
R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [248648 2018-05-26] (Acronis International GmbH)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44616 2018-04-12] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [331680 2018-04-12] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [44032 2018-04-12] (Microsoft Corporation)
U3 idsvc; no ImagePath
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2018-07-26 18:05 - 2018-07-26 18:06 - 000000000 ____D C:\FRST
2018-07-26 17:59 - 2018-07-26 17:59 - 005169384 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-07-26 17:56 - 2018-07-15 02:01 - 002266528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2018-07-26 17:56 - 2018-07-15 02:00 - 000183736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mavinject.exe
2018-07-26 17:56 - 2018-07-15 01:58 - 000094112 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2018-07-26 17:56 - 2018-07-15 01:56 - 001523240 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2018-07-26 17:56 - 2018-07-15 01:44 - 006587392 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2018-07-26 17:56 - 2018-07-15 01:44 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2018-07-26 17:56 - 2018-07-15 01:43 - 012710400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-07-26 17:56 - 2018-07-15 01:42 - 008624128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2018-07-26 17:56 - 2018-07-15 01:42 - 004708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2018-07-26 17:56 - 2018-07-15 01:41 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2018-07-26 17:56 - 2018-07-15 01:41 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2018-07-26 17:56 - 2018-07-15 01:39 - 001787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2018-07-26 17:56 - 2018-07-15 01:39 - 001605632 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2018-07-26 17:56 - 2018-07-15 01:38 - 003652608 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-07-26 17:56 - 2018-07-15 01:38 - 002051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2018-07-26 17:56 - 2018-07-15 01:38 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2018-07-26 17:56 - 2018-07-15 01:38 - 001180160 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2018-07-26 17:56 - 2018-07-15 01:38 - 001004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2018-07-26 17:56 - 2018-07-15 01:38 - 000615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2018-07-26 17:56 - 2018-07-15 01:38 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2018-07-26 17:56 - 2018-07-15 01:38 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinit.exe
2018-07-26 17:56 - 2018-07-15 01:37 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe
2018-07-26 17:56 - 2018-07-15 01:36 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2018-07-26 17:56 - 2018-07-15 00:31 - 001538968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2018-07-26 17:56 - 2018-07-15 00:31 - 000148888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mavinject.exe
2018-07-26 17:56 - 2018-07-15 00:28 - 001327424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2018-07-26 17:56 - 2018-07-15 00:18 - 005657600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2018-07-26 17:56 - 2018-07-15 00:17 - 011901440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-07-26 17:56 - 2018-07-15 00:15 - 007987712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2018-07-26 17:56 - 2018-07-15 00:14 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2018-07-26 17:56 - 2018-07-15 00:13 - 002895360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-07-26 17:56 - 2018-07-15 00:13 - 001452544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2018-07-26 17:56 - 2018-07-15 00:13 - 001308160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2018-07-26 17:56 - 2018-07-15 00:13 - 000775168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2018-07-26 17:56 - 2018-07-15 00:13 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2018-07-26 17:56 - 2018-07-15 00:13 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2018-07-26 17:56 - 2018-07-15 00:11 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2018-07-26 17:56 - 2018-07-14 07:46 - 023862784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2018-07-26 17:56 - 2018-07-14 07:42 - 019525632 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2018-07-26 17:56 - 2018-07-14 05:37 - 000375712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2018-07-26 17:56 - 2018-07-14 05:37 - 000230304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2018-07-26 17:56 - 2018-07-14 05:30 - 000272288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2018-07-26 17:56 - 2018-07-14 05:24 - 001174432 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-07-26 17:56 - 2018-07-14 05:23 - 001034624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2018-07-26 17:56 - 2018-07-14 05:23 - 000760888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2018-07-26 17:56 - 2018-07-14 05:23 - 000269224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2018-07-26 17:56 - 2018-07-14 05:22 - 006813744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2018-07-26 17:56 - 2018-07-14 05:22 - 001144664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2018-07-26 17:56 - 2018-07-14 05:22 - 000510392 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2018-07-26 17:56 - 2018-07-14 05:22 - 000203560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2018-07-26 17:56 - 2018-07-14 05:21 - 001063328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2018-07-26 17:56 - 2018-07-14 05:21 - 001012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-07-26 17:56 - 2018-07-14 05:21 - 000722824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2018-07-26 17:56 - 2018-07-14 05:21 - 000192920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2018-07-26 17:56 - 2018-07-14 05:20 - 001457128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-07-26 17:56 - 2018-07-14 05:20 - 000567176 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2018-07-26 17:56 - 2018-07-14 05:20 - 000184472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2018-07-26 17:56 - 2018-07-14 05:20 - 000134552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-07-26 17:56 - 2018-07-14 05:19 - 009147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-07-26 17:56 - 2018-07-14 05:19 - 002535032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2018-07-26 17:56 - 2018-07-14 05:19 - 001946752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2018-07-26 17:56 - 2018-07-14 05:19 - 001258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-07-26 17:56 - 2018-07-14 05:19 - 000981920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2018-07-26 17:56 - 2018-07-14 05:19 - 000713368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2018-07-26 17:56 - 2018-07-14 05:19 - 000636944 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2018-07-26 17:56 - 2018-07-14 05:19 - 000483024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2018-07-26 17:56 - 2018-07-14 05:18 - 007436112 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-07-26 17:56 - 2018-07-14 05:18 - 002563984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2018-07-26 17:56 - 2018-07-14 05:18 - 002371416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2018-07-26 17:56 - 2018-07-14 05:18 - 001097648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2018-07-26 17:56 - 2018-07-14 05:18 - 001017584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2018-07-26 17:56 - 2018-07-14 05:18 - 000930712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2018-07-26 17:56 - 2018-07-14 05:18 - 000613176 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2018-07-26 17:56 - 2018-07-14 05:18 - 000443216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2018-07-26 17:56 - 2018-07-14 05:18 - 000376216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2018-07-26 17:56 - 2018-07-14 05:17 - 006527056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2018-07-26 17:56 - 2018-07-14 05:17 - 002420632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2018-07-26 17:56 - 2018-07-14 05:17 - 001140568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-07-26 17:56 - 2018-07-14 05:17 - 000983008 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-07-26 17:56 - 2018-07-14 05:17 - 000885848 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-07-26 17:56 - 2018-07-14 05:17 - 000743320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2018-07-26 17:56 - 2018-07-14 05:16 - 002331576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2018-07-26 17:56 - 2018-07-14 05:16 - 001143096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2018-07-26 17:56 - 2018-07-14 05:16 - 000506728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2018-07-26 17:56 - 2018-07-14 05:15 - 006044112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-07-26 17:56 - 2018-07-14 05:15 - 001559368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2018-07-26 17:56 - 2018-07-14 05:15 - 001174552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2018-07-26 17:56 - 2018-07-14 05:15 - 001129640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2018-07-26 17:56 - 2018-07-14 05:15 - 000829856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2018-07-26 17:56 - 2018-07-14 05:15 - 000581696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2018-07-26 17:56 - 2018-07-14 05:15 - 000567144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-07-26 17:56 - 2018-07-14 05:08 - 022006784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-07-26 17:56 - 2018-07-14 05:03 - 019404288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-07-26 17:56 - 2018-07-14 05:03 - 006661120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2018-07-26 17:56 - 2018-07-14 05:01 - 025846784 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-07-26 17:56 - 2018-07-14 05:01 - 006647296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2018-07-26 17:56 - 2018-07-14 05:00 - 022714368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-07-26 17:56 - 2018-07-14 04:59 - 009084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2018-07-26 17:56 - 2018-07-14 04:59 - 005883392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2018-07-26 17:56 - 2018-07-14 04:59 - 003553280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2018-07-26 17:56 - 2018-07-14 04:58 - 008188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-07-26 17:56 - 2018-07-14 04:58 - 004371456 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2018-07-26 17:56 - 2018-07-14 04:58 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2018-07-26 17:56 - 2018-07-14 04:58 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2018-07-26 17:56 - 2018-07-14 04:58 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2018-07-26 17:56 - 2018-07-14 04:57 - 007057920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2018-07-26 17:56 - 2018-07-14 04:57 - 005779456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-07-26 17:56 - 2018-07-14 04:57 - 004331008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2018-07-26 17:56 - 2018-07-14 04:57 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2018-07-26 17:56 - 2018-07-14 04:57 - 001295360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2018-07-26 17:56 - 2018-07-14 04:57 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-07-26 17:56 - 2018-07-14 04:57 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-07-26 17:56 - 2018-07-14 04:57 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 004559872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 002900992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 002697216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Controls.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 002449408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 001986560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 001703936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Controls.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 001558016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll
2018-07-26 17:56 - 2018-07-14 04:56 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgr.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 003392512 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 001627136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 001124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000993792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000582144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2018-07-26 17:56 - 2018-07-14 04:55 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\RasMediaManager.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2018-07-26 17:56 - 2018-07-14 04:55 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreCommonProxyStub.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\datamarketsvc.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2018-07-26 17:56 - 2018-07-14 04:55 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
2018-07-26 17:56 - 2018-07-14 04:55 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 007579648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 003319808 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 002825728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 001627136 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 001537024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000999936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000603648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2018-07-26 17:56 - 2018-07-14 04:54 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll
2018-07-26 17:56 - 2018-07-14 04:54 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\EasPolicyManagerBrokerPS.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 004770816 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 003381248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 002368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 001931776 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeangle.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 001825792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 001668096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 000898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 000681984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgrSvc.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 000566272 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreCommonProxyStub.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 000396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2018-07-26 17:56 - 2018-07-14 04:53 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2018-07-26 17:56 - 2018-07-14 04:52 - 002172928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-07-26 17:56 - 2018-07-14 04:52 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2018-07-26 17:56 - 2018-07-14 04:52 - 001550848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-07-26 17:56 - 2018-07-14 04:52 - 000972800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2018-07-26 17:56 - 2018-07-14 04:52 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2018-07-26 17:56 - 2018-07-14 04:52 - 000790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2018-07-26 17:56 - 2018-07-14 04:52 - 000755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2018-07-26 17:56 - 2018-07-14 04:52 - 000506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2018-07-26 17:56 - 2018-07-14 04:52 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2018-07-26 17:56 - 2018-07-14 04:51 - 003376640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2018-07-26 17:56 - 2018-07-14 04:51 - 002904576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2018-07-26 17:56 - 2018-07-14 04:51 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-07-26 17:56 - 2018-07-14 04:51 - 001747968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2018-07-26 17:56 - 2018-07-14 04:51 - 001395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2018-07-26 17:56 - 2018-07-14 04:51 - 001304064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2018-07-26 17:56 - 2018-07-14 04:51 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2018-07-26 17:56 - 2018-07-14 04:51 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2018-07-26 17:56 - 2018-07-14 04:50 - 002236928 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-07-26 17:56 - 2018-07-14 04:50 - 001773056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2018-07-26 17:56 - 2018-07-14 04:50 - 001457664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2018-07-26 17:56 - 2018-07-14 04:50 - 001359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll
2018-07-26 17:56 - 2018-07-14 04:50 - 001225216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2018-07-26 17:56 - 2018-07-14 04:50 - 000949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2018-07-26 17:56 - 2018-07-14 04:50 - 000943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2018-07-26 17:56 - 2018-07-14 04:50 - 000932352 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2018-07-26 17:56 - 2018-07-14 04:50 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2018-07-26 17:56 - 2018-07-14 04:50 - 000522752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2018-07-26 17:56 - 2018-07-14 04:50 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2018-07-26 17:56 - 2018-07-14 04:49 - 000884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2018-07-26 17:56 - 2018-07-14 03:35 - 000001310 _____ C:\WINDOWS\system32\tcbres.wim
2018-07-26 17:56 - 2018-07-13 05:34 - 000709816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-07-26 17:56 - 2018-07-13 05:32 - 000170904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2018-07-26 17:56 - 2018-07-13 05:30 - 002718624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-07-26 17:56 - 2018-07-13 04:59 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-07-26 17:56 - 2018-07-11 11:23 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2018-07-26 17:56 - 2018-07-11 10:24 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2018-07-21 21:19 - 2018-07-21 21:19 - 000002393 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2018-07-21 21:19 - 2018-07-21 21:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2018-07-21 21:19 - 2018-07-21 21:19 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2018-07-19 10:10 - 2018-04-09 18:07 - 000003092 _____ C:\Users\Nick\Desktop\bindings-cache.What the...
2018-07-17 08:53 - 2018-07-17 08:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2018-07-16 11:07 - 2018-07-19 07:11 - 000000024 _____ C:\WINDOWS\system32\WinUpdates105.dat
2018-07-16 11:00 - 2018-07-06 15:20 - 002868640 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2018-07-16 11:00 - 2018-07-06 15:20 - 001610648 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2018-07-16 11:00 - 2018-07-06 15:20 - 000792472 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2018-07-16 11:00 - 2018-07-06 15:20 - 000689560 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2018-07-16 11:00 - 2018-07-06 15:20 - 000612248 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2018-07-16 11:00 - 2018-07-06 15:20 - 000451992 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2018-07-16 11:00 - 2018-07-06 15:20 - 000309664 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2018-07-16 11:00 - 2018-07-06 15:20 - 000144792 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2018-07-16 11:00 - 2018-07-06 15:20 - 000070040 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2018-07-16 11:00 - 2018-07-06 15:17 - 003932672 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2018-07-16 11:00 - 2018-07-06 15:14 - 000541592 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2018-07-16 11:00 - 2018-07-06 14:53 - 000672768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2018-07-16 11:00 - 2018-07-06 14:53 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2018-07-16 11:00 - 2018-07-06 14:53 - 000386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2018-07-16 11:00 - 2018-07-06 14:53 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2018-07-16 11:00 - 2018-07-06 14:52 - 000677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2018-07-16 11:00 - 2018-07-06 13:06 - 003611368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2018-07-16 11:00 - 2018-07-06 12:53 - 000565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll
2018-07-16 11:00 - 2018-07-06 12:53 - 000347136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2018-07-16 11:00 - 2018-07-06 12:51 - 002401280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2018-07-16 11:00 - 2018-07-06 08:32 - 000480672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2018-07-16 11:00 - 2018-07-06 08:31 - 000462752 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2018-07-16 11:00 - 2018-07-06 08:31 - 000035232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2018-07-16 11:00 - 2018-07-06 08:27 - 000057440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.ShellCommon.Broker.dll
2018-07-16 11:00 - 2018-07-06 08:26 - 001148800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2018-07-16 11:00 - 2018-07-06 08:26 - 000766608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2018-07-16 11:00 - 2018-07-06 08:25 - 002753040 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-07-16 11:00 - 2018-07-06 08:25 - 002571728 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2018-07-16 11:00 - 2018-07-06 08:25 - 001945784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-07-16 11:00 - 2018-07-06 08:25 - 001026464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2018-07-16 11:00 - 2018-07-06 08:25 - 000335776 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2018-07-16 11:00 - 2018-07-06 08:25 - 000267680 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2018-07-16 11:00 - 2018-07-06 08:25 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2018-07-16 11:00 - 2018-07-06 08:24 - 000380824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2018-07-16 11:00 - 2018-07-06 08:14 - 002242208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-07-16 11:00 - 2018-07-06 08:14 - 001981896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2018-07-16 11:00 - 2018-07-06 08:14 - 000988640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2018-07-16 11:00 - 2018-07-06 08:14 - 000573904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2018-07-16 11:00 - 2018-07-06 08:13 - 001620872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-07-16 11:00 - 2018-07-06 08:01 - 000104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2018-07-16 11:00 - 2018-07-06 08:01 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2018-07-16 11:00 - 2018-07-06 08:00 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2018-07-16 11:00 - 2018-07-06 08:00 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2018-07-16 11:00 - 2018-07-06 08:00 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2018-07-16 11:00 - 2018-07-06 08:00 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2018-07-16 11:00 - 2018-07-06 08:00 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsTelemetry.dll
2018-07-16 11:00 - 2018-07-06 08:00 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2018-07-16 11:00 - 2018-07-06 07:59 - 001153536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2018-07-16 11:00 - 2018-07-06 07:59 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NmaDirect.dll
2018-07-16 11:00 - 2018-07-06 07:59 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2018-07-16 11:00 - 2018-07-06 07:59 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2018-07-16 11:00 - 2018-07-06 07:59 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\tokenbinding.dll
2018-07-16 11:00 - 2018-07-06 07:59 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2018-07-16 11:00 - 2018-07-06 07:58 - 004867584 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-07-16 11:00 - 2018-07-06 07:58 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2018-07-16 11:00 - 2018-07-06 07:58 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2018-07-16 11:00 - 2018-07-06 07:58 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2018-07-16 11:00 - 2018-07-06 07:58 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProv2faHelper.dll
2018-07-16 11:00 - 2018-07-06 07:58 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2018-07-16 11:00 - 2018-07-06 07:58 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2018-07-16 11:00 - 2018-07-06 07:58 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tokenbinding.dll
2018-07-16 11:00 - 2018-07-06 07:57 - 003712512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-07-16 11:00 - 2018-07-06 07:57 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2018-07-16 11:00 - 2018-07-06 07:57 - 000676864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Devices.dll
2018-07-16 11:00 - 2018-07-06 07:57 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2018-07-16 11:00 - 2018-07-06 07:57 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NmaDirect.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 001817600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 001567744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioCredProv.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2018-07-16 11:00 - 2018-07-06 07:56 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProv2faHelper.dll
2018-07-16 11:00 - 2018-07-06 07:55 - 003440128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2018-07-16 11:00 - 2018-07-06 07:55 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2018-07-16 11:00 - 2018-07-06 07:55 - 000415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2018-07-16 11:00 - 2018-07-06 07:55 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2018-07-16 11:00 - 2018-07-06 07:54 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2018-07-16 11:00 - 2018-07-06 07:54 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2018-07-16 11:00 - 2018-07-06 07:54 - 000978944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2018-07-16 11:00 - 2018-07-06 07:54 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2018-07-16 11:00 - 2018-07-06 07:54 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2018-07-16 11:00 - 2018-07-06 07:54 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2018-07-16 11:00 - 2018-07-06 07:54 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2018-07-16 11:00 - 2018-07-06 07:54 - 000254464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BioCredProv.dll
2018-07-16 11:00 - 2018-07-06 07:53 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2018-07-16 11:00 - 2018-07-06 07:52 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2018-07-16 10:57 - 2018-06-29 19:16 - 000378072 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2018-07-14 17:31 - 2018-07-14 17:31 - 000000000 ____D C:\Users\Nick\Documents\Rise of the Tomb Raider
2018-07-13 13:19 - 2018-07-21 12:47 - 000000000 ____D C:\Users\Nick\Desktop\Text Documents
2018-07-09 08:31 - 2018-07-26 17:08 - 000253664 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2018-07-09 08:30 - 2018-07-09 08:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-07-08 08:08 - 2018-07-14 17:41 - 000000000 ____D C:\Users\Nick\AppData\Roaming\DS4Windows
2018-07-08 08:07 - 2018-07-08 08:07 - 000000000 ____D C:\Users\Nick\Desktop\DS4Windows
2018-07-07 11:17 - 2018-07-07 11:17 - 000035800 _____ C:\url_setting_definitions.txt
2018-07-07 08:33 - 2018-07-18 06:26 - 000000000 ____D C:\Users\Nick\AppData\Local\D3DSCache
2018-07-06 11:27 - 2018-07-26 17:35 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-07-06 11:27 - 2018-07-26 17:35 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-07-06 11:27 - 2018-07-26 17:35 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-07-06 11:27 - 2018-06-25 18:26 - 000551840 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 040346984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 035250256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 031244248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 013728120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 011273632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 004350040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 003760672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 002013784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6439836.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 001563392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 001468448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6439836.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 001419200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 001216872 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 001092360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 000749472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 000626616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 000608512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2018-07-06 11:26 - 2018-06-25 18:25 - 000518208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 025961336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 017750344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 015165008 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 004126128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 001356816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 001347664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 001157392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 001069416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 001063216 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 000904720 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 000814616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 000652344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2018-07-06 11:26 - 2018-06-25 18:24 - 000634760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2018-07-06 10:05 - 2018-07-18 06:27 - 000000000 ____D C:\ProgramData\Packages
2018-07-06 09:59 - 2018-07-06 09:59 - 000000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2018-07-06 09:58 - 2018-06-15 06:12 - 007519992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-07-06 09:58 - 2018-06-15 06:03 - 006572000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-07-06 09:57 - 2018-06-15 18:55 - 000542888 _____ C:\WINDOWS\system32\FaceProcessorCore.dll
2018-07-06 09:57 - 2018-06-15 18:53 - 000348256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2018-07-06 09:57 - 2018-06-15 18:50 - 001376576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2018-07-06 09:57 - 2018-06-15 18:49 - 021388856 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-07-06 09:57 - 2018-06-15 18:48 - 002395056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2018-07-06 09:57 - 2018-06-15 18:48 - 000338352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2018-07-06 09:57 - 2018-06-15 18:34 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\DsmUserTask.exe
2018-07-06 09:57 - 2018-06-15 18:34 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfnet.dll
2018-07-06 09:57 - 2018-06-15 18:33 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys
2018-07-06 09:57 - 2018-06-15 18:33 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManagerAPI.dll
2018-07-06 09:57 - 2018-06-15 18:33 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2018-07-06 09:57 - 2018-06-15 18:32 - 000755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll
2018-07-06 09:57 - 2018-06-15 18:32 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe
2018-07-06 09:57 - 2018-06-15 18:32 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2018-07-06 09:57 - 2018-06-15 18:32 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2018-07-06 09:57 - 2018-06-15 18:31 - 002193920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2018-07-06 09:57 - 2018-06-15 18:31 - 000907776 _____ (Microsoft Corporation) C:\WINDOWS\system32\autofmt.exe
2018-07-06 09:57 - 2018-06-15 18:31 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2018-07-06 09:57 - 2018-06-15 18:30 - 001308672 _____ C:\WINDOWS\system32\FaceProcessor.dll
2018-07-06 09:57 - 2018-06-15 18:30 - 001254400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2018-07-06 09:57 - 2018-06-15 18:30 - 001186816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2018-07-06 09:57 - 2018-06-15 18:30 - 001127936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe
2018-07-06 09:57 - 2018-06-15 18:30 - 001054720 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2018-07-06 09:57 - 2018-06-15 18:30 - 000878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2018-07-06 09:57 - 2018-06-15 18:29 - 002084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2018-07-06 09:57 - 2018-06-15 18:29 - 000932352 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe
2018-07-06 09:57 - 2018-06-15 18:29 - 000757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2018-07-06 09:57 - 2018-06-15 18:29 - 000740864 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2018-07-06 09:57 - 2018-06-15 18:29 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2018-07-06 09:57 - 2018-06-15 18:29 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2018-07-06 09:57 - 2018-06-15 18:28 - 000223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpd_ci.dll
2018-07-06 09:57 - 2018-06-15 18:28 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2018-07-06 09:57 - 2018-06-15 18:03 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAppMonitor.exe
2018-07-06 09:57 - 2018-06-15 18:00 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppCore.dll
2018-07-06 09:57 - 2018-06-15 16:25 - 020383720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-07-06 09:57 - 2018-06-15 16:22 - 001026896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2018-07-06 09:57 - 2018-06-15 16:16 - 002206528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2018-07-06 09:57 - 2018-06-15 16:06 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfnet.dll
2018-07-06 09:57 - 2018-06-15 16:04 - 000851968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe
2018-07-06 09:57 - 2018-06-15 16:04 - 000373248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2018-07-06 09:57 - 2018-06-15 16:03 - 000831488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autofmt.exe
2018-07-06 09:57 - 2018-06-15 16:03 - 000667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2018-07-06 09:57 - 2018-06-15 16:02 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2018-07-06 09:57 - 2018-06-15 16:01 - 002015744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2018-07-06 09:57 - 2018-06-15 16:01 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shdocvw.dll
2018-07-06 09:57 - 2018-06-15 14:23 - 000788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2018-07-06 09:57 - 2018-06-15 08:11 - 000611232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2018-07-06 09:57 - 2018-06-15 08:10 - 000048544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2018-07-06 09:57 - 2018-06-15 08:03 - 000083360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2018-07-06 09:57 - 2018-06-15 06:21 - 001213368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2018-07-06 09:57 - 2018-06-15 06:19 - 000116632 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe
2018-07-06 09:57 - 2018-06-15 06:19 - 000093600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2018-07-06 09:57 - 2018-06-15 06:18 - 000228768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2018-07-06 09:57 - 2018-06-15 06:16 - 000562080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2018-07-06 09:57 - 2018-06-15 06:16 - 000433560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2018-07-06 09:57 - 2018-06-15 06:15 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2018-07-06 09:57 - 2018-06-15 06:13 - 000324000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2018-07-06 09:57 - 2018-06-15 06:12 - 000661152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2018-07-06 09:57 - 2018-06-15 06:12 - 000491304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2018-07-06 09:57 - 2018-06-15 06:12 - 000260896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2018-07-06 09:57 - 2018-06-15 06:12 - 000118872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2018-07-06 09:57 - 2018-06-15 06:10 - 001934400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2018-07-06 09:57 - 2018-06-15 06:10 - 000717208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2018-07-06 09:57 - 2018-06-15 06:10 - 000326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2018-07-06 09:57 - 2018-06-15 06:09 - 002830240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-07-06 09:57 - 2018-06-15 06:09 - 002546592 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2018-07-06 09:57 - 2018-06-15 06:09 - 001798552 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2018-07-06 09:57 - 2018-06-15 06:09 - 001742272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2018-07-06 09:57 - 2018-06-15 06:09 - 001659296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2018-07-06 09:57 - 2018-06-15 06:09 - 001209800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2018-07-06 09:57 - 2018-06-15 06:09 - 001112600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2018-07-06 09:57 - 2018-06-15 06:09 - 000594128 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2018-07-06 09:57 - 2018-06-15 06:09 - 000247984 _____ (Microsoft Corporation) C:\WINDOWS\system32\RESAMPLEDMO.DLL
2018-07-06 09:57 - 2018-06-15 06:08 - 004403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-07-06 09:57 - 2018-06-15 06:08 - 002062488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2018-07-06 09:57 - 2018-06-15 06:08 - 001921944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2018-07-06 09:57 - 2018-06-15 06:08 - 001784584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2018-07-06 09:57 - 2018-06-15 06:08 - 001288840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2018-07-06 09:57 - 2018-06-15 06:08 - 001150408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll
2018-07-06 09:57 - 2018-06-15 06:08 - 000945568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2018-07-06 09:57 - 2018-06-15 06:08 - 000898760 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2018-07-06 09:57 - 2018-06-15 06:08 - 000642088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2018-07-06 09:57 - 2018-06-15 06:08 - 000604576 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-07-06 09:57 - 2018-06-15 06:08 - 000500552 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2018-07-06 09:57 - 2018-06-15 06:08 - 000413816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2018-07-06 09:57 - 2018-06-15 06:08 - 000072768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WindowsTrustedRT.sys
2018-07-06 09:57 - 2018-06-15 06:07 - 001611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2018-07-06 09:57 - 2018-06-15 06:05 - 000550608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2018-07-06 09:57 - 2018-06-15 06:04 - 001462824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2018-07-06 09:57 - 2018-06-15 06:04 - 001397192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVP9DEC.dll
2018-07-06 09:57 - 2018-06-15 06:04 - 001251736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2018-07-06 09:57 - 2018-06-15 06:04 - 000719552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2018-07-06 09:57 - 2018-06-15 06:04 - 000281080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2018-07-06 09:57 - 2018-06-15 06:04 - 000105376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 004788504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 002163184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 001805752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 001710240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 001380192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 001020160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 001011968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 000770152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 000472136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 000356960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2018-07-06 09:57 - 2018-06-15 06:03 - 000232488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RESAMPLEDMO.DLL
2018-07-06 09:57 - 2018-06-15 06:03 - 000129192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2018-07-06 09:57 - 2018-06-15 05:49 - 002962944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2018-07-06 09:57 - 2018-06-15 05:48 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2018-07-06 09:57 - 2018-06-15 05:47 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2018-07-06 09:57 - 2018-06-15 05:47 - 000515072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2018-07-06 09:57 - 2018-06-15 05:47 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2018-07-06 09:57 - 2018-06-15 05:46 - 004706816 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2018-07-06 09:57 - 2018-06-15 05:46 - 001356800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2018-07-06 09:57 - 2018-06-15 05:46 - 000593408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2018-07-06 09:57 - 2018-06-15 05:46 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2018-07-06 09:57 - 2018-06-15 05:46 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2018-07-06 09:57 - 2018-06-15 05:46 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2018-07-06 09:57 - 2018-06-15 05:45 - 002548736 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2018-07-06 09:57 - 2018-06-15 05:45 - 000871424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autochk.exe
2018-07-06 09:57 - 2018-06-15 05:45 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2018-07-06 09:57 - 2018-06-15 05:45 - 000740352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2018-07-06 09:57 - 2018-06-15 05:45 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2018-07-06 09:57 - 2018-06-15 05:45 - 000193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2018-07-06 09:57 - 2018-06-15 05:45 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandlerPS.dll
2018-07-06 09:57 - 2018-06-15 05:44 - 001342976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2018-07-06 09:57 - 2018-06-15 05:44 - 000873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2018-07-06 09:57 - 2018-06-15 05:44 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2018-07-06 09:57 - 2018-06-15 05:44 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2018-07-06 09:57 - 2018-06-15 05:44 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2018-07-06 09:57 - 2018-06-15 05:44 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2018-07-06 09:57 - 2018-06-15 05:44 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2018-07-06 09:57 - 2018-06-15 05:44 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2018-07-06 09:57 - 2018-06-15 05:43 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2018-07-06 09:57 - 2018-06-15 05:43 - 001110528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2018-07-06 09:57 - 2018-06-15 05:43 - 000675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2018-07-06 09:57 - 2018-06-15 05:43 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2018-07-06 09:57 - 2018-06-15 05:43 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2018-07-06 09:57 - 2018-06-15 05:43 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll
2018-07-06 09:57 - 2018-06-15 05:43 - 000191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VideoHandlers.dll
2018-07-06 09:57 - 2018-06-15 05:43 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2018-07-06 09:57 - 2018-06-15 05:43 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2018-07-06 09:57 - 2018-06-15 05:42 - 000978432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2018-07-06 09:57 - 2018-06-15 05:42 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2018-07-06 09:57 - 2018-06-15 05:42 - 000431104 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2018-07-06 09:57 - 2018-06-15 05:42 - 000386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2018-07-06 09:57 - 2018-06-15 05:42 - 000319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2018-07-06 09:57 - 2018-06-15 05:42 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2018-07-06 09:57 - 2018-06-15 05:42 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2018-07-06 09:57 - 2018-06-15 05:42 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2018-07-06 09:57 - 2018-06-15 05:42 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2018-07-06 09:57 - 2018-06-15 05:42 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2018-07-06 09:57 - 2018-06-15 05:41 - 001768448 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2018-07-06 09:57 - 2018-06-15 05:41 - 001724928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2018-07-06 09:57 - 2018-06-15 05:41 - 000953856 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
2018-07-06 09:57 - 2018-06-15 05:41 - 000811520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2018-07-06 09:57 - 2018-06-15 05:41 - 000625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2018-07-06 09:57 - 2018-06-15 05:41 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2018-07-06 09:57 - 2018-06-15 05:41 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2018-07-06 09:57 - 2018-06-15 05:41 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2018-07-06 09:57 - 2018-06-15 05:41 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2018-07-06 09:57 - 2018-06-15 05:40 - 001487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2018-07-06 09:57 - 2018-06-15 05:40 - 000827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2018-07-06 09:57 - 2018-06-15 05:40 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2018-07-06 09:57 - 2018-06-15 05:40 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2018-07-06 09:57 - 2018-06-15 05:39 - 002583552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2018-07-06 09:57 - 2018-06-15 05:39 - 000916992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2018-07-06 09:57 - 2018-06-15 05:39 - 000847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2018-07-06 09:57 - 2018-06-15 05:39 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2018-07-06 09:57 - 2018-06-15 05:38 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2018-07-06 09:57 - 2018-06-15 05:38 - 001581568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2018-07-06 09:57 - 2018-06-15 05:38 - 001305088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2018-07-06 09:57 - 2018-06-15 05:38 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2018-07-06 09:57 - 2018-06-15 05:38 - 001036288 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2018-07-06 09:57 - 2018-06-15 05:38 - 000910848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2018-07-06 09:57 - 2018-06-15 05:38 - 000596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2018-07-06 09:57 - 2018-06-15 05:37 - 001374208 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2018-07-06 09:57 - 2018-06-15 05:37 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2018-07-06 09:57 - 2018-06-15 05:36 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdrom.sys
2018-07-06 09:57 - 2018-06-08 20:07 - 000506184 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2018-07-06 09:57 - 2018-06-08 20:07 - 000040864 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClientPS.dll
2018-07-06 09:57 - 2018-06-08 20:07 - 000019872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVTerminator.dll
2018-07-06 09:57 - 2018-06-08 20:02 - 004527680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2018-07-06 09:57 - 2018-06-08 20:02 - 001634808 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2018-07-06 09:57 - 2018-06-08 20:02 - 000661160 _____ (Microsoft Corporation) C:\WINDOWS\system32\GenValObj.exe
2018-07-06 09:57 - 2018-06-08 20:01 - 001046944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2018-07-06 09:57 - 2018-06-08 19:47 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2018-07-06 09:57 - 2018-06-08 19:46 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2018-07-06 09:57 - 2018-06-08 19:45 - 004392448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2018-07-06 09:57 - 2018-06-08 19:45 - 001560576 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdt.exe
2018-07-06 09:57 - 2018-06-08 19:45 - 000808960 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2018-07-06 09:57 - 2018-06-08 19:44 - 001121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2018-07-06 09:57 - 2018-06-08 19:44 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2018-07-06 09:57 - 2018-06-08 19:44 - 000625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2018-07-06 09:57 - 2018-06-08 19:44 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
2018-07-06 09:57 - 2018-06-08 19:43 - 003640832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2018-07-06 09:57 - 2018-06-08 19:43 - 002922496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2018-07-06 09:57 - 2018-06-08 19:43 - 001719808 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2018-07-06 09:57 - 2018-06-08 19:43 - 001659904 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2018-07-06 09:57 - 2018-06-08 19:43 - 001543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2018-07-06 09:57 - 2018-06-08 19:42 - 003999232 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2018-07-06 09:57 - 2018-06-08 19:42 - 000800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwcreator.exe
2018-07-06 09:57 - 2018-06-08 19:42 - 000503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2018-07-06 09:57 - 2018-06-08 19:41 - 002019840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2018-07-06 09:57 - 2018-06-08 19:41 - 001180672 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2018-07-06 09:57 - 2018-06-08 19:41 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2018-07-06 09:57 - 2018-06-08 19:41 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2018-07-06 09:57 - 2018-06-08 19:40 - 000465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXP.dll
2018-07-06 09:57 - 2018-06-08 18:04 - 001454024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2018-07-06 09:57 - 2018-06-08 17:58 - 000917408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2018-07-06 09:57 - 2018-06-08 17:50 - 001508352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdt.exe
2018-07-06 09:57 - 2018-06-08 17:47 - 003492864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2018-07-06 09:57 - 2018-06-08 17:47 - 001462784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2018-07-06 09:57 - 2018-06-08 17:47 - 001032704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2018-07-06 09:57 - 2018-06-08 17:47 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcredprov.dll
2018-07-06 09:57 - 2018-06-08 17:46 - 003444224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2018-07-06 09:57 - 2018-06-08 17:46 - 000908288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2018-07-06 09:57 - 2018-06-08 17:06 - 000976384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2018-07-06 09:57 - 2018-06-08 17:05 - 000944640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2018-07-06 09:57 - 2018-06-08 15:00 - 000658432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2018-07-06 09:57 - 2018-06-08 11:38 - 005821544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2018-07-06 09:57 - 2018-06-08 11:37 - 002417840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2018-07-06 09:57 - 2018-06-08 11:35 - 001613200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2018-07-06 09:57 - 2018-06-08 11:35 - 000613144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2018-07-06 09:57 - 2018-06-08 11:34 - 001299056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2018-07-06 09:57 - 2018-06-08 11:34 - 000748512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2018-07-06 09:57 - 2018-06-08 11:31 - 007900984 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2018-07-06 09:57 - 2018-06-08 11:31 - 003180176 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2018-07-06 09:57 - 2018-06-08 11:31 - 000029600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uefi.sys
2018-07-06 09:57 - 2018-06-08 11:30 - 000705440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2018-07-06 09:57 - 2018-06-08 10:31 - 000226720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ucx01000.sys
2018-07-06 09:57 - 2018-06-08 10:30 - 003296896 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2018-07-06 09:57 - 2018-06-08 10:30 - 001363632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2018-07-06 09:57 - 2018-06-08 10:30 - 001017080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll
2018-07-06 09:57 - 2018-06-08 10:30 - 000723360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2018-07-06 09:57 - 2018-06-08 10:30 - 000565152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2018-07-06 09:57 - 2018-06-08 10:30 - 000527264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2018-07-06 09:57 - 2018-06-08 10:30 - 000194456 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2018-07-06 09:57 - 2018-06-08 10:30 - 000137568 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 004970360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 003283408 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 002590400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2018-07-06 09:57 - 2018-06-08 10:29 - 002462272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 001792808 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 001364184 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 001190152 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 000678840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 000659096 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 000416144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 000375712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2018-07-06 09:57 - 2018-06-08 10:29 - 000313592 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 000164768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2018-07-06 09:57 - 2018-06-08 10:29 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 000084288 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageOverlayUtil.dll
2018-07-06 09:57 - 2018-06-08 10:29 - 000057960 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel.appcore.dll
2018-07-06 09:57 - 2018-06-08 10:12 - 000861616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2adec.dll
2018-07-06 09:57 - 2018-06-08 10:12 - 000786176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2018-07-06 09:57 - 2018-06-08 10:10 - 002479272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2018-07-06 09:57 - 2018-06-08 10:10 - 002307336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2018-07-06 09:57 - 2018-06-08 10:10 - 001988072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2018-07-06 09:57 - 2018-06-08 10:10 - 000880152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2018-07-06 09:57 - 2018-06-08 10:10 - 000457152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2018-07-06 09:57 - 2018-06-08 10:10 - 000097176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2018-07-06 09:57 - 2018-06-08 10:09 - 004469832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2018-07-06 09:57 - 2018-06-08 10:09 - 002486992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2018-07-06 09:57 - 2018-06-08 10:09 - 001584128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2018-07-06 09:57 - 2018-06-08 10:09 - 001077504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2018-07-06 09:57 - 2018-06-08 10:09 - 000607648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2018-07-06 09:57 - 2018-06-08 10:09 - 000568720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2018-07-06 09:57 - 2018-06-08 10:09 - 000553248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2018-07-06 09:57 - 2018-06-08 10:09 - 000064648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LanguageOverlayUtil.dll
2018-07-06 09:57 - 2018-06-08 10:09 - 000050208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel.appcore.dll
2018-07-06 09:57 - 2018-06-08 10:03 - 000906752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.PhoneNumberFormatting.dll
2018-07-06 09:57 - 2018-06-08 10:03 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2018-07-06 09:57 - 2018-06-08 10:03 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2018-07-06 09:57 - 2018-06-08 10:02 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2018-07-06 09:57 - 2018-06-08 10:02 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpnotify.exe
2018-07-06 09:57 - 2018-06-08 10:02 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2018-07-06 09:57 - 2018-06-08 10:01 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe
2018-07-06 09:57 - 2018-06-08 10:01 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2018-07-06 09:57 - 2018-06-08 10:01 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2018-07-06 09:57 - 2018-06-08 10:01 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2018-07-06 09:57 - 2018-06-08 10:01 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2018-07-06 09:57 - 2018-06-08 10:01 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2018-07-06 09:57 - 2018-06-08 10:00 - 001285120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2018-07-06 09:57 - 2018-06-08 10:00 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2018-07-06 09:57 - 2018-06-08 10:00 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2018-07-06 09:57 - 2018-06-08 10:00 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2018-07-06 09:57 - 2018-06-08 10:00 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2018-07-06 09:57 - 2018-06-08 09:59 - 006032384 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2018-07-06 09:57 - 2018-06-08 09:59 - 001318400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2018-07-06 09:57 - 2018-06-08 09:59 - 000983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2018-07-06 09:57 - 2018-06-08 09:59 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2018-07-06 09:57 - 2018-06-08 09:59 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2018-07-06 09:57 - 2018-06-08 09:59 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2018-07-06 09:57 - 2018-06-08 09:59 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2018-07-06 09:57 - 2018-06-08 09:58 - 001676800 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2018-07-06 09:57 - 2018-06-08 09:58 - 000781824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2018-07-06 09:57 - 2018-06-08 09:58 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2018-07-06 09:57 - 2018-06-08 09:58 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2018-07-06 09:57 - 2018-06-08 09:57 - 003348992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2018-07-06 09:57 - 2018-06-08 09:57 - 000483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2018-07-06 09:57 - 2018-06-08 09:57 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2018-07-06 09:57 - 2018-06-08 09:57 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2018-07-06 09:57 - 2018-06-08 09:57 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2018-07-06 09:57 - 2018-06-08 09:57 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2018-07-06 09:57 - 2018-06-08 09:56 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2018-07-06 09:57 - 2018-06-08 09:56 - 003293696 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2018-07-06 09:57 - 2018-06-08 09:56 - 002364928 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2018-07-06 09:57 - 2018-06-08 09:56 - 000908800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2018-07-06 09:57 - 2018-06-08 09:56 - 000871424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2018-07-06 09:57 - 2018-06-08 09:56 - 000869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2018-07-06 09:57 - 2018-06-08 09:56 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2018-07-06 09:57 - 2018-06-08 09:56 - 000715776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2018-07-06 09:57 - 2018-06-08 09:56 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 002248192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 002061824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 001242112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 001192448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 001171968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 001160192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 000849408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 000778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2018-07-06 09:57 - 2018-06-08 09:55 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 000667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2018-07-06 09:57 - 2018-06-08 09:55 - 000630784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 002789376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 001586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 001128448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 000950272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 000857088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2018-07-06 09:57 - 2018-06-08 09:54 - 000842240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 000593408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2018-07-06 09:57 - 2018-06-08 09:54 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL
2018-07-06 09:57 - 2018-06-08 09:53 - 001675264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2018-07-06 09:57 - 2018-06-08 09:53 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2018-07-06 09:57 - 2018-06-08 09:53 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2018-07-06 09:57 - 2018-06-08 09:53 - 000648192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2018-07-06 09:57 - 2018-06-08 09:53 - 000528384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2018-07-06 09:57 - 2018-06-06 19:57 - 003733320 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2018-07-06 09:57 - 2018-06-06 05:20 - 002841312 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2018-07-06 09:57 - 2018-06-01 06:18 - 000058524 _____ C:\WINDOWS\system32\srms.dat
2018-07-06 09:57 - 2018-05-25 04:24 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2018-07-06 09:57 - 2018-05-20 20:42 - 001649760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2018-07-06 09:57 - 2018-05-20 20:42 - 000759192 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2018-07-06 09:57 - 2018-05-20 20:26 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasplap.dll
2018-07-06 09:57 - 2018-05-20 20:23 - 004070400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2018-07-06 09:57 - 2018-05-20 20:23 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2018-07-06 09:57 - 2018-05-20 20:23 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2018-07-06 09:57 - 2018-05-20 20:22 - 001665024 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2018-07-06 09:57 - 2018-05-20 20:22 - 001292288 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2018-07-06 09:57 - 2018-05-20 20:22 - 000941056 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2018-07-06 09:57 - 2018-05-20 20:22 - 000804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2018-07-06 09:57 - 2018-05-20 19:20 - 000022936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hvsicontainerservice.dll
2018-07-06 09:57 - 2018-05-20 19:15 - 000653208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2018-07-06 09:57 - 2018-05-20 19:14 - 001490144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2018-07-06 09:57 - 2018-05-20 19:02 - 000461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasplap.dll
2018-07-06 09:57 - 2018-05-20 19:00 - 000864768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2018-07-06 09:57 - 2018-05-20 18:59 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2018-07-06 09:57 - 2018-05-20 18:59 - 000747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2018-07-06 09:57 - 2018-05-20 17:45 - 001271296 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2018-07-06 09:57 - 2018-05-20 17:35 - 000677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\HeadTrackerStorage.dll
2018-07-06 09:57 - 2018-05-20 17:34 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2018-07-06 09:57 - 2018-05-20 15:54 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2018-07-06 09:57 - 2018-05-20 13:33 - 000105368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2018-07-06 09:57 - 2018-05-20 12:53 - 002178136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2018-07-06 09:57 - 2018-05-20 12:53 - 001017088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2018-07-06 09:57 - 2018-05-20 12:53 - 001012408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2018-07-06 09:57 - 2018-05-20 12:53 - 000792984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-07-06 09:57 - 2018-05-20 12:53 - 000131232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2018-07-06 09:57 - 2018-05-20 12:53 - 000088472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2018-07-06 09:57 - 2018-05-20 12:52 - 000735560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2018-07-06 09:57 - 2018-05-20 12:52 - 000413080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-07-06 09:57 - 2018-05-20 12:52 - 000347704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2018-07-06 09:57 - 2018-05-20 12:52 - 000130456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys
2018-07-06 09:57 - 2018-05-20 12:52 - 000089984 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2018-07-06 09:57 - 2018-05-20 12:34 - 016592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2018-07-06 09:57 - 2018-05-20 12:34 - 000861096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2018-07-06 09:57 - 2018-05-20 12:33 - 001665920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2018-07-06 09:57 - 2018-05-20 12:33 - 000101288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll
2018-07-06 09:57 - 2018-05-20 12:32 - 001034096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2018-07-06 09:57 - 2018-05-20 12:32 - 000560488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2018-07-06 09:57 - 2018-05-20 12:32 - 000286200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2018-07-06 09:57 - 2018-05-20 12:32 - 000077040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll
2018-07-06 09:57 - 2018-05-20 12:31 - 001456640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2018-07-06 09:57 - 2018-05-20 12:28 - 000111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppHostRegistrationVerifier.exe
2018-07-06 09:57 - 2018-05-20 12:27 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2018-07-06 09:57 - 2018-05-20 12:26 - 003392512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2018-07-06 09:57 - 2018-05-20 12:26 - 000356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2018-07-06 09:57 - 2018-05-20 12:26 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtutil.exe
2018-07-06 09:57 - 2018-05-20 12:26 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-07-06 09:57 - 2018-05-20 12:26 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll
2018-07-06 09:57 - 2018-05-20 12:26 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSHEIF.dll
2018-07-06 09:57 - 2018-05-20 12:25 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2018-07-06 09:57 - 2018-05-20 12:25 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll
2018-07-06 09:57 - 2018-05-20 12:24 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-07-06 09:57 - 2018-05-20 12:24 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyMATEnc.dll
2018-07-06 09:57 - 2018-05-20 12:23 - 013873152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2018-07-06 09:57 - 2018-05-20 12:23 - 005951488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2018-07-06 09:57 - 2018-05-20 12:23 - 000933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2018-07-06 09:57 - 2018-05-20 12:21 - 001371136 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2018-07-06 09:57 - 2018-05-20 12:21 - 001210880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2018-07-06 09:57 - 2018-05-20 12:21 - 000960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2018-07-06 09:57 - 2018-05-20 12:21 - 000783360 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll
2018-07-06 09:57 - 2018-05-20 12:17 - 002699776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2018-07-06 09:57 - 2018-05-20 12:16 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2018-07-06 09:57 - 2018-05-20 12:15 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2018-07-06 09:57 - 2018-05-20 12:15 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSHEIF.dll
2018-07-06 09:57 - 2018-05-20 12:14 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtutil.exe
2018-07-06 09:57 - 2018-05-20 12:13 - 004929024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2018-07-06 09:57 - 2018-05-20 12:13 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Phoneutil.dll
2018-07-06 09:57 - 2018-05-20 12:12 - 000860160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2018-07-06 09:57 - 2018-05-20 12:11 - 001036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2018-07-06 09:57 - 2018-05-20 12:11 - 001005568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2018-07-06 09:57 - 2018-05-20 09:26 - 000018716 _____ C:\WINDOWS\system32\srms-apr.dat
2018-07-06 09:57 - 2018-05-18 18:08 - 000018716 _____ C:\WINDOWS\SysWOW64\srms-apr.dat
2018-07-06 09:57 - 2018-04-28 15:25 - 000652184 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2018-07-06 09:57 - 2018-04-28 15:24 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2018-07-06 09:57 - 2018-04-28 15:23 - 000826776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2018-07-06 09:57 - 2018-04-28 15:23 - 000399768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2018-07-06 09:57 - 2018-04-28 15:03 - 013570560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-07-06 09:57 - 2018-04-28 15:03 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2018-07-06 09:57 - 2018-04-28 15:03 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll
2018-07-06 09:57 - 2018-04-28 15:01 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2018-07-06 09:57 - 2018-04-28 15:00 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2018-07-06 09:57 - 2018-04-28 14:58 - 001855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2018-07-06 09:57 - 2018-04-28 14:18 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
2018-07-06 09:57 - 2018-04-28 14:17 - 012500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-07-06 09:57 - 2018-04-28 14:14 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2018-07-06 09:57 - 2018-04-28 14:13 - 001585664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2018-07-06 09:57 - 2018-04-28 14:12 - 001380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2018-07-06 09:57 - 2018-04-28 11:58 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Analog.dll
2018-07-06 09:57 - 2018-04-28 05:29 - 001565592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2018-07-06 09:57 - 2018-04-28 05:29 - 000788216 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2018-07-06 09:57 - 2018-04-28 05:29 - 000776880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2018-07-06 09:57 - 2018-04-28 05:29 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2018-07-06 09:57 - 2018-04-28 05:29 - 000382872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2018-07-06 09:57 - 2018-04-28 05:14 - 000434584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2018-07-06 09:57 - 2018-04-28 05:13 - 001426328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2018-07-06 09:57 - 2018-04-28 05:13 - 000665320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2018-07-06 09:57 - 2018-04-28 05:12 - 000606448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2018-07-06 09:57 - 2018-04-28 05:03 - 000585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs3.dll
2018-07-06 09:57 - 2018-04-28 05:03 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs1.dll
2018-07-06 09:57 - 2018-04-28 05:03 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.th.dll
2018-07-06 09:57 - 2018-04-28 05:03 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.win81.dll
2018-07-06 09:57 - 2018-04-28 05:02 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs4.dll
2018-07-06 09:57 - 2018-04-28 05:02 - 000474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs2.dll
2018-07-06 09:57 - 2018-04-28 05:02 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2018-07-06 09:57 - 2018-04-28 05:02 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.win8rtm.dll
2018-07-06 09:57 - 2018-04-28 05:01 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2018-07-06 09:57 - 2018-04-28 05:00 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2018-07-06 09:57 - 2018-04-28 04:59 - 000553984 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
2018-07-06 09:57 - 2018-04-28 04:58 - 003086336 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2018-07-06 09:57 - 2018-04-28 04:57 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll
2018-07-06 09:57 - 2018-04-28 04:55 - 001421312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2018-07-06 09:57 - 2018-04-28 04:54 - 000561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-07-06 09:57 - 2018-04-28 04:53 - 001235968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2018-07-06 09:57 - 2018-04-28 04:53 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2018-07-06 09:57 - 2018-04-28 03:43 - 001953280 _____ C:\WINDOWS\system32\rdpnano.dll
2018-07-06 09:54 - 2018-07-06 09:54 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2018-07-06 09:52 - 2018-07-26 18:03 - 000004148 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{777DFA87-85BA-40B7-BDF6-FA2B1110D134}
2018-07-06 09:52 - 2018-07-26 17:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-07-06 09:52 - 2018-07-26 17:35 - 000003518 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-751853946-1792747095-3574087814-1002UA
2018-07-06 09:52 - 2018-07-26 17:35 - 000003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2018-07-06 09:52 - 2018-07-26 17:35 - 000003346 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2018-07-06 09:52 - 2018-07-26 17:35 - 000003250 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-751853946-1792747095-3574087814-1002Core
2018-07-06 09:52 - 2018-07-26 17:35 - 000003122 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2018-07-06 09:52 - 2018-07-26 17:35 - 000003108 _____ C:\WINDOWS\System32\Tasks\KMSAutoNet
2018-07-06 09:52 - 2018-07-26 17:35 - 000003042 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2018-07-06 09:52 - 2018-07-26 17:35 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-07-06 09:52 - 2018-07-26 17:35 - 000002970 _____ C:\WINDOWS\System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2018-07-06 09:52 - 2018-07-26 17:35 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-07-06 09:52 - 2018-07-26 17:35 - 000002856 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-751853946-1792747095-3574087814-1002
2018-07-06 09:52 - 2018-07-26 17:35 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-07-06 09:52 - 2018-07-26 17:35 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-07-06 09:52 - 2018-07-26 17:35 - 000002708 _____ C:\WINDOWS\System32\Tasks\AdobeGCInvoker-1.0-Nick-PC-Nick
2018-07-06 09:52 - 2018-07-26 17:35 - 000002604 _____ C:\WINDOWS\System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2018-07-06 09:52 - 2018-07-26 17:35 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2018-07-06 09:52 - 2018-07-25 20:28 - 000004264 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2018-07-06 09:52 - 2018-07-06 09:52 - 000011433 _____ C:\WINDOWS\diagwrn.xml
2018-07-06 09:52 - 2018-07-06 09:52 - 000011433 _____ C:\WINDOWS\diagerr.xml
2018-07-06 09:52 - 2018-07-06 09:52 - 000003408 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1458667662
2018-07-06 09:52 - 2018-07-06 09:52 - 000003404 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2018-07-06 09:52 - 2018-07-06 09:52 - 000002824 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-Nick-PC-Nick
2018-07-06 09:52 - 2018-07-06 09:52 - 000002750 _____ C:\WINDOWS\System32\Tasks\USER_ESRV_SVC_QUEENCREEK
2018-07-06 09:52 - 2018-07-06 09:52 - 000002606 _____ C:\WINDOWS\System32\Tasks\SamsungMagician
2018-07-06 09:52 - 2018-07-06 09:52 - 000002602 _____ C:\WINDOWS\system32\StartupCheckLibrary.dll
2018-07-06 09:52 - 2018-07-06 09:52 - 000002316 _____ C:\WINDOWS\System32\Tasks\SidebarExecute
2018-07-06 09:52 - 2018-07-06 09:52 - 000002294 _____ C:\WINDOWS\System32\Tasks\{F54370BD-2618-4A81-A619-6550E97EE3AF}
2018-07-06 09:52 - 2018-07-06 09:52 - 000000020 ___SH C:\Users\Nick\ntuser.ini
2018-07-06 09:52 - 2018-07-06 09:52 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD
2018-07-06 09:52 - 2018-07-06 09:52 - 000000000 ____D C:\WINDOWS\System32\Tasks\OfficeSoftwareProtectionPlatform
2018-07-06 09:52 - 2018-07-06 09:52 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2018-07-06 09:52 - 2013-01-16 13:33 - 000003566 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask
2018-07-06 09:47 - 2018-07-19 12:37 - 000002397 _____ C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-07-06 09:47 - 2018-07-16 10:57 - 000000000 ____D C:\Users\Nick
2018-07-06 09:47 - 2018-07-16 10:55 - 000000000 ____D C:\Users\DefaultAppPool
2018-07-06 09:47 - 2018-07-06 18:40 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chillblast
2018-07-06 09:47 - 2018-07-06 18:40 - 000000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chillblast
2018-07-06 09:47 - 2018-07-06 09:47 - 000001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2018-07-06 09:47 - 2018-04-12 00:34 - 000001105 _____ C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-07-06 09:47 - 2017-11-18 15:35 - 000000000 ____D C:\Users\Nick\AppData\Local\Microsoft Help
2018-07-06 09:47 - 2017-11-18 15:35 - 000000000 ____D C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2018-07-06 09:47 - 2017-11-18 15:06 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Media Center Programs
2018-07-06 09:47 - 2017-11-18 15:06 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Macromedia
2018-07-06 09:47 - 2017-11-18 15:06 - 000000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Media Center Programs
2018-07-06 09:47 - 2017-11-18 15:06 - 000000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Macromedia
2018-07-06 09:47 - 2013-01-15 12:44 - 000000216 _____ C:\Users\DefaultAppPool\Desktop\Chillblast FaQ.url
2018-07-06 09:43 - 2018-07-06 09:43 - 000000000 ____D C:\ProgramData\USOShared
2018-07-06 09:43 - 2018-04-12 00:33 - 002752000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2018-07-06 09:42 - 2018-07-26 18:05 - 000968564 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-07-06 09:41 - 2018-07-25 18:46 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-07-06 09:24 - 2018-07-23 18:57 - 000467064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2018-07-06 09:24 - 2018-07-06 18:40 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2018-07-06 09:24 - 2018-07-06 09:24 - 000000000 ___DL C:\Users\Public\Recorded TV (2)
2018-07-06 09:24 - 2018-07-06 09:24 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines
2018-07-06 09:24 - 2018-06-29 19:16 - 001027728 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000381584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000346664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbloga.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000229392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000211160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000201328 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsha.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000197160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000159640 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000111872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000085968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000059592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniva.sys
2018-07-06 09:24 - 2018-06-29 19:16 - 000046976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2018-07-06 09:24 - 2017-11-18 15:56 - 000455384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys.151101702687505
2018-07-06 09:24 - 2017-11-18 08:22 - 000455384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys.151098978125305
2018-07-06 09:24 - 2017-11-18 08:20 - 001020536 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys.151098966004308
2018-07-06 09:24 - 2017-06-21 17:51 - 000158368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswstm.sys.149806387594902
2018-07-06 09:24 - 2017-03-17 17:50 - 000547904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys.148976943243004
2018-07-06 09:24 - 2017-03-17 17:50 - 000337592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswvmm.sys.148976943413106
2018-07-06 09:24 - 2016-07-20 08:56 - 000473592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys.146900136162505
2018-07-06 09:24 - 2016-07-20 08:55 - 000473592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys.146900136039202
2018-07-06 09:23 - 2018-07-06 09:24 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2018-07-06 09:22 - 2018-07-06 09:22 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2018-07-06 09:22 - 2018-07-06 09:22 - 000000000 ____D C:\WINDOWS\system32\msmq
2018-07-06 09:22 - 2018-07-06 09:22 - 000000000 ____D C:\WINDOWS\system32\BestPractices
2018-07-06 09:22 - 2018-07-06 09:22 - 000000000 ____D C:\Program Files\Reference Assemblies
2018-07-06 09:22 - 2018-07-06 09:22 - 000000000 ____D C:\Program Files\MSBuild
2018-07-06 09:22 - 2018-07-06 09:22 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2018-07-06 09:22 - 2018-07-06 09:22 - 000000000 ____D C:\Program Files (x86)\MSBuild
2018-07-06 09:22 - 2018-07-06 09:22 - 000000000 ____D C:\inetpub
2018-07-06 09:22 - 2018-03-05 16:07 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2018-07-06 09:22 - 2018-03-05 16:07 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2018-07-06 09:22 - 2018-03-05 16:07 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2018-07-06 09:22 - 2018-02-14 16:21 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2018-07-06 09:22 - 2018-02-14 16:21 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2018-07-06 09:22 - 2018-02-14 16:21 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2018-07-06 09:17 - 2018-07-06 09:17 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2018-07-06 09:08 - 2018-07-26 17:53 - 000000000 ___DC C:\WINDOWS\Panther
2018-07-06 09:07 - 2018-07-06 09:08 - 000000036 _____ C:\WINDOWS\progress.ini
2018-07-06 09:00 - 2018-07-06 09:52 - 000000000 ___HD C:\$GetCurrent
2018-07-06 08:59 - 2018-07-06 09:52 - 000000000 ____D C:\Windows10Upgrade
2018-07-06 08:59 - 2018-07-06 08:59 - 000000731 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Update Assistant.lnk
2018-07-06 06:36 - 2018-07-06 06:36 - 000000000 ____D C:\Users\Nick\AppData\Local\BattlEye
2018-07-05 21:34 - 2018-07-06 09:51 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-07-05 21:32 - 2018-07-05 21:32 - 001130840 _____ (Google Inc.) C:\Users\Nick\Downloads\ChromeSetup.exe
2018-06-29 19:18 - 2018-06-29 19:18 - 000002023 _____ C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Start Menu\Avast Password Manager.lnk
2018-06-29 19:18 - 2018-06-29 19:18 - 000000000 ____D C:\Users\Nick\AppData\Local\AVAST Software
2018-06-29 19:17 - 2018-06-29 19:16 - 000015360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2018-07-26 18:05 - 2018-04-12 00:36 - 000000000 ____D C:\WINDOWS\INF
2018-07-26 18:00 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-07-26 18:00 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-07-26 18:00 - 2017-11-18 20:11 - 000000000 ____D C:\ProgramData\NVIDIA
2018-07-26 17:59 - 2018-04-12 10:20 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2018-07-26 17:59 - 2018-04-12 00:38 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2018-07-26 17:59 - 2018-04-12 00:38 - 000000000 ___SD C:\WINDOWS\system32\UNP
2018-07-26 17:59 - 2018-04-12 00:38 - 000000000 ___SD C:\WINDOWS\system32\F12
2018-07-26 17:59 - 2018-04-12 00:38 - 000000000 ___RD C:\WINDOWS\PrintDialog
2018-07-26 17:59 - 2018-04-12 00:38 - 000000000 ___RD C:\Program Files\Windows Defender
2018-07-26 17:59 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\TextInput
2018-07-26 17:59 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2018-07-26 17:59 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\ShellExperiences
2018-07-26 17:59 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-07-26 17:59 - 2018-04-12 00:38 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2018-07-26 17:59 - 2018-04-11 22:04 - 000131072 _____ C:\WINDOWS\system32\config\BBI
2018-07-26 17:58 - 2018-04-12 00:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-07-26 17:54 - 2013-04-28 11:46 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Wise Disk Cleaner
2018-07-26 17:53 - 2016-12-20 16:44 - 000000000 ____D C:\Users\Nick\AppData\Local\CrashDumps
2018-07-26 17:52 - 2014-02-23 19:20 - 000000000 ____D C:\Users\Nick\AppData\Roaming\WiseUpdate
2018-07-26 17:49 - 2016-08-08 09:07 - 000000000 ____D C:\Users\Nick\AppData\Local\Battle.net
2018-07-26 17:08 - 2017-09-26 10:04 - 000152688 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2018-07-26 16:48 - 2016-08-08 09:09 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2018-07-26 16:09 - 2017-12-06 16:01 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Twitch
2018-07-26 16:09 - 2016-08-08 09:07 - 000000000 ____D C:\Program Files (x86)\Battle.net
2018-07-26 15:28 - 2013-04-17 21:13 - 000000000 ____D C:\Steam
2018-07-26 10:00 - 2017-11-18 17:59 - 000000000 ____D C:\ProgramData\KMSAutoS
2018-07-26 05:59 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-07-25 19:22 - 2018-06-18 14:11 - 000000000 ____D C:\Users\Nick\AppData\Roaming\vlc
2018-07-24 20:30 - 2013-04-17 15:53 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Azureus
2018-07-22 13:52 - 2017-12-19 16:37 - 000000000 ____D C:\Users\Nick\Documents\Sound recordings
2018-07-21 21:19 - 2018-04-12 00:38 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2018-07-21 21:19 - 2017-11-18 17:52 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2018-07-21 21:19 - 2017-11-18 17:52 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2018-07-21 21:19 - 2017-11-18 17:52 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2018-07-21 21:19 - 2017-11-18 17:52 - 000002414 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2018-07-21 21:19 - 2017-11-18 17:52 - 000002413 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2018-07-21 21:19 - 2017-11-18 17:52 - 000002407 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2018-07-21 21:19 - 2017-11-18 17:52 - 000002401 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2018-07-21 21:18 - 2017-11-18 17:50 - 000000000 ____D C:\Program Files\Microsoft Office
2018-07-21 13:42 - 2017-10-10 09:55 - 000000000 ____D C:\Users\Nick\AppData\Local\NVIDIA
2018-07-19 12:37 - 2017-11-18 15:15 - 000000000 ___RD C:\Users\Nick\OneDrive
2018-07-18 16:40 - 2013-04-17 15:27 - 000005701 _____ C:\Users\Nick\Desktop\Info.txt
2018-07-18 09:11 - 2013-04-17 14:43 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Skype
2018-07-17 08:53 - 2017-03-16 21:21 - 000000000 ___RD C:\Program Files (x86)\Skype
2018-07-17 08:53 - 2013-04-17 14:43 - 000000000 ____D C:\ProgramData\Skype
2018-07-16 13:26 - 2018-03-10 12:59 - 000000000 ____D C:\Users\Nick\Desktop\Instagram
2018-07-16 12:25 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2018-07-16 12:21 - 2017-11-25 14:38 - 000000000 ____D C:\Users\Nick\Desktop\Wedding PREP
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\zu-ZA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\yo-NG
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\xh-ZA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\wo-SN
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\tn-ZA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ti-ET
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\rw-RW
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\nso-ZA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ig-NG
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA
2018-07-16 11:06 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ
2018-07-16 11:06 - 2018-04-12 00:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2018-07-16 11:06 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\appraiser
2018-07-16 11:04 - 2013-07-11 20:43 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-07-16 11:02 - 2013-01-16 13:20 - 134675576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-07-16 10:57 - 2018-06-19 20:57 - 000001979 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2018-07-16 10:57 - 2018-04-12 00:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2018-07-16 10:55 - 2018-04-12 10:37 - 000000000 ____D C:\WINDOWS\Containers
2018-07-16 10:55 - 2018-04-12 10:20 - 000000000 ___SD C:\WINDOWS\system32\AppV
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\tk-TM
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\te-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\sw-KE
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\prs-AF
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\or-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\mn-MN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ky-KG
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\km-KH
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\is-IS
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\id-ID
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\bn-BD
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\be-BY
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\as-IN
2018-07-16 10:55 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2018-07-16 10:55 - 2018-04-12 10:15 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2018-07-16 10:55 - 2018-04-12 10:15 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\en-GB
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\ta-in
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\si-lk
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\setup
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\oobe
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\et-EE
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\es-MX
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\en-GB
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\am-et
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2018-07-16 10:55 - 2018-04-12 00:38 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2018-07-16 10:55 - 2018-04-11 22:04 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2018-07-16 10:55 - 2018-04-11 22:04 - 000000000 ____D C:\WINDOWS\system32\Dism
2018-07-16 10:55 - 2018-04-11 22:04 - 000000000 ____D C:\WINDOWS\servicing
2018-07-16 10:55 - 2017-11-18 20:22 - 000000000 ____D C:\Users\Nick\AppData\Local\ConnectedDevicesPlatform
2018-07-16 10:55 - 2016-08-08 09:07 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Battle.net
2018-07-16 10:54 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\InfusedApps
2018-07-16 10:51 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\registration
2018-07-14 17:31 - 2017-04-29 16:47 - 000000000 ____D C:\Users\Nick\Documents\CPY_SAVES
2018-07-14 17:21 - 2017-09-30 15:06 - 000000000 ____D C:\Users\Nick\Desktop\Wedding DOCS
2018-07-09 08:30 - 2018-05-08 10:10 - 000001916 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-07-08 14:09 - 2018-01-01 12:03 - 000000000 ____D C:\Program Files\CCleaner
2018-07-07 07:07 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\appcompat
2018-07-07 07:02 - 2018-04-12 00:38 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
2018-07-06 22:23 - 2013-07-31 21:16 - 000000000 ____D C:\Users\Nick\Documents\Calibre Library
2018-07-06 18:40 - 2018-05-26 14:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard 10
2018-07-06 18:40 - 2018-05-05 15:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\by.xatab
2018-07-06 18:40 - 2018-04-12 00:41 - 000000000 ____D C:\WINDOWS\Setup
2018-07-06 18:40 - 2018-04-12 00:38 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 __SHD C:\Program Files\Windows Sidebar
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\spool
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\NDF
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\Macromed
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\IME
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\schemas
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\Help
2018-07-06 18:40 - 2018-04-12 00:38 - 000000000 ____D C:\Program Files\Common Files\system
2018-07-06 18:40 - 2018-04-09 19:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2018-07-06 18:40 - 2018-03-21 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hard Disk Sentinel
2018-07-06 18:40 - 2017-12-07 15:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey
2018-07-06 18:40 - 2017-11-29 14:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tecknet
2018-07-06 18:40 - 2017-11-19 10:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2018-07-06 18:40 - 2017-11-18 20:11 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-07-06 18:40 - 2017-11-18 17:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2018-07-06 18:40 - 2017-11-18 15:26 - 000000000 ____D C:\Program Files\UNP
2018-07-06 18:40 - 2017-11-18 15:06 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chillblast
2018-07-06 18:40 - 2017-11-18 15:06 - 000000000 ____D C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chillblast
2018-07-06 18:40 - 2017-10-02 14:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2018-07-06 18:40 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2018-07-06 18:40 - 2017-05-02 11:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Metal Gear Solid V The Phantom Pain
2018-07-06 18:40 - 2016-12-22 15:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2018-07-06 18:40 - 2016-08-08 09:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2018-07-06 18:40 - 2016-02-14 17:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III
2018-07-06 18:40 - 2016-01-01 14:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard
2018-07-06 18:40 - 2015-10-30 10:07 - 000000000 ____D C:\WINDOWS\ShellNew
2018-07-06 18:40 - 2015-05-27 15:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dxtory2.0
2018-07-06 18:40 - 2015-05-22 14:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2018-07-06 18:40 - 2014-12-09 10:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
2018-07-06 18:40 - 2014-10-18 09:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2018-07-06 18:40 - 2014-10-02 14:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
2018-07-06 18:40 - 2014-06-17 14:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\x264vfw
2018-07-06 18:40 - 2014-06-17 11:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Subtitle Edit
2018-07-06 18:40 - 2014-06-13 15:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid
2018-07-06 18:40 - 2013-10-18 14:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BOSS
2018-07-06 18:40 - 2013-10-12 13:04 - 000000000 ____D C:\WINDOWS\SysWOW64\xlive
2018-07-06 18:40 - 2013-10-12 13:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace
2018-07-06 18:40 - 2013-07-31 21:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management
2018-07-06 18:40 - 2013-07-18 17:38 - 000000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin
2018-07-06 18:40 - 2013-06-21 20:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2018-07-06 18:40 - 2013-04-28 11:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Disk Cleaner
2018-07-06 18:40 - 2013-04-17 21:11 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2018-07-06 18:40 - 2013-04-17 19:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2018-07-06 18:40 - 2013-04-17 16:29 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2018-07-06 18:40 - 2013-04-17 16:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS6
2018-07-06 18:40 - 2013-04-17 14:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster
2018-07-06 18:40 - 2013-04-17 13:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-07-06 18:40 - 2013-04-15 22:36 - 000000000 ____D C:\Program Files\Intel
2018-07-06 18:40 - 2013-01-16 13:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2018-07-06 18:40 - 2009-07-14 06:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2018-07-06 11:27 - 2018-01-30 05:40 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2018-07-06 10:05 - 2017-11-18 22:45 - 000000000 ____D C:\Users\Nick\AppData\Local\Packages
2018-07-06 10:04 - 2017-11-18 22:50 - 000000000 ___RD C:\Users\Nick\3D Objects
2018-07-06 10:04 - 2017-11-18 15:13 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-07-06 10:03 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\Provisioning
2018-07-06 10:00 - 2017-11-18 15:27 - 133315992 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2018-07-06 09:50 - 2018-04-12 00:38 - 000000000 __RSD C:\WINDOWS\media
2018-07-06 09:50 - 2017-11-18 15:11 - 000022840 _____ C:\WINDOWS\system32\emptyregdb.dat
2018-07-06 09:48 - 2013-04-17 13:45 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-07-06 09:47 - 2018-06-18 08:04 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2018-07-06 09:47 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2018-07-06 09:47 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2018-07-06 09:47 - 2017-11-29 17:23 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
2018-07-06 09:47 - 2014-10-25 16:49 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse
2018-07-06 09:47 - 2014-10-08 13:23 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z
2018-07-06 09:47 - 2013-04-28 09:16 - 000000000 ____D C:\Users\Nick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2018-07-06 09:43 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\USOPrivate
2018-07-06 09:42 - 2017-11-18 20:12 - 000924898 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2018-07-06 09:42 - 2017-11-18 20:11 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2018-07-06 09:41 - 2018-03-18 16:06 - 000000000 ____D C:\WINDOWS\system32\DAX2
2018-07-06 09:41 - 2017-11-18 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2018-07-06 09:28 - 2018-04-12 00:38 - 000000000 __RHD C:\Users\Public\Libraries
2018-07-06 09:24 - 2018-05-26 10:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate
2018-07-06 09:24 - 2018-04-12 10:19 - 000000000 ____D C:\WINDOWS\OCR
2018-07-06 09:24 - 2018-03-18 16:06 - 000000000 ____D C:\Program Files\Realtek
2018-07-06 09:24 - 2018-01-30 05:39 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2018-07-06 09:24 - 2017-09-19 11:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2018-07-06 09:24 - 2013-05-14 13:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec
2018-07-06 09:24 - 2013-04-17 14:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2018-07-06 09:22 - 2018-04-12 00:35 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb
2018-07-06 09:22 - 2018-04-12 00:35 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb
2018-07-06 09:22 - 2018-04-12 00:35 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb
2018-07-06 09:22 - 2018-04-12 00:35 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb
2018-07-06 09:22 - 2018-04-12 00:35 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2018-07-06 09:22 - 2018-04-12 00:35 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2018-07-06 09:22 - 2018-04-12 00:35 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2018-07-06 09:22 - 2018-04-12 00:35 - 000009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof
2018-07-06 09:22 - 2018-04-12 00:33 - 001409536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2018-07-06 09:22 - 2018-04-12 00:33 - 000564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2018-07-06 09:22 - 2018-04-12 00:33 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2018-07-06 09:22 - 2018-04-12 00:33 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2018-07-06 09:22 - 2018-04-12 00:33 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2018-07-06 09:22 - 2018-04-12 00:33 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2018-07-06 09:22 - 2018-04-12 00:33 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2018-07-06 09:22 - 2018-04-12 00:33 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\telnet.exe
2018-07-06 09:22 - 2018-04-12 00:33 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2018-07-06 09:22 - 2018-04-12 00:33 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2018-07-06 09:22 - 2018-04-12 00:33 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2018-07-06 09:22 - 2018-04-12 00:33 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2018-07-06 09:22 - 2018-04-12 00:33 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2018-07-06 09:22 - 2018-04-12 00:33 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2018-07-06 09:22 - 2018-04-12 00:33 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2018-07-06 09:22 - 2018-04-12 00:33 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2018-07-06 09:22 - 2018-04-12 00:33 - 000009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2018-07-06 08:37 - 2013-06-01 12:04 - 000000000 ____D C:\Users\Nick\AppData\Local\ElevatedDiagnostics
2018-06-29 19:16 - 2017-12-17 09:23 - 000239680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2018-06-29 02:13 - 2018-04-12 00:41 - 000835064 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2018-06-29 02:13 - 2018-04-12 00:41 - 000179704 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
 
==================== Files in the root of some directories =======
 
2014-08-02 10:04 - 2014-10-15 13:51 - 000001456 _____ () C:\Users\Nick\AppData\Local\Adobe Save for Web 13.0 Prefs
2013-04-27 18:51 - 2013-08-18 17:51 - 000101932 _____ () C:\Users\Nick\AppData\Local\ars.cache
2013-04-27 18:51 - 2013-08-18 17:51 - 000915027 _____ () C:\Users\Nick\AppData\Local\census.cache
2018-03-21 13:08 - 2018-03-21 13:08 - 001065984 _____ () C:\Users\Nick\AppData\Local\file__0.localstorage
2013-04-27 18:44 - 2013-04-27 18:44 - 000000036 _____ () C:\Users\Nick\AppData\Local\housecall.guid.cache
2013-10-04 14:51 - 2018-03-21 13:26 - 000007605 _____ () C:\Users\Nick\AppData\Local\resmon.resmoncfg
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
LastRegBack: 2018-07-06 09:41
 
==================== End of FRST.txt ============================

  • 0

#4
NickBetts

NickBetts

    New Member

  • Topic Starter
  • Member
  • Pip
  • 3 posts

Addition.txt

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21.07.2018
Ran by Nick (26-07-2018 18:06:38)
Running from G:\All Downloads
Windows 10 Pro Version 1803 17134.191 (X64) (2018-07-06 08:52:45)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-751853946-1792747095-3574087814-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-751853946-1792747095-3574087814-503 - Limited - Disabled)
Guest (S-1-5-21-751853946-1792747095-3574087814-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-751853946-1792747095-3574087814-1003 - Limited - Enabled)
Nick (S-1-5-21-751853946-1792747095-3574087814-1002 - Administrator - Enabled) => C:\Users\Nick
WDAGUtilityAccount (S-1-5-21-751853946-1792747095-3574087814-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
AAC ACM Codec x64 1.9 (HKLM\...\AACACM) (Version: 1.9 - fccHandler)
AC-3 ACM Codec x64 2.2 (HKLM\...\AC3ACM) (Version: 2.2 - fccHandler)
adobe (HKLM\...\{04E1CC38-0E5B-4AE7-BF20-7C9266AF9702}) (Version: 1.0.0000 - Adobe Systems Incorporated) Hidden
adobe (HKLM\...\{C292D9FF-FE73-4A50-8FEB-3BE480A6DB27}) (Version: 1.0.0000 - Adobe Systems Incorporated) Hidden
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.7.0.1860 - Adobe Systems Incorporated)
Adobe Audition CC 2015 (HKLM-x32\...\{839A3566-AED6-4787-A849-5CBE2B1DC6AE}) (Version: 8.0 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.4.0.294 - Adobe Systems Incorporated)
Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated)
Adobe DNG Codec (HKLM-x32\...\Adobe DNG Codec) (Version: 2.0.0.0 - Adobe Systems Incorporated)
Adobe Flash Player 27 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 27.0.0.130 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Lightroom Classic CC (HKLM-x32\...\LTRM_7_2) (Version: 7.2 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2017 (HKLM-x32\...\PPRO_11_0_2) (Version: 11.0.2 - Adobe Systems Incorporated)
Amazon Kindle (HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\Amazon Kindle) (Version: 1.17.1.44183 - Amazon)
Apple Application Support (32-bit) (HKLM-x32\...\{543F829B-4591-4B2F-AF63-6E6E6AE59EB2}) (Version: 6.4 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{0ECA3BB5-4410-414B-B226-241FF1C12CD0}) (Version: 6.4 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{A05FDFEC-4377-49E0-82CB-B6D1386E89DA}) (Version: 11.3.0.9 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{DF6C3726-7E53-4772-9763-E9F147769F51}) (Version: 3.1.6.0000 - Asmedia Technology)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.35.1 - Asmedia Technology)
AutoHotkey 1.1.26.01 (HKLM\...\AutoHotkey) (Version: 1.1.26.01 - Lexikos)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.5.2342 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BOSS (HKLM-x32\...\BOSS) (Version: 2.1.1 - BOSS Development Team)
calibre 64bit (HKLM\...\{3E7334AB-3B64-4CD0-8DAC-817FF56AED7E}) (Version: 3.12.0 - Kovid Goyal)
Canon Utilities Digital Photo Professional 4 (HKLM-x32\...\Digital Photo Professional 4 (x64)) (Version: 4.8.30.0 - Canon Inc.)
Canon Utilities EOS Lens Registration Tool (HKLM-x32\...\EOS Lens Registration Tool) (Version: 1.8.20.0 - Canon Inc.)
CPUID HWMonitor 1.34 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.34 - )
Curse Client (HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.0.0.0054 - Disc Soft Ltd)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 398.36 - NVIDIA Corporation) Hidden
Dxtory version 2.0.126 (HKLM-x32\...\Dxtory2.0_is1) (Version: 2.0.126 - ExKode Co. Ltd.)
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version:  - EaseUS)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Final Draft (HKLM-x32\...\{7C3C895B-AE02-4F30-8A6A-051D37A38DD0}) (Version: 8.0.1.89 - Final Draft, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.99 - Google Inc.)
Google Talk Plugin (HKLM-x32\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 5.41.3.0 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
Hard Disk Sentinel PRO (HKLM-x32\...\Hard Disk Sentinel_is1) (Version: 5.01 - Janos Mathe)
Intel® Computing Improvement Program (HKLM\...\{699E6891-25C3-443A-9B8E-80C74F0172C8}) (Version: 2.1.03413 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.10.1300 - Intel Corporation)
Intel® Network Connections 20.5.150.0 (HKLM\...\PROSetDX) (Version: 20.5.150.0 - Intel)
Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.7.248 - Intel Corporation)
iTunes (HKLM\...\{5581A594-89CB-4062-81C3-2E9F7A76FBE0}) (Version: 12.7.4.76 - Apple Inc.)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version:  - )
Lagarith Lossless Codec (1.3.27) (HKLM-x32\...\{F59AC46C-10C3-4023-882C-4212A92283B3}_is1) (Version:  - )
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Malwarebytes version 3.5.1.2522 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.5.1.2522 - Malwarebytes)
Microsoft Camera Codec Pack (HKLM\...\{D553E8CC-5C56-4B06-AC1A-A443DFF31092}) (Version: 6.3.9723.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProPlusRetail - en-us) (Version: 16.0.10228.20134 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\OneDriveSetup.exe) (Version: 18.111.0603.0006 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
MiniTool Partition Wizard Free 10.2.3 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version:  - MiniTool Solution Ltd.)
MyFreeCodec (HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\MyFreeCodec) (Version:  - )
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.47.3 - Black Tree Gaming)
Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
NVIDIA Graphics Driver 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 398.36 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.10228.20134 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.10228.20134 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.10228.20134 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden
Pillars of Eternity v. 3.03.1047 PX1PX2 (HKLM-x32\...\Pillars of Eternity_is1) (Version:  - )
Premiere Pro (HKLM\...\{3DF5A448-80E1-43C1-8428-984429451989}) (Version: 1.0.0000 - Adobe Systems Incorporated) Hidden
proDAD Mercalli 2.0 (64bit) (HKLM\...\proDAD-Mercalli-2.0) (Version: 2.0.105.1 - proDAD GmbH)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7848 - Realtek Semiconductor Corp.)
SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.5.1 - Samsung Electronics)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.55.0 - Samsung Electronics Co., Ltd.)
Seagate DiscWizard (HKLM-x32\...\{15C6E3DD-11C8-4A57-BD32-828613558488}) (Version: 18.0.6036 - Seagate)
Skype version 8.25 (HKLM-x32\...\Skype_is1) (Version: 8.25 - Skype Technologies S.A.)
SpywareBlaster 5.0 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.0.0 - BrightFort LLC)
Subtitle Edit 3.3.5 (HKLM-x32\...\SubtitleEdit_is1) (Version: 3.3.5.1862 - Nikse)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version:  - TechPowerUp)
Tecknet Gaming Mouse Driver v1.0.7 (HKLM-x32\...\{76D35F23-323F-49A0-B9E6-CECD39FBA65C}_is1) (Version:  - )
Topaz DeNoise 5 (HKLM-x32\...\Topaz DeNoise 5) (Version: 5.0.1 - Topaz Labs, LLC)
Twitch (HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 7.0.0.0 - Twitch Interactive, Inc.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{61702639-6539-473A-8FE5-618E194C0069}) (Version: 2.7.0.0 - Microsoft Corporation)
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.3 - VideoLAN)
Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.7.3.0 - Azureus Software, Inc.)
Warcraft III (HKLM-x32\...\Warcraft III) (Version:  - Blizzard Entertainment)
Warcraft III Public Test (HKLM-x32\...\Warcraft III Public Test) (Version:  - Blizzard Entertainment)
Windows 10 Update Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22452 - Microsoft Corporation)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
Wise Disk Cleaner 9.76 (HKLM-x32\...\Wise Disk Cleaner_is1) (Version: 9.76 - WiseCleaner.com, Inc.)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.3) (Version: 1.3.3 - Xvid Team)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{8C46158B-D978-483C-A312-16EE5013BE04}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.33.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{a4616be9-9e7c-4f74-8a39-0c6c11b1b66f}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-751853946-1792747095-3574087814-1002_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Nick\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => No File
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-01-04] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-01-04] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-01-04] ()
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-29] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-29] (AVAST Software)
ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Seagate\DiscWizard\tishell64.dll [2014-09-09] (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Seagate\DiscWizard\tishell64.dll [2014-09-09] (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Seagate\DiscWizard\tishell64.dll [2014-09-09] (Acronis)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-01-04] ()
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-16] (Adobe Systems Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-29] (AVAST Software)
ContextMenuHandlers1-x32: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files (x86)\PowerISO\PWRISOSH.DLL [2014-09-21] (Power Software Ltd)
ContextMenuHandlers1-x32: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers1-x32-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-29] (AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov)
ContextMenuHandlers4-x32: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files (x86)\PowerISO\PWRISOSH.DLL [2014-09-21] (Power Software Ltd)
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2012-10-10] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-06-24] (NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-01-04] ()
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-16] (Adobe Systems Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-29] (AVAST Software)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes)
ContextMenuHandlers6-x32: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files (x86)\PowerISO\PWRISOSH.DLL [2014-09-21] (Power Software Ltd)
ContextMenuHandlers6-x32: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers6-x32-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {0630C1EC-59EB-4D34-9747-85750BA05AC1} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-06-24] (NVIDIA Corporation)
Task: {070506B0-9493-47FD-AE6C-12A73E879387} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-751853946-1792747095-3574087814-1002UA => C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {0F0EE400-7CD8-42C9-B392-37CFE94ED780} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\Time -> No File <==== ATTENTION
Task: {0F59ADD6-4467-400B-9A9C-F4264345864C} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-06-24] (NVIDIA Corporation)
Task: {0FBBDD3B-FD52-4502-ADC4-159897E4A454} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-07-21] (Microsoft Corporation)
Task: {133FD50C-0B26-409B-89CC-739A2B295352} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {14386AA4-192B-41F2-ADDD-2A43788F2B49} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {19B4888F-E00A-4D95-B358-5AAC2FCC198D} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {1FC94872-AE54-447C-A1E8-B62CCA2AA958} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {22B69C9F-5A74-462E-B727-B48AF0476702} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {25016E64-553C-4C5E-AF82-A900632FC951} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.)
Task: {28EC9B22-FEA0-41D7-995C-A73166918C65} - System32\Tasks\AdobeGCInvoker-1.0-Nick-PC-Nick => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-05-11] (Adobe Systems, Incorporated)
Task: {324F0E50-C15F-420F-918A-2BF70B189281} - System32\Tasks\{F54370BD-2618-4A81-A619-6550E97EE3AF} => C:\Windows\system32\pcalua.exe -a E:\Steam\steam.exe -c steam://uninstall/231550
Task: {385C1EFD-C825-46DD-89D4-DC1ED8590341} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-06-24] (NVIDIA Corporation)
Task: {3AA451CC-9D7C-47EC-99E5-C57BAF678EF3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-09-12] (Adobe Systems Incorporated)
Task: {3B31AFA4-AC2C-4CB1-AC74-E21BB3DD3E33} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-751853946-1792747095-3574087814-1002Core => C:\Users\Nick\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {4E90767A-E301-4818-8405-7825DCC44917} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {504AF0A7-D147-4925-84BD-BDFADEC1A8FB} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {5358FFFD-65C4-4FC5-8815-E65A264B5A71} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2018-07-21] (Microsoft Corporation)
Task: {554B50A4-5A73-436F-9DCD-A47B3F133358} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {56A8F814-8823-4938-A313-5824515149AE} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {571B5B97-1BFF-4E59-9264-C3EBD3006425} - System32\Tasks\Microsoft\Office\OfficeOsfInstaller => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\osfinstaller.exe [2018-07-21] (Microsoft Corporation)
Task: {5EAAAF5E-1175-4725-A874-F24B450908E4} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {5FB48FFD-8EA3-494D-9B0E-D15B06A6023A} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {61B95C60-E05D-4570-A2F5-4C03D98FDF4C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-07-13] (Microsoft Corporation)
Task: {634B31C8-6D70-48D8-8ED7-1527FCC3AD32} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [2017-07-13] (Intel Corporation)
Task: {63DF1B55-A1E0-4963-B023-C4C51FA924A2} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\Unlock -> No File <==== ATTENTION
Task: {643357BE-01D9-4337-BBC9-A48D29D26D75} - System32\Tasks\AdobeAAMUpdater-1.0-Nick-PC-Nick => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated)
Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] ()
Task: {6AF30993-0BB7-4120-8EE0-F648A5D72890} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\OnIdle -> No File <==== ATTENTION
Task: {6C63AF9A-3D2D-4B85-8B13-5087778EFB37} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {6DB2ED36-E6B7-40BF-8F63-1349046A721D} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {72A0BDCF-7444-48F5-AEF6-BA83A7727B07} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {75E093AB-67BE-4CE5-AEF1-A9889DFAF3C1} - \Microsoft\Windows\Application Experience\StartupCheckLibrary -> No File <==== ATTENTION
Task: {7AAD9667-7CBC-49E4-8078-F4784DF68F42} - System32\Tasks\SafeZone scheduled Autoupdate 1458667662 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe
Task: {7B4510E9-6721-4E14-AA7E-AF2A117EBC94} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {7D8D7D14-9554-47B8-BEAE-5107F8C1D07A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-03-21] (Adobe Systems Incorporated)
Task: {85750A7B-52D9-4E50-A709-187A3CDE4390} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe
Task: {8E4F5288-787E-4C30-94D7-CF0FF109DFF7} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\OutOfIdle -> No File <==== ATTENTION
Task: {981A3E10-554D-4091-B231-53E384BF9BF2} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\Logon -> No File <==== ATTENTION
Task: {99BA7771-94ED-4F6A-9D54-0B6E94CE62AB} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {9EC83329-6D05-4E88-8EB7-4D2C5A9CD3CA} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [2017-07-13] (Intel Corporation)
Task: {A3F5A16F-AFE9-42FC-8CCC-DCEABFD3093C} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe
Task: {AA75B54D-8B99-46DE-936F-132490EB2CE6} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-07-21] (Microsoft Corporation)
Task: {AFFDC8D0-300E-4AC3-8DE3-CF0E0DFEB298} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BB283098-5E2E-47C9-A636-B64082DC3A56} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {C0560497-118C-455C-80FE-401D85D2A781} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [2018-06-05] (AVAST Software)
Task: {C4504812-A436-4B3F-A0D9-2B04BF1F60F6} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {C52F9EB4-3AA6-4A6C-9AC4-E08C34D57716} - System32\Tasks\KMSAutoNet => C:\ProgramData\KMSAutoS\KMSAuto Net.exe [2017-11-18] (MSFree Inc.)
Task: {CCED2AAD-25FB-4EAB-9BC3-8490B14D577F} - System32\Tasks\Microsoft\Windows\Setup\Notifier => C:\WINDOWS\system32\Notifier.exe
Task: {CE8FAA93-1FD8-4B96-8AA3-30A375E433E6} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {D033126F-78F7-4DBA-A1E8-DF802FE6332B} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel® Update Manager\bin\iumsvc.exe
Task: {D33680C1-6F33-4EED-9E88-BB86F5DEFEF3} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-06-24] (NVIDIA Corporation)
Task: {D65B48F3-8FC0-4B49-972E-C01C8BA9295D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {DD7B8BE4-A117-46C6-8821-803FF7BC1D38} - \AutoKMS -> No File <==== ATTENTION
Task: {E264200B-07A7-4D20-A81F-7B29879633A0} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {E490F285-BED7-4F2C-BC06-F45164A15972} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\RunCampaignManager2 -> No File <==== ATTENTION
Task: {E5240DFB-6511-449F-8EDC-DAE62C18D7F0} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-07-13] (Microsoft Corporation)
Task: {E5BB5CD7-919B-4E54-851D-424E1B40A790} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2018-07-21] (Microsoft Corporation)
Task: {E99C1D02-62DB-47A1-A875-E7CAA27C14BB} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe
Task: {EA257818-3E0F-4B54-8AF0-2FA7F9CC8376} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-06-24] (NVIDIA Corporation)
Task: {F2D74DD9-2563-41D1-A51B-7071A12B4F4C} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {F34B89E3-FF17-4C2D-A7FC-5F2C44B5F13E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F46D63A3-BEB9-4314-AA68-743DCF31E7A6} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {F55FB8E4-33DF-4682-ABBD-3DD1DFBE2BCA} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F7E3F5F3-FA4E-43B9-AD9C-95A52B6795FB} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-06-24] (NVIDIA Corporation)
Task: {F9A19E63-BD47-49B4-8E41-EB4FCA1448CF} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-06-24] (NVIDIA Corporation)
Task: {FC14F8DD-5E2B-48BC-BECE-A83EEB3FAA19} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {FC94E404-EFD6-4EC6-8AC6-B5F026ED04E6} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-06-29] (AVAST Software)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\AutoKMS.job => C:\WINDOWS\AutoKMS\AutoKMS.exe
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
 
==================== Loaded Modules (Whitelisted) ==============
 
2018-03-18 16:03 - 2015-05-08 14:26 - 000936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
2018-03-18 16:03 - 2014-04-24 14:29 - 001360016 _____ () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
2018-03-16 15:19 - 2018-03-16 15:19 - 000088888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2018-03-16 15:19 - 2018-03-16 15:19 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2018-01-11 02:25 - 2018-01-11 02:25 - 000182544 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
2018-04-12 00:34 - 2018-04-12 00:34 - 000491744 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2018-01-04 10:04 - 2018-01-04 10:04 - 000649672 _____ () C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
2018-04-12 00:34 - 2018-04-12 00:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll
2018-04-12 00:34 - 2018-04-12 00:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
2017-12-12 08:18 - 2017-12-12 08:19 - 000948736 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_2.1.18.0_x64__8wekyb3d8bbwe\e_sqlite3.dll
2018-03-22 09:16 - 2018-03-22 09:16 - 002426040 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_2.1.18.0_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll
2018-03-22 09:16 - 2018-03-22 09:16 - 000381440 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_2.1.18.0_x64__8wekyb3d8bbwe\Microsoft.Notes.Upgrade.dll
2017-12-02 09:02 - 2017-12-02 09:02 - 000843672 _____ () C:\Program Files\WindowsApps\Microsoft.Services.Store.Engagement_10.0.17112.0_x64__8wekyb3d8bbwe\Microsoft.Services.Store.Engagement.dll
2018-03-22 09:16 - 2018-03-22 09:16 - 000631296 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_2.1.18.0_x64__8wekyb3d8bbwe\RuntimeConfiguration.dll
2018-04-12 00:34 - 2018-04-12 00:34 - 004644864 _____ () C:\Windows\System32\Windows.UI.Input.Inking.Analysis.dll
2018-07-16 11:00 - 2018-07-06 07:55 - 002185728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-07-05 21:34 - 2018-06-22 20:15 - 002663768 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\swiftshader\libglesv2.dll
2018-07-05 21:34 - 2018-06-22 20:15 - 000128856 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\swiftshader\libegl.dll
2018-03-18 16:03 - 2018-07-26 17:59 - 000030720 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll
2018-03-18 16:03 - 2015-05-08 14:26 - 000104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll
2018-06-19 20:57 - 2018-06-19 20:57 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-06-29 19:16 - 2018-06-29 19:16 - 000483544 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2018-06-29 19:16 - 2018-06-29 19:16 - 000282840 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2016-09-09 14:46 - 2016-09-09 14:46 - 000037328 _____ () C:\Program Files (x86)\Seagate\DiscWizard\qt_icontray_ex.dll
2016-09-09 14:46 - 2016-09-09 14:46 - 000034768 _____ () C:\Program Files (x86)\Common Files\Seagate\Home\thread_pool.dll
2013-04-15 22:36 - 2012-08-08 03:40 - 001198912 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\ACE.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [119]
AlternateDataStreams: C:\ProgramData\TEMP:A5514ABC [126]
AlternateDataStreams: C:\Users\Public\AppData:CSM [470]
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\100sexlinks.com -> 100sexlinks.com
 
There are 5489 more sites.
 
 
==================== Hosts content: ==========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-14 03:34 - 2017-10-02 19:20 - 000000308 _____ C:\WINDOWS\system32\Drivers\etc\hosts
 
127.0.0.1                   activate.adobe.com
127.0.0.1                   practivate.adobe.com
127.0.0.1                   lmlicenses.wip4.adobe.com
127.0.0.1                   lm.licenses.adobe.com
127.0.0.1                   na1r.services.adobe.com
127.0.0.1                   hlrcv.stage.adobe.com
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-751853946-1792747095-3574087814-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Nick\Documents\Wallpapers\hal-9000-space-odyssey-15664.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
MSCONFIG\startupreg: Adobe Creative Cloud => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "SwitchBoard"
HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager"
HKLM\...\StartupApproved\Run32: => "APSDaemon"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\StartupApproved\Run: => "Xvid"
HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-751853946-1792747095-3574087814-1002\...\StartupApproved\Run: => "OneDrive"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{250954B1-EC9E-4670-B621-54FABD9A2990}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [UDP Query User{E59E06B6-103E-4CB3-943D-823942C22742}E:\steam games\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) E:\steam games\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [TCP Query User{0C0CAA05-4010-4872-94B7-269E0BF327BD}E:\steam games\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) E:\steam games\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [UDP Query User{1283331D-BFF5-4902-A5BF-B6C3F89F4BB1}E:\steam games\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\steam games\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{7EA9AE4E-A8B8-4E53-8AF9-546707942587}E:\steam games\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\steam games\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{5093E0F1-4AE4-4DF3-A5DB-F66F9B59967D}] => (Allow) E:\Steam Games\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{2C4B89CC-6379-4CDB-B182-1561C5C7E617}] => (Allow) E:\Steam Games\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{BFEC383A-3514-4D6C-A916-BD1EC019871A}] => (Allow) C:\Program Files (x86)\Canon\EOS Utility\EOSUPNPSV.exe
FirewallRules: [{4C78D7E8-8EA1-4CA4-967E-C55219F107FA}] => (Allow) C:\Program Files (x86)\Canon\EOS Utility\EOSUPNPSV.exe
FirewallRules: [{61EA8234-52EF-489D-AE45-B69740BAE638}] => (Allow) C:\Steam\SteamApps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{580C0455-9B30-43F4-9BB9-CBF5A99A9B0D}] => (Allow) C:\Steam\SteamApps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [UDP Query User{6E977E0C-4FC2-4F37-8DD1-C4D448032AD9}G:\warcraft iii\warcraft iii.exe] => (Allow) G:\warcraft iii\warcraft iii.exe
FirewallRules: [TCP Query User{F845752F-4507-4FDB-A50E-4934048B2DB1}G:\warcraft iii\warcraft iii.exe] => (Allow) G:\warcraft iii\warcraft iii.exe
FirewallRules: [{40BFEC60-08EA-4835-B260-1C579D962609}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{1E2F749F-5239-4C46-8955-1F92F9086EEA}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{75889C50-146B-467B-BBBE-DC92810271DF}] => (Allow) G:\Apple iTunes\iTunes.exe
FirewallRules: [{3E4CE1D7-F285-40E5-AA81-FCB54834B073}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
FirewallRules: [UDP Query User{9340337A-D962-4851-89B0-38E1B141B254}C:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{8E19C01B-532C-4F25-BAF8-C7EBA0B77F96}C:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{F85E681A-31F8-4D87-9514-35D8D9396504}] => (Allow) C:\program files (x86)\warcraft iii\warcraft iii.exe
FirewallRules: [{58B3A14B-2179-4F94-9B16-B5F14FA29ACC}] => (Allow) C:\program files (x86)\warcraft iii\warcraft iii.exe
FirewallRules: [{2FD047A9-10E6-4E1A-8C3F-6CD28D56489B}] => (Allow) E:\additional programs\warcraft iii public test\warcraft iii.exe
FirewallRules: [{E2B679CC-7A6B-48DE-90F0-52B8094CD4D1}] => (Allow) E:\additional programs\warcraft iii public test\warcraft iii.exe
FirewallRules: [{A866B215-18A7-4C7C-85EB-A6A816457C7E}] => (Allow) C:\program files (x86)\warcraft iii\war3.exe
FirewallRules: [{C838D24C-00F6-442A-9995-50B99E973925}] => (Allow) C:\program files (x86)\warcraft iii\war3.exe
FirewallRules: [{A7684A2A-3094-4B28-A01D-073A352680C4}] => (Allow) E:\additional programs\warcraft iii\warcraft iii.exe
FirewallRules: [{12F43545-09F7-46E4-B77C-89CDFA8012C2}] => (Allow) E:\additional programs\warcraft iii\warcraft iii.exe
FirewallRules: [{D2454B9C-E7BA-4B63-A628-463D282198A6}] => (Allow) C:\Program Files (x86)\Warcraft III\Warcraft III Launcher.exe
FirewallRules: [{C2DE13FC-B9BA-4933-94B0-323EC0CF4209}] => (Allow) C:\Program Files (x86)\Warcraft III\Warcraft III Launcher.exe
FirewallRules: [{0AFC1BA9-F713-4D57-AB5F-5D12895C81E7}] => (Allow) C:\Program Files (x86)\Warcraft III\Warcraft III Launcher.exe
FirewallRules: [{FAF47E1E-8D97-4DF4-A948-B10DB103DFAB}] => (Allow) C:\Program Files (x86)\Warcraft III\Warcraft III Launcher.exe
FirewallRules: [UDP Query User{474415A2-DE49-486C-B060-E0D204CC8831}C:\program files (x86)\warcraft iii\warcraft iii.exe] => (Allow) C:\program files (x86)\warcraft iii\warcraft iii.exe
FirewallRules: [TCP Query User{0E73D6FA-2BBF-4CE5-9136-242F3F329DA7}C:\program files (x86)\warcraft iii\warcraft iii.exe] => (Allow) C:\program files (x86)\warcraft iii\warcraft iii.exe
FirewallRules: [{801A52A6-A6D6-4AD1-8565-511D769F16A9}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{83FC21ED-8628-4139-8A0C-E9FC8006CF86}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{F3D4E2B7-8792-401B-864C-35423E472D0A}] => (Allow) C:\Steam\Steam.exe
FirewallRules: [{CD811B11-5231-4EC1-8CA6-CD8D47ABF9B0}] => (Allow) C:\Steam\Steam.exe
FirewallRules: [{361AE8CE-7047-4AC6-B669-387186BA0E7F}] => (Allow) E:\Steam\SteamApps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{AB5A779E-3DD4-4132-BD6E-5F1181AD9790}] => (Allow) E:\Steam\SteamApps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{8B8E5035-0DBC-4135-9324-169A931939A1}] => (Allow) E:\Additional Programs\Netease\dzclient\plugins\war3\War3Plugin.dll
FirewallRules: [{68993422-7257-4C72-9102-032D03F33C69}] => (Allow) E:\Additional Programs\Netease\dzclient\plugins\war3\War3Plugin.dll
FirewallRules: [{F4B84073-EF96-4E06-8CC9-A709794DF18B}] => (Allow) E:\Additional Programs\Netease\dzclient\plugins\minicc\bin\CCMini.exe
FirewallRules: [{94DBFEE6-6BEF-4C1B-88CD-3762B4229871}] => (Allow) E:\Additional Programs\Netease\dzclient\plugins\minicc\bin\CCMini.exe
FirewallRules: [{F6502515-52D4-4F2D-B987-9DB8E4A83148}] => (Allow) E:\Additional Programs\Netease\dzclient\reporter.dll
FirewallRules: [{3BAD10DB-398A-4D2F-B8A2-522210BDF7A0}] => (Allow) E:\Additional Programs\Netease\dzclient\reporter.dll
FirewallRules: [{DF5E0A3F-9F15-45D3-9983-481A830D4441}] => (Allow) E:\Additional Programs\Netease\dzclient\p2pupdater.dll
FirewallRules: [{690CC08F-AE7F-4F8C-8491-5737ED2C2B69}] => (Allow) E:\Additional Programs\Netease\dzclient\p2pupdater.dll
FirewallRules: [{5BD450D5-8273-41E9-9324-3579532B2E74}] => (Allow) E:\Additional Programs\Netease\dzclient\curl.dll
FirewallRules: [{57432AFC-B5EE-4B55-9C1F-E72F4226C481}] => (Allow) E:\Additional Programs\Netease\dzclient\curl.dll
FirewallRules: [{B8BB7DEA-BE5D-4CF1-9C73-6AC4991224C2}] => (Allow) E:\Additional Programs\Netease\dzclient\Platform.exe
FirewallRules: [{B433EA2F-58B7-428E-80A4-BF7DDADE3927}] => (Allow) E:\Additional Programs\Netease\dzclient\Platform.exe
FirewallRules: [UDP Query User{335890E1-B2D4-46B0-A927-2E44328CCF02}E:\additional programs\warcraft iii public test\warcraft iii.exe] => (Allow) E:\additional programs\warcraft iii public test\warcraft iii.exe
FirewallRules: [TCP Query User{2E6F98D3-600C-4EF0-9A1A-A4BA3CB5178C}E:\additional programs\warcraft iii public test\warcraft iii.exe] => (Allow) E:\additional programs\warcraft iii public test\warcraft iii.exe
FirewallRules: [{EF7DC1B1-F241-4E67-8824-EC3EA23556C0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{5D98D823-AFDF-4763-A532-2AABCF4C1CEF}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
FirewallRules: [{C924BCD4-FDE4-439E-85A8-DC0C735F29CA}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
FirewallRules: [{663FBF45-FB55-4116-BC53-6CCAA83F8E5D}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
FirewallRules: [{BF561896-1FC0-40CF-9CB7-389A3290BC1C}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
FirewallRules: [{479B5861-5507-447F-BF20-44FBA6D091E5}] => (Allow) E:\Steam\SteamApps\common\Business Tour\BusinessTour.exe
FirewallRules: [{7678E900-2343-466B-A535-FC5EDC2F35D7}] => (Allow) E:\Steam\SteamApps\common\Business Tour\BusinessTour.exe
FirewallRules: [UDP Query User{3BC23B3A-64F0-4290-A2BA-C932706ECEC9}E:\zelda files\helper\wiiu_usb_helper.exe] => (Allow) E:\zelda files\helper\wiiu_usb_helper.exe
FirewallRules: [TCP Query User{F52BA0AC-CCA4-46FF-999B-66861FFF5898}E:\zelda files\helper\wiiu_usb_helper.exe] => (Allow) E:\zelda files\helper\wiiu_usb_helper.exe
FirewallRules: [UDP Query User{2FE157BE-4997-471A-B1CD-A62D37D36B3C}E:\additional programs\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{6F4DB20B-F2F3-4A1D-80CC-4EA3EDE0D03D}E:\additional programs\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\heroes of the storm\versions\base59988\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{5BA36F09-AAF9-4A2B-AFAD-DDAC2E7550B1}E:\additional programs\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{9FB27948-B624-420A-8355-D9A63AA20E5A}E:\additional programs\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\heroes of the storm\versions\base59799\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{806CFACC-BDCF-4E61-AED2-E5ABBC0DD992}E:\additional programs\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{78FBD113-A92E-4487-8685-EC6C95D1EEB1}E:\additional programs\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\heroes of the storm\versions\base59657\heroesofthestorm_x64.exe
FirewallRules: [{B9522F55-6B93-4A13-A4B2-5906D9B3B8D6}] => (Allow) LPort=1688
FirewallRules: [{55F7DE51-C445-42DC-9AA3-ADA4D6B0009F}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{916FAD66-988A-4E16-BF55-0FFDB90393FE}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [TCP Query User{FA4480F1-EEA9-41D0-AD5F-AF58AEFB8BA4}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{264F68EC-343D-4DC2-8D5C-C1B565B4DEC2}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [TCP Query User{3BCA4C2B-28FC-4EEF-AC8D-DDB2644EEAEE}C:\program files\vuze\azureus.exe] => (Allow) C:\program files\vuze\azureus.exe
FirewallRules: [UDP Query User{006477F9-FF8A-4F78-92EE-525507536B52}C:\program files\vuze\azureus.exe] => (Allow) C:\program files\vuze\azureus.exe
FirewallRules: [{787A24F2-3757-45F6-A37A-2441422FEF5F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{76FEB528-6E90-4736-A203-B0ECD531D19F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{755D5879-702A-4E82-B05F-54370CB755E6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe
FirewallRules: [{EDE4D849-6621-4217-962C-354736E2B4F9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe
FirewallRules: [{B91B6EA9-FBF8-44E0-AC9C-3DE32C7FB779}] => (Allow) E:\Steam\Steam.exe
FirewallRules: [{7B909F2D-ADC3-42FD-9FEF-7C518504DB52}] => (Allow) E:\Steam\Steam.exe
FirewallRules: [TCP Query User{6705B6FC-5964-41B4-A401-E8FBE7BEF28A}C:\games\coh beta\steamapps\common\company of heroes 2 - test build\reliccoh2.exe] => (Allow) C:\games\coh beta\steamapps\common\company of heroes 2 - test build\reliccoh2.exe
FirewallRules: [UDP Query User{4977A2DE-12C0-46E2-919A-22443929FD19}C:\games\coh beta\steamapps\common\company of heroes 2 - test build\reliccoh2.exe] => (Allow) C:\games\coh beta\steamapps\common\company of heroes 2 - test build\reliccoh2.exe
FirewallRules: [TCP Query User{4DE9E5A5-45A0-46A9-BA3D-2AE485B3537B}G:\all downloads\neverwinter_nw.1.20130416a.6.exe] => (Allow) G:\all downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [UDP Query User{23DC590C-F602-4746-96B6-CBF0E5F33DFC}G:\all downloads\neverwinter_nw.1.20130416a.6.exe] => (Allow) G:\all downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [TCP Query User{DF1820C4-2ED6-4C21-BC08-558A73F7CFD9}C:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{B1855655-0581-425D-AE41-5A058DDBB67C}C:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [TCP Query User{720B8424-7589-40D8-A300-331863CA8CB7}C:\program files (x86)\stepmania 5\program\stepmania-sse2.exe] => (Allow) C:\program files (x86)\stepmania 5\program\stepmania-sse2.exe
FirewallRules: [UDP Query User{D769B2A0-AA5F-4AAC-857C-B9FC76EBE86F}C:\program files (x86)\stepmania 5\program\stepmania-sse2.exe] => (Allow) C:\program files (x86)\stepmania 5\program\stepmania-sse2.exe
FirewallRules: [TCP Query User{7A413D38-E422-4F72-8F11-3157A9635F31}C:\program files\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\program files\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{7DF173D4-D2CE-4584-BEB1-069A3F691529}C:\program files\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\program files\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [{F30B6A93-0043-466E-9B8F-68381DB0D7AF}] => (Block) C:\Program Files (x86)\StarCraft II\Versions\Base24944\SC2.exe
FirewallRules: [TCP Query User{B0CB14DB-43AB-46CB-9477-FBFAD89EB180}C:\program files (x86)\warcraft iii\war3.exe] => (Allow) C:\program files (x86)\warcraft iii\war3.exe
FirewallRules: [UDP Query User{05D7DCC2-CD8B-42AC-BBBC-4807238F0422}C:\program files (x86)\warcraft iii\war3.exe] => (Allow) C:\program files (x86)\warcraft iii\war3.exe
FirewallRules: [{ED76230F-26F3-49AD-B86F-A79BA996AB30}] => (Allow) E:\Steam\SteamApps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{4B7ADD3D-65E6-4CDD-BDE5-6DE40B8A9D0B}] => (Allow) E:\Steam\SteamApps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{04273A2A-7C96-47BB-9B0A-ED98E89075FA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1675\Agent.exe
FirewallRules: [{E4FEDEAE-4D62-41D8-81E8-140801B87EB9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1675\Agent.exe
FirewallRules: [{86B2CBA3-B5A3-4177-9B0B-9DC5E4F59040}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe
FirewallRules: [{64C77089-7B7F-4152-BC39-90687425F3D3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe
FirewallRules: [{0B631F8E-2F65-4089-B027-2D56CEA8431D}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{5BB2F96A-E305-4A29-82A1-8D6C5054C2CD}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{04F3DC60-2BA5-4B96-A1E6-AF61C97B4E35}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II Public Test.exe
FirewallRules: [{C8B1DFCD-C489-42AC-8003-65D4623F416D}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II Public Test.exe
FirewallRules: [TCP Query User{0E862C51-2BAA-42D9-B314-D2E15AFF476A}C:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe] => (Block) C:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe
FirewallRules: [UDP Query User{3198FA6B-38BD-481C-B386-B468F6C98529}C:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe] => (Block) C:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe
FirewallRules: [{288450F3-B2E3-45C1-8B4E-D2F335D25F71}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{155C9261-6985-4D58-91EF-F8EAB55336E4}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{7C9AC6F2-ACD9-4B01-A213-D330E28255FA}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II Public Test.exe
FirewallRules: [{1F66069F-03AA-479E-A5BA-DB7410069A8A}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II Public Test.exe
FirewallRules: [{97568D21-7BED-470E-88FF-FC6AAC7DA7BF}] => (Allow) C:\Program Files (x86)\StarCraft II\Versions\Base24944\SC2.exe
FirewallRules: [{A80EF7E0-DB34-4536-AEED-2307351C09EE}] => (Allow) C:\Program Files (x86)\StarCraft II\Versions\Base24944\SC2.exe
FirewallRules: [TCP Query User{E760D7DA-50C0-43C1-8D3A-14CAB7475940}C:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe] => (Allow) C:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe
FirewallRules: [UDP Query User{D3A65B13-E31D-4210-B601-A45F82B24D16}C:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe] => (Allow) C:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe
FirewallRules: [{AE364AA1-A233-4222-88BF-C4ABAAB2A463}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1040\Agent.exe
FirewallRules: [{3E6F8FB0-6E1C-44A6-8411-E19DB9792431}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1040\Agent.exe
FirewallRules: [{80E909D2-87FA-4768-83EA-6E3AA339AEE4}] => (Allow) C:\Program Files\StarCraft II\StarCraft II.exe
FirewallRules: [{A6CB26A5-E330-4151-8882-623D11CA8894}] => (Allow) C:\Program Files\StarCraft II\StarCraft II.exe
FirewallRules: [{02EC1B33-29AC-45DD-B279-A51E24E7217E}] => (Allow) C:\Program Files\StarCraft II\StarCraft II Public Test.exe
FirewallRules: [{694B391A-F07D-4521-A056-8A7DAE35FC5B}] => (Allow) C:\Program Files\StarCraft II\StarCraft II Public Test.exe
FirewallRules: [{5D21927D-B6CC-476A-995E-E76D193D1191}] => (Allow) C:\Users\Nick\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
FirewallRules: [{EAD17E0B-CF83-4DD0-86A3-0B1CCDD9CEE1}] => (Allow) C:\Users\Nick\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
FirewallRules: [TCP Query User{0423738B-2321-40E0-A4C6-85EDE5B79BEA}C:\program files (x86)\ea games\need for speed most wanted\nfs13.exe] => (Block) C:\program files (x86)\ea games\need for speed most wanted\nfs13.exe
FirewallRules: [UDP Query User{1AC0505C-1D98-4DC5-8592-ED98DE744871}C:\program files (x86)\ea games\need for speed most wanted\nfs13.exe] => (Block) C:\program files (x86)\ea games\need for speed most wanted\nfs13.exe
FirewallRules: [TCP Query User{2CC1E3AA-DBA8-4B0B-AA9E-188EF3C08D86}C:\program files (x86)\torchlight ii\torchlight2.exe] => (Allow) C:\program files (x86)\torchlight ii\torchlight2.exe
FirewallRules: [UDP Query User{C023A321-A92E-45FA-89BD-AE5D3CE34B93}C:\program files (x86)\torchlight ii\torchlight2.exe] => (Allow) C:\program files (x86)\torchlight ii\torchlight2.exe
FirewallRules: [{9E19597B-32FB-4CD8-A305-A834CBF0ADF6}] => (Block) C:\program files (x86)\torchlight ii\torchlight2.exe
FirewallRules: [{9EFE1E82-7C89-4D6B-97B8-4C54B731D474}] => (Block) C:\program files (x86)\torchlight ii\torchlight2.exe
FirewallRules: [TCP Query User{091395CF-4DC2-4AA8-A1F7-588F0A0D665F}E:\additional programs\outlast\outlast\binaries\win64\olgame.exe] => (Block) E:\additional programs\outlast\outlast\binaries\win64\olgame.exe
FirewallRules: [UDP Query User{15B11A0E-BEEE-4727-B785-CA225F6459C4}E:\additional programs\outlast\outlast\binaries\win64\olgame.exe] => (Block) E:\additional programs\outlast\outlast\binaries\win64\olgame.exe
FirewallRules: [TCP Query User{24CC87A9-6851-49C2-8E89-5C826A1F2486}E:\additional programs\worms clan wars\wormsclanwars.exe] => (Block) E:\additional programs\worms clan wars\wormsclanwars.exe
FirewallRules: [UDP Query User{556A1C08-82AF-4680-BE36-7C2B2395469B}E:\additional programs\worms clan wars\wormsclanwars.exe] => (Block) E:\additional programs\worms clan wars\wormsclanwars.exe
FirewallRules: [TCP Query User{5F0763F7-A1F1-428B-829E-6C669C0DD5C9}C:\program files (x86)\r.g.games\batman arkham city\binaries\win32\batmanac.exe] => (Block) C:\program files (x86)\r.g.games\batman arkham city\binaries\win32\batmanac.exe
FirewallRules: [UDP Query User{30002490-C142-461E-BD53-59EB217D670D}C:\program files (x86)\r.g.games\batman arkham city\binaries\win32\batmanac.exe] => (Block) C:\program files (x86)\r.g.games\batman arkham city\binaries\win32\batmanac.exe
FirewallRules: [{DFA94A33-5F2D-4202-8271-F7DC767E3C9C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe
FirewallRules: [{1AA5D397-ACAF-4784-9822-74762B1E4E27}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe
FirewallRules: [{6855D8B9-0251-4119-946B-E3B172282D88}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{22560ED9-06D7-4F9A-ADBB-4EB6FDE06759}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{ADCE5A1E-2C0A-4BE2-88EB-EAA113543140}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{97C49E9A-4565-44D0-8D7A-7C62F319D849}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{4138A369-1A2C-48F4-800A-C6CB45950BE1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2293\Agent.exe
FirewallRules: [{F7754573-9EDD-40FC-B41C-C28450B771CD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2293\Agent.exe
FirewallRules: [{4164B762-DA0A-4C90-85D0-7FEA0137B3A0}] => (Allow) E:\Additional Programs\Hearthstone\Hearthstone.exe
FirewallRules: [{CEC9112D-6FB8-49FB-A769-4C609AE07B64}] => (Allow) E:\Additional Programs\Hearthstone\Hearthstone.exe
FirewallRules: [{B70067AE-367F-4D3C-A6F8-B27EA65BEA89}] => (Block) E:\Additional Programs\LEGO MARVEL Super Heroes\LEGOMARVEL.exe
FirewallRules: [{921436AF-F498-4C5B-8CB8-6C1F0FB9807D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2328\Agent.exe
FirewallRules: [{171B6083-F198-4668-A53E-C1DB0BF87295}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2328\Agent.exe
FirewallRules: [{FEF063B9-69EA-44D5-A251-B746099CECC3}] => (Allow) E:\Additional Programs\Diablo III\Diablo III.exe
FirewallRules: [{BFC4716D-EE70-463E-B297-A8FE1653F6EB}] => (Allow) E:\Additional Programs\Diablo III\Diablo III.exe
FirewallRules: [{8A97E4F6-F8BB-467F-8AAC-A97F87CD0879}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe
FirewallRules: [{9AE28903-EDE5-4509-B34B-871A76AE50CD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe
FirewallRules: [{B030D6FE-F62E-4389-8CBE-0A945EA8223A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2391\Agent.exe
FirewallRules: [{B47CA772-2BA0-4638-B48E-8F6A04D072C1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2391\Agent.exe
FirewallRules: [TCP Query User{8D0B188C-2E83-4EBD-9548-8C80A43C54F3}E:\additional programs\warcraft iii\war3.exe] => (Allow) E:\additional programs\warcraft iii\war3.exe
FirewallRules: [UDP Query User{E6CC5372-951F-40B9-9934-76F2E6E971FF}E:\additional programs\warcraft iii\war3.exe] => (Allow) E:\additional programs\warcraft iii\war3.exe
FirewallRules: [TCP Query User{FA788BBD-C230-4366-A940-FDCA256D52F7}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe
FirewallRules: [UDP Query User{CC47A56C-4DA6-439C-BF3D-FE2DA52035FB}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe
FirewallRules: [TCP Query User{1DD2B3FC-4D39-4343-BE0A-A7627A5E3F0D}E:\additional programs\neverwinter\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) E:\additional programs\neverwinter\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{4C846B33-B1BB-4A58-B605-E451C3D1A9B1}E:\additional programs\neverwinter\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) E:\additional programs\neverwinter\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [{EAD50ACC-8841-412B-9640-ECCE068747C8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2417\Agent.exe
FirewallRules: [{109A652A-C6A3-4725-A31A-5EF0F07F28ED}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2417\Agent.exe
FirewallRules: [{0B8CC8AD-225E-40A8-9F48-337814E2DE26}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe
FirewallRules: [{48E039F5-8447-4513-AD2F-D4C7D85965C3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe
FirewallRules: [{C03F6F10-DA7B-40CA-AC8E-73A9D260CB95}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe
FirewallRules: [{A532633F-E250-4E53-847B-F63B2AF3B9AA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe
FirewallRules: [{D73981E3-71D5-4C27-AEEC-0D872497BE7C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2581\Agent.exe
FirewallRules: [{0CBA6A3E-8B08-4D82-B977-6786F685CE39}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2581\Agent.exe
FirewallRules: [{AD008646-1215-4EAF-B826-8A920E77CC86}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2638\Agent.exe
FirewallRules: [{C81E24DE-1C9E-486C-8036-64E726FE6D4D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2638\Agent.exe
FirewallRules: [{C2785EF7-9729-43C2-94B8-E6B7108F3FB0}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2680\Agent.exe
FirewallRules: [{3F33FBAC-2114-4A07-A165-14CB02B588E0}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2680\Agent.exe
FirewallRules: [{E357DFF9-B281-408F-B120-A63BAE60ACC9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe
FirewallRules: [{10F375F0-9AF1-4880-B091-E4104D0BE6FB}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe
FirewallRules: [TCP Query User{358E6A81-5A45-49F5-A17C-DED74E18ACBE}E:\additional programs\rayman legends\rayman legends.exe] => (Block) E:\additional programs\rayman legends\rayman legends.exe
FirewallRules: [UDP Query User{D89578EE-0672-4111-99F7-3CB7FDF632D5}E:\additional programs\rayman legends\rayman legends.exe] => (Block) E:\additional programs\rayman legends\rayman legends.exe
FirewallRules: [{3E2FAB91-705C-4AF7-8BFD-95D976330AC5}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{5D34CF46-7422-4134-9561-F617FE4C7D8B}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{1640495A-065A-425D-BF05-21F97E1E2A0E}] => (Allow) E:\Battlefield 4\bf4_x86.exe
FirewallRules: [{DA0061FE-A58A-4001-8111-DF80A70C0FEE}] => (Allow) E:\Battlefield 4\bf4_x86.exe
FirewallRules: [{703A2006-08C3-4563-BCB2-7D3C059F552A}] => (Allow) E:\Battlefield 4\bf4.exe
FirewallRules: [{8ACB23CE-5AEF-467B-B293-5251355FA5F6}] => (Allow) E:\Battlefield 4\bf4.exe
FirewallRules: [{3A8C1B9E-B7CA-4E0E-B0EC-1796412381B2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe
FirewallRules: [{C46503D7-1BD6-4EF8-B780-A22EB667AD63}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe
FirewallRules: [{6B9E95B7-A1BE-4181-B831-CB7D2993FAFA}] => (Allow) E:\Additional Programs\SimCity\SimCity 2013 Offline\SimCity\SimCity.exe
FirewallRules: [{736C6234-EEA2-4CA6-BE53-00881A104CF0}] => (Allow) E:\Additional Programs\SimCity\SimCity 2013 Offline\SimCity\SimCity.exe
FirewallRules: [{86C600A9-567F-475F-818C-2A433D10E749}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{CCB6D02A-5B34-484D-823A-98EAE02411E2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{1D4BC21E-2511-4575-BEE9-F1510DEB35C7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{EAC14162-877F-4F34-9023-7EADDAA996E6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [TCP Query User{1CAE02A8-A8FC-49CE-8B94-EB23E734A9A0}E:\additional programs\dragon age origins\dragon age origins\bin_ship\daorigins.exe] => (Block) E:\additional programs\dragon age origins\dragon age origins\bin_ship\daorigins.exe
FirewallRules: [UDP Query User{A30BEA0E-DE71-4C0F-A25E-46F709410AFA}E:\additional programs\dragon age origins\dragon age origins\bin_ship\daorigins.exe] => (Block) E:\additional programs\dragon age origins\dragon age origins\bin_ship\daorigins.exe
FirewallRules: [{1BCA92D1-BF4D-47A1-854F-992050BB5C6C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2787\Agent.exe
FirewallRules: [{A2836891-2859-4A33-854D-4318E33EDEF6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2787\Agent.exe
FirewallRules: [{08251668-015D-467A-802F-6B80B40B60B6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe
FirewallRules: [{6A3418DD-D0C3-4392-BB29-7EFE79055FD2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe
FirewallRules: [{D1A3FCDF-18FF-4ACA-BAEB-CE926B9088BE}] => (Allow) C:\Program Files\Ubisoft\WATCH_DOGS\bin\Watch_Dogs.exe
FirewallRules: [{CE41D49F-C339-4EE6-9321-7500ED127068}] => (Allow) C:\Program Files\Ubisoft\WATCH_DOGS\bin\Watch_Dogs.exe
FirewallRules: [TCP Query User{E06A7AD7-2C0E-4E8D-81B3-B949A5D6386A}E:\additional programs\perfect world entertainment\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) E:\additional programs\perfect world entertainment\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{69F317CD-BF16-47FB-9F37-9619B0DCEDEB}E:\additional programs\perfect world entertainment\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) E:\additional programs\perfect world entertainment\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [{EA89F310-D430-4438-A4BF-7409C123CF31}] => (Allow) C:\Program Files\Adobe\Adobe Photoshop Lightroom 5\lightroom.exe
FirewallRules: [{79CF1804-F992-402D-9FB6-777F48CAE3E9}] => (Allow) C:\Program Files\Adobe\Adobe Photoshop Lightroom 5\lightroom.exe
FirewallRules: [{5CF63F3E-24B4-4419-80EA-52C2BE500CCC}] => (Allow) C:\Program Files\Adobe\Adobe Photoshop Lightroom 5\lightroom.exe
FirewallRules: [{152799C8-C238-48D6-8364-B3784BD2D773}] => (Allow) C:\Program Files\Adobe\Adobe Photoshop Lightroom 5\lightroom.exe
FirewallRules: [{03EF4DDB-BC7F-4E7E-A338-2CD9F3BDCFB6}] => (Block) E:\Additional Programs\PGA Tiger Woods\TWORuntimeStandAlone.exe
FirewallRules: [{DD22B1B4-3241-45C1-8219-5D7AF1387EAF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2880\Agent.exe
FirewallRules: [{3AD704F3-FD50-47A5-8767-5FE9C147B834}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2880\Agent.exe
FirewallRules: [TCP Query User{33C20D5E-73F7-4D60-99CB-65E7DE53DEA7}C:\program files\divinity - original sin\shipping\eocapp.exe] => (Block) C:\program files\divinity - original sin\shipping\eocapp.exe
FirewallRules: [UDP Query User{0D12B476-45D5-4E7E-B124-E7409580B483}C:\program files\divinity - original sin\shipping\eocapp.exe] => (Block) C:\program files\divinity - original sin\shipping\eocapp.exe
FirewallRules: [{83CE239D-7D5E-40AA-B248-35DD141FC58D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3023\Agent.exe
FirewallRules: [{7807E4C5-0A44-4BFE-B477-41CA0D4209F7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3023\Agent.exe
FirewallRules: [{10B02AEC-B223-4E7B-B4F9-4A82C0477F9F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe
FirewallRules: [{53848CD4-7365-4365-B127-836C824FFE9C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe
FirewallRules: [{3F02C651-9F30-4E24-BD04-77CA0E392C20}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3182\Agent.exe
FirewallRules: [{B00B6A9E-0FFB-4982-A0D8-2E3B41486CB7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3182\Agent.exe
FirewallRules: [{783EF73B-B00D-474C-A10F-31ADB5A8CC06}] => (Block) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrodist.exe
FirewallRules: [{84A3976B-BE5E-445A-A112-2A406115C9BC}] => (Block) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrodist.exe
FirewallRules: [{2C9C5F6F-218A-4DEB-BC2D-8CEE88DD0A21}] => (Allow) E:\Steam\bin\steamwebhelper.exe
FirewallRules: [{6961591C-26E8-4C94-AF2A-A8C5AC315481}] => (Allow) E:\Steam\bin\steamwebhelper.exe
FirewallRules: [{DEABC71E-F886-4B7E-91A3-F1CD0D179329}] => (Allow) E:\Additional Programs\Battle.net\Battle.net.exe
FirewallRules: [{C464C20C-CDA4-4CBA-A956-625740CC7792}] => (Allow) E:\Additional Programs\Battle.net\Battle.net.exe
FirewallRules: [{A6E3A400-014B-4615-BE14-0F0011922A7F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3235\Agent.exe
FirewallRules: [{B439A654-383C-4DD6-BA7A-07DCAFD4FBD1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3235\Agent.exe
FirewallRules: [{B3AD711E-4423-429B-9A1B-D1E310236264}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3286\Agent.exe
FirewallRules: [{DEAEACA4-A13B-4683-AF16-DC3016290B6F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3286\Agent.exe
FirewallRules: [{1206134E-4DDC-499B-9664-6C1C53532EE3}] => (Allow) E:\Additional Programs\World of Warcraft\Diablo III\Diablo III.exe
FirewallRules: [{BC039A3C-9BD2-422B-A97C-98D17C9CAA8F}] => (Allow) E:\Additional Programs\World of Warcraft\Diablo III\Diablo III.exe
FirewallRules: [{EEC2FD7D-33FE-4E9C-BD5D-58916E464006}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3323\Agent.exe
FirewallRules: [{2E2D9588-0D44-4AEB-B1A1-67132D677340}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3323\Agent.exe
FirewallRules: [{AC7B9B46-B358-4ABF-B492-5733A774E51A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3332\Agent.exe
FirewallRules: [{5B7B5C79-1A08-41D1-AF67-011A0ECF16B6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3332\Agent.exe
FirewallRules: [{7D8C746E-7DF8-44E0-8D55-C6523A7C692C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3334\Agent.exe
FirewallRules: [{8664F514-7C94-40A0-8AC8-2D1B8AD61597}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3334\Agent.exe
FirewallRules: [{110E6BA2-F942-4E8A-867A-9DE1851154DF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3346\Agent.exe
FirewallRules: [{EFF4B911-7B74-4952-A56D-9BBFEBB9F04C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3346\Agent.exe
FirewallRules: [{13767020-B730-40DC-9C0C-6DCFA77D207E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe
FirewallRules: [{1DAE97F0-02AC-429B-AA34-D7FF4FD6D4C1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe
FirewallRules: [{C0D54657-CF8C-49AB-ABE1-E431BF978CD0}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe
FirewallRules: [{74935C9F-125A-4657-8071-3085588949F9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe
FirewallRules: [{293F4FF0-C22A-49A7-AD59-8D38C0F9DB85}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3454\Agent.exe
FirewallRules: [{9A68A13C-B638-4D77-9B18-46E2862C1A92}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3454\Agent.exe
FirewallRules: [{A23DC46F-3D60-4CF0-9B4A-D178892690B8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe
FirewallRules: [{06CD923C-4AAC-48DC-9413-95BD3ABBCE02}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe
FirewallRules: [TCP Query User{9F7ACBA9-1068-4622-B682-9E0DE32F12A9}E:\additional programs\the vanishing of ethan carter\binaries\win64\astronautsgame-win64-shipping.exe] => (Block) E:\additional programs\the vanishing of ethan carter\binaries\win64\astronautsgame-win64-shipping.exe
FirewallRules: [UDP Query User{E794B87E-02B2-40A9-9DE1-96FF1ACEB0DE}E:\additional programs\the vanishing of ethan carter\binaries\win64\astronautsgame-win64-shipping.exe] => (Block) E:\additional programs\the vanishing of ethan carter\binaries\win64\astronautsgame-win64-shipping.exe
FirewallRules: [{178AD713-435D-4AC2-B2B7-D72F82A9CC37}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe
FirewallRules: [{0385683B-FF9F-4D20-A52E-D25CEDF460FB}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe
FirewallRules: [TCP Query User{9697677F-E3FB-4730-9D45-BD8E87F4DA2B}E:\additional programs\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) E:\additional programs\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [UDP Query User{7E8A7DF8-ADB2-440D-80D5-841A336C6D9E}E:\additional programs\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) E:\additional programs\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [TCP Query User{DA55DD85-0377-4860-A073-48EC16F856DB}E:\additional programs\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) E:\additional programs\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [UDP Query User{1D37122E-2DD1-4AB4-B58E-87811384A62C}E:\additional programs\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) E:\additional programs\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [{70BC2D89-8152-498B-9AF7-43B01F1B5E7B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{B580781F-9B4D-4B73-ADE9-C165318449C1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{8425B024-5240-45F0-A623-DA5093A0E20C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe
FirewallRules: [{D2A713FF-EE6E-4C5B-9C60-37FBF6B1AAE5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe
FirewallRules: [{BE047A67-6236-46C6-87F3-1D6CCE333909}] => (Allow) E:\Additional Programs\World of Warcraft\Hearthstone\Hearthstone.exe
FirewallRules: [{F6928862-C5FF-4FC9-8609-59E08C5CF817}] => (Allow) E:\Additional Programs\World of Warcraft\Hearthstone\Hearthstone.exe
FirewallRules: [{3D51994A-886B-4124-B690-272C3D0062FF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{94AB8555-319F-4CF1-B717-914CBDED94EB}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{BB34190A-2178-47EE-85C5-2B63A070C656}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{4FA83984-55CA-44A9-81E9-60A6E7ADD0F4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{3AA4BCE3-3160-4590-8080-2AF7B0057EA1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{A1388FF5-7533-4BEC-8E72-0715823462EA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [TCP Query User{5DFB966E-C987-4360-8E06-93B1B703AD0A}E:\additional programs\dying light\dyinglightgame.exe] => (Block) E:\additional programs\dying light\dyinglightgame.exe
FirewallRules: [UDP Query User{D7FDDC72-E1F2-4AB7-9F0D-98943C4C2AF6}E:\additional programs\dying light\dyinglightgame.exe] => (Block) E:\additional programs\dying light\dyinglightgame.exe
FirewallRules: [{967B2B0F-23D2-46B4-9FC8-84D209764C32}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [{7F67F0A8-0E9A-4E41-8AFE-641D267B55CA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [TCP Query User{B8100662-61DD-45DF-935C-91594F25D01D}E:\additional programs\fifa 15 ultimate team edition\fifa15.exe] => (Block) E:\additional programs\fifa 15 ultimate team edition\fifa15.exe
FirewallRules: [UDP Query User{FB827C3A-10B2-4571-B9DE-A58DB7A66274}E:\additional programs\fifa 15 ultimate team edition\fifa15.exe] => (Block) E:\additional programs\fifa 15 ultimate team edition\fifa15.exe
FirewallRules: [{67072317-4AFB-4532-A82E-BAC78B3E655F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [{62F14796-6B8F-4D54-A871-37EB782F85AE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [TCP Query User{2F5E6066-824C-4D52-A6FD-32A05561A2A7}E:\additional programs\gta v preload\3dmgame-grand.theft.auto.v.full.retail.version-3dm\grand theft auto v\gta5.exe] => (Block) E:\additional programs\gta v preload\3dmgame-grand.theft.auto.v.full.retail.version-3dm\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{BD711542-57F1-4264-BB85-D3A5EB40FD3C}E:\additional programs\gta v preload\3dmgame-grand.theft.auto.v.full.retail.version-3dm\grand theft auto v\gta5.exe] => (Block) E:\additional programs\gta v preload\3dmgame-grand.theft.auto.v.full.retail.version-3dm\grand theft auto v\gta5.exe
FirewallRules: [TCP Query User{2F183FE1-A031-4C88-B1FC-B40DC9E8B17F}E:\additional programs\gta v preload\3dmgame-grand.theft.auto.v.full.retail.version-3dm\grand theft auto v\gta5.exe] => (Block) E:\additional programs\gta v preload\3dmgame-grand.theft.auto.v.full.retail.version-3dm\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{431BFFEF-8C99-4D34-876E-547C76369693}E:\additional programs\gta v preload\3dmgame-grand.theft.auto.v.full.retail.version-3dm\grand theft auto v\gta5.exe] => (Block) E:\additional programs\gta v preload\3dmgame-grand.theft.auto.v.full.retail.version-3dm\grand theft auto v\gta5.exe
FirewallRules: [TCP Query User{87482F90-23F7-47E0-8F6B-A5B9BD58BCE1}E:\additional programs\world of warcraft\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\world of warcraft\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{64FE93B3-7C67-4D89-8B48-D21012BB2E29}E:\additional programs\world of warcraft\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\world of warcraft\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{D3CD1C3B-F064-49AC-B339-DB2CF9472D9F}E:\additional programs\world of warcraft\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\world of warcraft\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{E930498D-05CA-4BDE-873E-8084F59D5101}E:\additional programs\world of warcraft\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\world of warcraft\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe
FirewallRules: [{3BB37ED1-9419-455D-8C95-E0413EAC4E10}] => (Block) E:\Additional Programs\Driving Test Success - All Tests V14-1\DTS_HPT.exe
FirewallRules: [{D67C742D-4F03-474F-AAC2-AFC9BE69CFF5}] => (Block) E:\Additional Programs\Driving Test Success - All Tests V14-1\DTS_Menu.exe
FirewallRules: [{B2ED0EE3-330D-4BD4-8A17-F177343F3A7E}] => (Block) E:\Additional Programs\Driving Test Success - All Tests V14-1\DTS_Practical.exe
FirewallRules: [{E35F78C2-9826-432C-A343-DEA671928DAA}] => (Block) E:\Additional Programs\Driving Test Success - All Tests V14-1\DTS_SupportTool.exe
FirewallRules: [{4456B19B-7E9B-4415-A413-907236C32C99}] => (Block) E:\Additional Programs\Driving Test Success - All Tests V14-1\DTS_Theory.exe
FirewallRules: [{5011B0ED-8DAF-418E-8A04-59AB20F03283}] => (Block) E:\Additional Programs\Driving Test Success - All Tests V14-1\OpenMe.exe
FirewallRules: [{52291BD5-E9AB-441B-953F-0AF00F28A4D1}] => (Block) E:\Additional Programs\Driving Test Success - All Tests 2012 Edition\DTS_HPT.exe
FirewallRules: [TCP Query User{63971909-810B-4883-B1E8-C124380FCBF3}E:\additional programs\world of warcraft\heroes of the storm\versions\base35634\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\world of warcraft\heroes of the storm\versions\base35634\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{0636C42A-B71B-4776-95ED-752C9C2B135F}E:\additional programs\world of warcraft\heroes of the storm\versions\base35634\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\world of warcraft\heroes of the storm\versions\base35634\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{9A49DE94-2AA8-41A2-8C08-69E90B156503}E:\additional programs\world of warcraft\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\world of warcraft\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{76FD2348-EDA3-4DC1-B138-F66BA019BDD5}E:\additional programs\world of warcraft\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\world of warcraft\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{77859538-4723-4990-95B0-8989F25BC7E9}C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{4EEAB9C3-7481-4D21-9CC9-0ED559E32C19}C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [TCP Query User{F03C13FF-0C6B-4BF6-92E6-FC92F7EEF3CB}E:\additional programs\world of warcraft\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\world of warcraft\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{14E57D4E-4BA6-4FDD-8DEA-460B7199D94D}E:\additional programs\world of warcraft\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe] => (Allow) E:\additional programs\world of warcraft\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe
FirewallRules: [{16815CF7-E6B0-4832-B614-A6072944FD3C}] => (Block) E:\Additional Programs\Rayman Legends\Rayman Legends.exe
FirewallRules: [{B2A30210-48EC-40DB-A25E-2AC62338928F}] => (Block) E:\Additional Programs\Rayman Legends\Rayman Legends.exe
FirewallRules: [{649114A6-2DAE-40AF-9D9F-A8BEE8EC97D8}] => (Block) E:\Additional Programs\Fallout 4\Fallout4.exe
FirewallRules: [{878AB7B5-1B31-41EC-83DF-29468D8B78BA}] => (Block) E:\Additional Programs\Adobe Audition CC 2015\Adobe Audition CC.exe
FirewallRules: [TCP Query User{2BF0343D-D159-46EB-96D4-9EC90F6C7560}E:\additional programs\dead space\dead space.exe] => (Block) E:\additional programs\dead space\dead space.exe
FirewallRules: [UDP Query User{2049DD18-8C3E-4837-BA43-4641CE6E0315}E:\additional programs\dead space\dead space.exe] => (Block) E:\additional programs\dead space\dead space.exe
FirewallRules: [TCP Query User{A8939AAE-7855-4668-9AA1-ACCD0CC9FCDC}E:\additional programs\dead space\dead space.exe] => (Block) E:\additional programs\dead space\dead space.exe
FirewallRules: [UDP Query User{913135A9-685C-4037-95F3-09AC147D6775}E:\additional programs\dead space\dead space.exe] => (Block) E:\additional programs\dead space\dead space.exe
FirewallRules: [TCP Query User{EE8AD46E-F804-480B-BB58-FF80E598A115}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [UDP Query User{E3BAC448-E51E-4ACB-B782-37A25E15582B}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [TCP Query User{7BDC4C63-5CA9-46B5-B865-514FFCAAB5D1}C:\program files (x86)\sega\total war shogun 2 complete edition\shogun2.exe] => (Block) C:\program files (x86)\sega\total war shogun 2 complete edition\shogun2.exe
FirewallRules: [UDP Query User{8BC54039-8067-4586-92AF-A319DB77C7DC}C:\program files (x86)\sega\total war shogun 2 complete edition\shogun2.exe] => (Block) C:\program files (x86)\sega\total war shogun 2 complete edition\shogun2.exe
FirewallRules: [TCP Query User{A075FFCE-11FB-4495-A12E-DA4A4884A03F}C:\program files (x86)\steamlibrary\steamapps\common\total war warhammer\warhammer.exe] => (Allow) C:\program files (x86)\steamlibrary\steamapps\common\total war warhammer\warhammer.exe
FirewallRules: [UDP Query User{65F5FEB0-5023-4120-9980-440CC15B1377}C:\program files (x86)\steamlibrary\steamapps\common\total war warhammer\warhammer.exe] => (Allow) C:\program files (x86)\steamlibrary\steamapps\common\total war warhammer\warhammer.exe
FirewallRules: [{72D52986-D753-4C1C-9DC8-C692D208A697}] => (Allow) C:\Program Files (x86)\SteamLibrary\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{E8245703-1581-459A-BB23-1D4C45E45859}] => (Allow) C:\Program Files (x86)\SteamLibrary\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{F86903D0-5611-44B0-8406-F551CD3AB1BF}] => (Allow) C:\Program Files\Vuze\Azureus.exe
FirewallRules: [{FA6E3738-CDEA-4F24-9AB8-5902A38BF0F9}] => (Allow) C:\Program Files\Vuze\Azureus.exe
FirewallRules: [{96F4C24B-7D79-4229-8E9F-75DAAB0E5D37}] => (Allow) C:\Program Files (x86)\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{BE078B3F-F343-402F-A267-3DFD2EC49592}] => (Allow) C:\Program Files (x86)\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [TCP Query User{B0D66606-D85D-4D96-B08B-4445B4CF29B0}C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe
FirewallRules: [UDP Query User{3DF9594D-1660-4CEC-B1B3-8D4C4BDB371E}C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe
FirewallRules: [{1CE31996-D2A1-4344-996E-AE8BAEF61725}] => (Allow) E:\Additional Programs\Heroes of the Storm\Versions\Base48027\HeroesOfTheStorm_x64.exe
FirewallRules: [{9CF00B46-9C4C-4411-ABCF-70BEA4219976}] => (Allow) E:\Additional Programs\Heroes of the Storm\Versions\Base48027\HeroesOfTheStorm_x64.exe
FirewallRules: [{E7389C53-68ED-4518-9522-C08A652B234B}] => (Allow) E:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{2A2EC9A2-9962-4B1B-81E2-4973CA742FF2}] => (Allow) E:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [TCP Query User{09D4EE0A-D9E3-4FAE-AB8B-7DEED8314161}C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe
FirewallRules: [UDP Query User{7C5A3539-1773-4F90-A671-A99ADB832F30}C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe
FirewallRules: [{82A98335-C1C6-45A3-B377-32A19C5EC8FE}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{7C7A0885-6889-4C08-B1F7-2EBCB356FAD3}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{FDFC4550-83C6-410A-9B39-EBA76608CACF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{19B17689-E08D-4A09-B2B5-C6C3B62FC7F2}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{3BC2010C-81D1-414D-8913-0E77DBF063D9}C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe
FirewallRules: [UDP Query User{7C991C6D-FDAD-4E10-BB41-9366E20D2282}C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8265\battle.net.exe
FirewallRules: [TCP Query User{C01E595C-CE47-421D-9FE2-D8D9D46400E1}C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe
FirewallRules: [UDP Query User{5B4A71F0-CF7B-4858-AC77-4C0ECEB28407}C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8293\battle.net.exe
FirewallRules: [{DAEAD5B8-8F72-4E57-AAA2-059855C8A3F5}] => (Allow) E:\Steam\SteamApps\common\SNOW\Bin64\playSNOW.exe
FirewallRules: [{3D20EF19-DAA6-415E-941C-C565778D4AD4}] => (Allow) E:\Steam\SteamApps\common\SNOW\Bin64\playSNOW.exe
FirewallRules: [TCP Query User{7D49B8D1-DE2B-425B-B1A5-B5A927F96EB5}E:\additional programs\jack nicklaus perfect golf\win32\perfect golf.exe] => (Block) E:\additional programs\jack nicklaus perfect golf\win32\perfect golf.exe
FirewallRules: [UDP Query User{2AD003DE-8D95-48A5-A53B-83FA9C681862}E:\additional programs\jack nicklaus perfect golf\win32\perfect golf.exe] => (Block) E:\additional programs\jack nicklaus perfect golf\win32\perfect golf.exe
FirewallRules: [TCP Query User{9DC05554-884B-488C-BD34-6E73B0D10788}E:\additional programs\ubisoft game launcher\games\forhonorbeta\forhonor.exe] => (Allow) E:\additional programs\ubisoft game launcher\games\forhonorbeta\forhonor.exe
FirewallRules: [UDP Query User{F9C9E41F-804C-4CE8-A4A5-0A25202DD10C}E:\additional programs\ubisoft game launcher\games\forhonorbeta\forhonor.exe] => (Allow) E:\additional programs\ubisoft game launcher\games\forhonorbeta\forhonor.exe
FirewallRules: [TCP Query User{87177665-39B2-488B-8590-5C9E558BEC3A}E:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) E:\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{DEC7D82D-6D68-4AD2-A199-0F24AC0C134B}E:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) E:\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{C590A736-4207-49A7-BFAA-E07049D8B0A5}E:\additional programs\bethesda.net launcher\games\quakechampions\client\bin\pc\quakechampions.exe] => (Allow) E:\additional programs\bethesda.net launcher\games\quakechampions\client\bin\pc\quakechampions.exe
FirewallRules: [UDP Query User{12958798-DB37-475D-957E-9C40AB29A240}E:\additional programs\bethesda.net launcher\games\quakechampions\client\bin\pc\quakechampions.exe] => (Allow) E:\additional programs\bethesda.net launcher\games\quakechampions\client\bin\pc\quakechampions.exe
FirewallRules: [TCP Query User{F34DF90B-B48D-4FC6-82BB-D5A7B740CA52}E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{3CD6097B-5577-490F-94A0-DDA6CD2D1832}E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{D5B3FD45-239E-42D0-B47C-177D34C15F91}E:\steam\steamapps\common\tekken 7\tekkengame\binaries\win64\tekkengame-win64-shipping.exe] => (Allow) E:\steam\steamapps\common\tekken 7\tekkengame\binaries\win64\tekkengame-win64-shipping.exe
FirewallRules: [UDP Query User{9AA69A46-DAD8-40D4-BB79-331485EAA2D7}E:\steam\steamapps\common\tekken 7\tekkengame\binaries\win64\tekkengame-win64-shipping.exe] => (Allow) E:\steam\steamapps\common\tekken 7\tekkengame\binaries\win64\tekkengame-win64-shipping.exe
FirewallRules: [TCP Query User{55598717-1065-4E8D-A3C6-D305A2864902}C:\program files (x86)\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{46DE656A-B162-4422-B52B-3A885F50DDC7}C:\program files (x86)\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{030D24E1-933C-4EE4-894B-5C7B5A140860}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{A238C2F5-C935-4D51-8A67-ABC72006E80C}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [TCP Query User{D84E97BE-94E1-4D60-9A91-DCD025816B56}E:\additional programs\warcraft iii\warcraft iii.exe] => (Allow) E:\additional programs\warcraft iii\warcraft iii.exe
FirewallRules: [UDP Query User{4329ABCA-3E69-40DE-858E-320662222B8F}E:\additional programs\warcraft iii\warcraft iii.exe] => (Allow) E:\additional programs\warcraft iii\warcraft iii.exe
FirewallRules: [TCP Query User{3BF179FA-D40C-40E0-84F6-FC914170C4F0}E:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{4F9B6396-92BE-4167-80A2-EAC8221627A9}E:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{40F31A78-03D3-4228-9ECC-03DA643E5349}C:\program files (x86)\battle.net\battle.net.9093\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.9093\battle.net.exe
FirewallRules: [UDP Query User{A18995B3-6929-465D-BA6C-999375C63099}C:\program files (x86)\battle.net\battle.net.9093\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.9093\battle.net.exe
FirewallRules: [{9925A5FE-B06E-42D3-81F1-C32014178627}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909\SZBrowser.exe
FirewallRules: [{02E80064-4C1F-400E-8FCA-648319E6EE38}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909_0\SZBrowser.exe
FirewallRules: [{593153B8-A6C4-419F-9853-593E7D8B5FF6}] => (Allow) E:\Additional Programs\Heroes of the Storm\Versions\Base57286\HeroesOfTheStorm_x64.exe
FirewallRules: [{29574661-7593-43DD-B369-7D573E78875E}] => (Allow) E:\Additional Programs\Heroes of the Storm\Versions\Base57286\HeroesOfTheStorm_x64.exe
FirewallRules: [TCP Query User{B6C0B18B-6CBF-4D0F-AC96-C06EA47F7EE6}E:\additional programs\divinity original sin 2\bin\eocapp.exe] => (Block) E:\additional programs\divinity original sin 2\bin\eocapp.exe
FirewallRules: [UDP Query User{2A7A8C78-1157-4A13-9213-E6807BEA832F}E:\additional programs\divinity original sin 2\bin\eocapp.exe] => (Block) E:\additional programs\divinity original sin 2\bin\eocapp.exe
FirewallRules: [TCP Query User{C4282363-CC0B-4061-85AA-08AEA396F105}E:\additional programs\pro evolution soccer 2018\pes2018.exe] => (Block) E:\additional programs\pro evolution soccer 2018\pes2018.exe
FirewallRules: [UDP Query User{FA560D32-C158-47C8-9AF7-04D81BBF600E}E:\additional programs\pro evolution soccer 2018\pes2018.exe] => (Block) E:\additional programs\pro evolution soccer 2018\pes2018.exe
FirewallRules: [TCP Query User{C0C0E016-BE7F-4C6F-AA0C-4EA074961D48}E:\additional programs\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) E:\additional programs\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{58F3506B-09C7-4174-8740-D422DF415A18}E:\additional programs\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) E:\additional programs\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{46926CE0-1F70-49F3-B193-87A8C10A5040}E:\additional programs\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) E:\additional programs\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{EA0D8027-48EB-45C4-8950-69292866775C}E:\additional programs\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) E:\additional programs\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [TCP Query User{2507CFC0-3F57-44F6-9CD4-CEB62BB15521}E:\additional programs\fifa18\fifa18.exe] => (Block) E:\additional programs\fifa18\fifa18.exe
FirewallRules: [UDP Query User{02DC615B-3FD5-4BD4-86F4-24763618D194}E:\additional programs\fifa18\fifa18.exe] => (Block) E:\additional programs\fifa18\fifa18.exe
FirewallRules: [TCP Query User{CCB47626-08A8-4EEF-AEF6-64295E9BDC9B}C:\program files (x86)\battle.net\battle.net.9526\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.9526\battle.net.exe
FirewallRules: [UDP Query User{A6D68680-170E-4F74-AF2D-04E550BBDB48}C:\program files (x86)\battle.net\battle.net.9526\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.9526\battle.net.exe
FirewallRules: [{69E2A5FB-34B9-4A74-A82D-0DBC51CE5095}] => (Allow) C:\Users\Nick\AppData\Local\Apps\2.0\KWG48P1J.LTP\1YQE9EW6.7C8\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe
FirewallRules: [{05FC99EE-2C9C-48D7-B9DB-69716F957F2E}] => (Allow) C:\Users\Nick\AppData\Local\Apps\2.0\KWG48P1J.LTP\1YQE9EW6.7C8\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe
FirewallRules: [TCP Query User{681B09B8-5E02-426D-8B64-890866FF28B8}E:\additional programs\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) E:\additional programs\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [UDP Query User{8B11A23E-0F60-4D3A-B407-2181C2F0F58E}E:\additional programs\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) E:\additional programs\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [{5270EF95-4394-4716-94D7-C85237983ED0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{D8B5FC27-FC9B-4076-B4D7-A6A550783B2C}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{DC291213-6B40-4DD9-A204-5AAE9E122077}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{589FEF29-79EB-482D-B756-E1CCF881728F}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{1486FEC2-7BCC-4727-A3F7-A3E160247970}] => (Allow) LPort=1688
FirewallRules: [{102FEA68-6BB8-4491-A035-39F284A249E1}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
FirewallRules: [{EF43F249-57C7-4800-B439-ADAE584E60AB}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
FirewallRules: [TCP Query User{3A17435F-1C25-4ACE-AA0C-8DF495E67C2C}C:\program files (x86)\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\utils\wowvoiceproxy.exe
FirewallRules: [UDP Query User{1BF17182-7005-4356-AB5A-D170684C12A6}C:\program files (x86)\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\utils\wowvoiceproxy.exe
FirewallRules: [{FBC4E896-B335-4813-A844-5C66B520B65D}] => (Allow) E:\Steam Games\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{49094574-4CAF-4B95-91F4-F71E718B8A9D}] => (Allow) E:\Steam Games\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
 
==================== Restore Points =========================
 
16-07-2018 10:49:06 Restore Operation
16-07-2018 11:10:56 Post Critical Update
23-07-2018 17:20:06 Scheduled Checkpoint
26-07-2018 17:55:55 Windows Update
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (07/26/2018 05:58:48 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: devicecensus.exe, version: 10.0.17673.1005, time stamp: 0x79a09a4b
Faulting module name: WaaSAssessment.dll, version: 10.0.17134.1, time stamp: 0xb7ab6594
Exception code: 0xc0000005
Fault offset: 0x0000000000008ee5
Faulting process id: 0x2b68
Faulting application start time: 0x01d4249d55439f71
Faulting application path: C:\WINDOWS\system32\devicecensus.exe
Faulting module path: C:\Windows\System32\WaaSAssessment.dll
Report Id: f5a4fb12-fb21-48df-a37c-d6d164f62046
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (07/25/2018 07:08:58 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: devicecensus.exe, version: 10.0.17673.1005, time stamp: 0x79a09a4b
Faulting module name: WaaSAssessment.dll, version: 10.0.17134.1, time stamp: 0xb7ab6594
Exception code: 0xc0000005
Fault offset: 0x0000000000008ee5
Faulting process id: 0x2a14
Faulting application start time: 0x01d423ddf84a3136
Faulting application path: C:\WINDOWS\system32\devicecensus.exe
Faulting module path: C:\Windows\System32\WaaSAssessment.dll
Report Id: 98821c4a-5f5f-470c-bcb2-f5075d64c853
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (07/24/2018 05:47:43 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: bad_module_info, version: 0.0.0.0, time stamp: 0x00000000
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x000001cf02c46d45
Faulting process id: 0x26f0
Faulting application start time: 0x01d42369d76aebd5
Faulting application path: bad_module_info
Faulting module path: unknown
Report Id: f9c87b21-4d13-4fe8-8531-8a0c9d2ebfe0
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (07/24/2018 06:45:13 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: devicecensus.exe, version: 10.0.17673.1005, time stamp: 0x79a09a4b
Faulting module name: WaaSAssessment.dll, version: 10.0.17134.1, time stamp: 0xb7ab6594
Exception code: 0xc0000005
Fault offset: 0x0000000000008ee5
Faulting process id: 0x2ecc
Faulting application start time: 0x01d423117c8ca53f
Faulting application path: C:\WINDOWS\system32\devicecensus.exe
Faulting module path: C:\Windows\System32\WaaSAssessment.dll
Report Id: 61fb7d82-7893-4fee-89db-993e6d48b46e
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (07/24/2018 06:40:25 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: svchost.exe_WaaSMedicSvc, version: 10.0.17134.1, time stamp: 0xa38b9ab2
Faulting module name: WaaSAssessment.dll, version: 10.0.17134.1, time stamp: 0xb7ab6594
Exception code: 0xc0000005
Fault offset: 0x0000000000008dce
Faulting process id: 0x68c
Faulting application start time: 0x01d42310c9afceb4
Faulting application path: c:\windows\system32\svchost.exe
Faulting module path: C:\Windows\System32\WaaSAssessment.dll
Report Id: 6f85ae32-e6a6-41b6-99a9-f603664d4f53
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (07/23/2018 07:31:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: RocketLeague.exe, version: 1.0.10897.0, time stamp: 0x5b26d0b4
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x0000038f
Faulting process id: 0x2c4c
Faulting application start time: 0x01d422b21445973e
Faulting application path: E:\Steam Games\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
Faulting module path: unknown
Report Id: 4455160d-1e9a-4cd6-ab82-34450d95ce02
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (07/23/2018 06:35:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: devicecensus.exe, version: 10.0.17673.1005, time stamp: 0x79a09a4b
Faulting module name: WaaSAssessment.dll, version: 10.0.17134.1, time stamp: 0xb7ab6594
Exception code: 0xc0000005
Fault offset: 0x0000000000008ee5
Faulting process id: 0x24b0
Faulting application start time: 0x01d42246f24f97b8
Faulting application path: C:\WINDOWS\system32\devicecensus.exe
Faulting module path: C:\Windows\System32\WaaSAssessment.dll
Report Id: 083dcfe5-df6a-4012-a301-11f3c144b785
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (07/22/2018 06:04:38 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: devicecensus.exe, version: 10.0.17673.1005, time stamp: 0x79a09a4b
Faulting module name: WaaSAssessment.dll, version: 10.0.17134.1, time stamp: 0xb7ab6594
Exception code: 0xc0000005
Fault offset: 0x0000000000008ee5
Faulting process id: 0x2cfc
Faulting application start time: 0x01d421797c16b36c
Faulting application path: C:\WINDOWS\system32\devicecensus.exe
Faulting module path: C:\Windows\System32\WaaSAssessment.dll
Report Id: 371221ff-4e34-4331-9303-3db7e96e355b
Faulting package full name: 
Faulting package-relative application ID:
 
 
System errors:
=============
Error: (07/26/2018 06:00:36 PM) (Source: DCOM) (EventID: 10016) (User: Nick-PC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user Nick-PC\Nick SID (S-1-5-21-751853946-1792747095-3574087814-1002) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (07/26/2018 05:58:35 PM) (Source: DCOM) (EventID: 10010) (User: Nick-PC)
Description: The server {1EF75F33-893B-4E8F-9655-C3D602BA4897} did not register with DCOM within the required timeout.
 
Error: (07/26/2018 05:58:35 PM) (Source: DCOM) (EventID: 10010) (User: Nick-PC)
Description: The server {1EF75F33-893B-4E8F-9655-C3D602BA4897} did not register with DCOM within the required timeout.
 
Error: (07/26/2018 05:58:35 PM) (Source: DCOM) (EventID: 10010) (User: Nick-PC)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.
 
Error: (07/26/2018 05:58:35 PM) (Source: DCOM) (EventID: 10010) (User: Nick-PC)
Description: The server {1EF75F33-893B-4E8F-9655-C3D602BA4897} did not register with DCOM within the required timeout.
 
Error: (07/26/2018 05:58:35 PM) (Source: DCOM) (EventID: 10010) (User: Nick-PC)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.
 
Error: (07/26/2018 05:58:35 PM) (Source: DCOM) (EventID: 10010) (User: Nick-PC)
Description: The server {1EF75F33-893B-4E8F-9655-C3D602BA4897} did not register with DCOM within the required timeout.
 
Error: (07/26/2018 05:58:35 PM) (Source: DCOM) (EventID: 10010) (User: Nick-PC)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.
 
 
CodeIntegrity:
===================================
 
Date: 2018-07-24 06:40:25.963
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.
 
Date: 2018-07-24 06:40:25.955
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.
 
Date: 2018-07-24 06:40:25.911
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.
 
Date: 2018-07-24 06:40:25.903
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.
 
Date: 2018-07-24 06:40:25.892
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.
 
Date: 2018-07-24 06:40:25.884
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.
 
Date: 2018-07-24 06:40:25.639
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
 
Date: 2018-07-24 06:40:25.619
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-3770K CPU @ 3.50GHz
Percentage of memory in use: 14%
Total physical RAM: 16328.21 MB
Available physical RAM: 13933.34 MB
Total Virtual: 20424.21 MB
Available Virtual: 16994.33 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:231.7 GB) (Free:98.05 GB) NTFS
Drive e: (New Volume) (Fixed) (Total:2794.52 GB) (Free:1530.52 GB) NTFS
Drive g: (Samsung G Drive (Downloads)) (Fixed) (Total:931.51 GB) (Free:122.04 GB) NTFS
 
\\?\Volume{41a257ed-a613-11e2-97a9-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.34 GB) (Free:0.3 GB) NTFS
\\?\Volume{78e11b60-0000-0000-0000-f0023a000000}\ () (Fixed) (Total:0.84 GB) (Free:0.45 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 8687B461)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42)
 
========================================================
Disk: 1 (Size: 2794.5 GB) (Disk ID: F90CDF7D)
 
Partition: GPT.
 
========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 78E11B60)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=231.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=859 MB) - (Type=27)
 
==================== End of Addition.txt ============================

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP