Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

startupchecklibrary.dll Missing!

startupchecklibrary.dll missing help dll dll missing missing dll file file missing missing dll

  • Please log in to reply

#1
HossamL

HossamL

    New Member

  • Member
  • Pip
  • 2 posts

Hello! when I start my pc up I get an error message that startupchecklibrary.dll is missing. I have tried to look for an answer but sadly didn't find one. I hope this could help a lot of people.

Attached Thumbnails

  • post-426616-0-89716800-1532099247.png

Edited by HossamL, Today, 12:09 PM.

  • 0

Advertisements


#2
iMacg3

iMacg3

    Malware Removal

  • Malware Removal
  • 346 posts
Welcome. :)

Please follow the instructions in this guide, and post the requested logs: http://www.geekstogo...before-posting/
  • 0

#3
HossamL

HossamL

    New Member

  • Topic Starter
  • Member
  • Pip
  • 2 posts
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 18.04.2019
Ran by Hossam (administrator) on LENOVO-PC (19-04-2019 19:59:44)
Running from C:\Users\Hossam\Downloads
Loaded Profiles: Hossam (Available Profiles: Hossam & Administratör)
Platform: Windows 10 Home Version 1809 17763.437 (X64) Language: Svenska (Sverige)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe
(Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Systems Incorporated -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Systems Incorporated -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
() [File not signed] C:\Windows\jmesoft\Service.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(LENOVO -> LENOVO INCORPORATED.) C:\Program Files\Lenovo\iMController\SystemAgentService.exe
(Intel® Corporation) [File not signed] C:\Program Files\Intel\iCLS Client\HeciServer.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
(Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe
() [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Popcorn Time) [File not signed] C:\Program Files (x86)\Popcorn Time\Updater.exe
(McAfee, Inc. -> McAfee, Inc.) C:\ProgramData\McAfee\McInstruTrack\McInstruTrack.exe
(Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(RemoteMouse.net) [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouseCore.exe
(RemoteMouse.net) [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouse.exe
(Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\printfilterpipelinesvc.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\3.1.160.0\McCSPServiceHost.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\VSCore_18_12\mcapexe.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe
(McAfee, Inc. -> McAfee LLC.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler64.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19032.714.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrHCRPServer.exe
(Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrAudioguiCtrl.exe
(Cambridge Silicon Radio Ltd. -> ) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe
(Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe
(Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe
(Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe
(Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe
(F.lux Software LLC -> f.lux Software LLC) C:\Users\Hossam\AppData\Local\FluxSoftware\Flux\flux.exe
(Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Hossam\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe
(Vincent Burel -> VB-AUDIO Software) C:\Program Files (x86)\VB\Voicemeeter\voicemeeter.exe
(Lenovo) [File not signed] C:\Windows\jmesoft\hotkey.exe
() [File not signed] C:\Windows\jmesoft\JME_LOAD.exe
(CyberLink -> CyberLink) C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe
(CyberLink Corp. -> CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(OOO Lightshot -> Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.1\Lightshot.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(Spotify AB -> Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(LENOVO -> Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.WindowsStore_11811.1001.27.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\McAfee\MAT\McPvTray.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Discord Inc. -> Discord Inc.) C:\Users\Hossam\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Hossam\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Hossam\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Hossam\AppData\Local\Discord\app-0.0.305\Discord.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Discord Inc. -> Discord Inc.) C:\Users\Hossam\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Hossam\AppData\Local\Discord\app-0.0.305\Discord.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\MSM\McSmtFwk.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\regedit.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [287592 2013-11-21] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2675176 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
HKLM\...\Run: [CsrHCRPServer] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrHCRPServer.exe [1134288 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [CsrAudioguiCtrl] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrAudioguiCtrl.exe [511696 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [CsrSyncMLServer] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe [244944 2012-03-22] (Cambridge Silicon Radio Ltd. -> )
HKLM\...\Run: [vksts] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe [25792 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [HarmonyUserStartup] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe [39128 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [CSRHarmonySkypePlugin] => C:\Program Files (x86)\CSR\CSR Harmony Wireless Software Stack\CSRHarmonySkypePlugin.exe [146656 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [TrayApplication] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe [529616 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2019-01-18] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [Fences] => D:\Games\Fences.exe [4854200 2018-05-25] (Stardock Corporation -> Stardock Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [jmekey] => C:\windows\jmesoft\hotkey.exe [118784 2013-07-24] (Lenovo) [File not signed]
HKLM-x32\...\Run: [jmesoft] => C:\Windows\jmesoft\ServiceLoader.exe [28672 2011-08-17] () [File not signed]
HKLM-x32\...\Run: [LVT] => C:\Program Files\Lenovo\LVT\LJYZ.exe [886112 2011-11-24] (Lenovo (Beijing) Limited -> Lenovo)
HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe [103720 2009-12-05] (CyberLink -> CyberLink)
HKLM-x32\...\Run: [UpdateP2GoShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-07] (CyberLink -> CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192 2013-03-09] (CyberLink Corp. -> CyberLink Corp.)
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [225944 2016-07-11] (OOO Lightshot -> )
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-12-16] (Oracle America, Inc. -> Oracle Corporation)
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-561342403-3159581679-3982711157-1001\...\Run: [Steam] => D:\Program\steam.exe [3146016 2019-03-06] (Valve -> Valve Corporation)
HKU\S-1-5-21-561342403-3159581679-3982711157-1001\...\Run: [Discord] => C:\Users\Hossam\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-561342403-3159581679-3982711157-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3482864 2019-03-27] (Razer USA Ltd. -> )
HKU\S-1-5-21-561342403-3159581679-3982711157-1001\...\Run: [f.lux] => C:\Users\Hossam\AppData\Local\FluxSoftware\Flux\flux.exe [1376264 2019-04-03] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-561342403-3159581679-3982711157-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [53540416 2019-04-16] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-561342403-3159581679-3982711157-1001\...\Run: [Fences] => d:\games\Fences.exe [4854200 2018-05-25] (Stardock Corporation -> Stardock Corporation)
HKLM\...\Drivers32: [VIDC.FPS1] => C:\WINDOWS\system32\frapsv64.dll [71680 2012-06-11] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [msacm.vorbis] => C:\WINDOWS\system32\vorbis.acm [1470976 2015-03-11] (HMS hxxp://hp.vector.co.jp/authors/VA012897/) [File not signed]
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [65536 2012-06-11] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [msacm.vorbis] => C:\WINDOWS\SysWOW64\vorbis.acm [1554944 2015-03-11] (HMS hxxp://hp.vector.co.jp/authors/VA012897/) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\73.0.3683.103\Installer\chrmstp.exe [2019-04-11] (Google LLC -> Google Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{5355DA8C-FE32-49b4-A567-A67535C86592}] -> C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BLEtokenCredentialProvider.dll [2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
IFEO\taskmgr.exe: [Debugger] 
Startup: C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Voicemeeter.LNK [2017-03-27]
ShortcutTarget: Voicemeeter.LNK -> C:\Program Files (x86)\VB\Voicemeeter\voicemeeter.exe (Vincent Burel -> VB-AUDIO Software)
GroupPolicy: Restriction ? <==== ATTENTION
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{06C59F79-FC2C-4714-84E0-AA7ADF2C1005}: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{C5FAE918-2F73-424E-8B96-71CB940D466E}: [DhcpNameServer] 10.0.0.1
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.ourluckysites.com/?type=hp&ts=1493985220&z=80aec19d2a94243ea027f74g2zet5c5tfb6w0ofo3e&from=che0812&uid=SAMSUNGXMZ7LF120HCHP-000L1_S25ZNXAG606008
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-561342403-3159581679-3982711157-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-561342403-3159581679-3982711157-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-561342403-3159581679-3982711157-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
SearchScopes: HKLM -> {531DDA05-DF20-46A2-A8C0-A85ED94016E4} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
SearchScopes: HKLM-x32 -> {531DDA05-DF20-46A2-A8C0-A85ED94016E4} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\.DEFAULT -> DefaultScope {531DDA05-DF20-46A2-A8C0-A85ED94016E4} URL = 
SearchScopes: HKU\.DEFAULT -> {531DDA05-DF20-46A2-A8C0-A85ED94016E4} URL = 
SearchScopes: HKU\S-1-5-21-561342403-3159581679-3982711157-1001 -> DefaultScope {531DDA05-DF20-46A2-A8C0-A85ED94016E4} URL = 
SearchScopes: HKU\S-1-5-21-561342403-3159581679-3982711157-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D072918-A9FCDBB39EF&form=CONBDF&conlogo=CT3335799&q={searchTerms}
SearchScopes: HKU\S-1-5-21-561342403-3159581679-3982711157-1001 -> {1D26B1F6-10C2-4A95-8CBD-172642C10A16} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-561342403-3159581679-3982711157-1001 -> {531DDA05-DF20-46A2-A8C0-A85ED94016E4} URL = 
SearchScopes: HKU\S-1-5-21-561342403-3159581679-3982711157-1001 -> {DC06812F-A7D0-45C4-B88E-602B480065DC} URL = hxxps://se.search.yahoo.com/search?p={searchTerms}&intl=se&fr=yset_ie_syc_oracle&type=orcl_default&partnerexternal-oracle=external-oracle
BHO: Browsing Protection by F-Secure -> {45BBE08D-81C5-4A67-AF20-B2A077C67747} -> C:\Program Files (x86)\F-Secure\SAFE\apps\Ultralight\nif\1537173264\browser\install\fs_ie_https\fs_ie_https64.dll => No File
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_201\bin\ssv.dll [2019-02-25] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-02-25] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-04-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Browsing Protection by F-Secure -> {45BBE08D-81C5-4A67-AF20-B2A077C67747} -> C:\Program Files (x86)\F-Secure\SAFE\apps\Ultralight\nif\1537173264\browser\install\fs_ie_https\fs_ie_https.dll => No File
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\ssv.dll [2019-02-06] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-02-06] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2011-01-19] (Skype Technologies SA -> Skype Technologies)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\program files\mcafee\msc\mcsniepl64.dll [2019-02-15] (McAfee, Inc. -> McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\program files (x86)\mcafee\msc\mcsniepl.dll [2019-02-15] (McAfee, Inc. -> McAfee, Inc.)
 
FireFox:
========
FF DefaultProfile: r7340yzg.default
FF ProfilePath: C:\Users\Hossam\AppData\Roaming\Mozilla\Firefox\Profiles\r7340yzg.default [2019-03-31]
FF Homepage: Mozilla\Firefox\Profiles\r7340yzg.default -> hxxp://page-ups.com/all/
FF NewTab: Mozilla\Firefox\Profiles\r7340yzg.default -> hxxp://www.bing.com/?pc=COSP&ptag=D072918-A9FCDBB39EF&form=CONMHP&conlogo=CT3335799
FF Extension: (Grammarly for Firefox) - C:\Users\Hossam\AppData\Roaming\Mozilla\Firefox\Profiles\r7340yzg.default\Extensions\[email protected] [2017-09-12]
FF Extension: (Quick Searcher) - C:\Users\Hossam\AppData\Roaming\Mozilla\Firefox\Profiles\r7340yzg.default\Extensions\[email protected]3 [2018-02-04]
FF Extension: (Adblock Plus) - C:\Users\Hossam\AppData\Roaming\Mozilla\Firefox\Profiles\r7340yzg.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-05-31] [Legacy]
FF SearchPlugin: C:\Users\Hossam\AppData\Roaming\Mozilla\Firefox\Profiles\r7340yzg.default\searchplugins\bing-lavasoft-ff59.xml [2018-07-30]
FF ProfilePath: C:\Users\Hossam\AppData\Roaming\Firefox\Firefox\Profiles\r7340yzg.default [2017-07-17] <==== ATTENTION
FF Homepage: Firefox\Firefox\Profiles\r7340yzg.default -> hxxps://www.google.se/?gfe_rd=cr&ei=r10zWfSBKsqq8we2-4qIAQ&gws_rd=ssl
FF Extension: (Svenska (SE) Language Pack) - C:\Users\Hossam\AppData\Roaming\Firefox\Firefox\Profiles\r7340yzg.default\Extensions\[email protected] [2017-06-01] [Legacy] [not signed]
FF Extension: (Adblock Plus) - C:\Users\Hossam\AppData\Roaming\Firefox\Firefox\Profiles\r7340yzg.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-06-08] [Legacy]
FF SearchPlugin: C:\Users\Hossam\AppData\Roaming\Firefox\Firefox\Profiles\r7340yzg.default\searchplugins\startsearch.xml [2017-05-20]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\F-Secure\SAFE\apps\Ultralight\nif\1537173264\browser\install\fs_firefox_https\fs_firefox_https.xpi => not found
FF HKLM\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\McAfee\MSKHKLM => not found
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\F-Secure\SAFE\apps\Ultralight\nif\1537173264\browser\install\fs_firefox_https\fs_firefox_https.xpi => not found
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2019-03-24] [Legacy] [not signed]
FF Plugin: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-02-25] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-02-25] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 -> c:\program files\mcafee\msc\npmcsnffpl64.dll [2019-02-15] (McAfee, Inc. -> )
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [No File]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-03] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-03] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-02-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-02-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\program files (x86)\mcafee\msc\npmcsnffpl.dll [2019-02-15] (McAfee, Inc. -> )
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-10-27] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-10-27] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-27] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-27] (Google Inc -> Google LLC)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [No File]
StartMenuInternet: FIREFOX.EXE - D:\Program\firefox.exe
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.funnysearching.com/
CHR StartupUrls: Default -> "hxxps://www.google.se/"
CHR Profile: C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default [2019-04-19]
CHR Extension: (Presentationer) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-02-04]
CHR Extension: (Dokument) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-02-04]
CHR Extension: (Google Drive) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-02-13]
CHR Extension: (YouTube) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-02-13]
CHR Extension: (ZenMate - IP & Browser Check) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchhalahcjpkabdgonjhoogdcipienhf [2017-02-13]
CHR Extension: (Netflix) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\deceagebecbceejblnlcjooeohmmeldh [2018-02-04]
CHR Extension: (Tags for YouTube™) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\dggphokdgjikekfiakjcpidcclbmkfga [2019-03-27]
CHR Extension: (Kalkylark) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-02-04]
CHR Extension: (Studentkortets Rabattknapp) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkccpmgklfejhemeohopclkfeefonbda [2018-02-04]
CHR Extension: (Google Dokument Offline) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-21]
CHR Extension: (AdBlock) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-04-12]
CHR Extension: (Grammarly for Chrome) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2019-04-18]
CHR Extension: (Betalning via Chrome Web Store) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Gmail) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-02-13]
CHR Extension: (Chrome Media Router) - C:\Users\Hossam\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-24]
CHR HKLM\...\Chrome\Extension: [jmjjnhpacphpjmnnlnccpfmhkcloaade] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-561342403-3159581679-3982711157-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fabhkdeopjkcpkmofliimbjckmocfiom] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fdbpcigaolookbahgdofnimidinicfid] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [jmjjnhpacphpjmnnlnccpfmhkcloaade] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [nladljmabboanhihfkjacnnkgjhnokhj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
HKU\S-1-5-21-561342403-3159581679-3982711157-1001\...\StartMenuInternet\ChromeHTML: -> C:\Program Files (x86)\Eggper\Application\chrome.exe (Google Inc -> Google Inc.) <==== ATTENTION
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-25] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2917864 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2709480 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [85304 2018-10-16] (Apple Inc. -> Apple Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8403672 2019-02-26] (BattlEye Innovations e.K. -> )
R2 BtSwitcherService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe [64216 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11082312 2019-04-02] (Microsoft Corporation -> Microsoft Corporation)
R2 CSRBtAudioService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe [465624 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
R2 CsrBtOBEXService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe [1041616 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
R2 CsrBtService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe [825032 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-11-21] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Trusted Connect Service -> Intel® Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-12-03] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R2 JME Keyboard; C:\Windows\jmesoft\Service.exe [32768 2011-08-17] () [File not signed]
S3 Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [532224 2014-04-23] (LENOVO -> Lenovo)
R2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584960 2014-05-22] (LENOVO -> LENOVO INCORPORATED.)
S3 LSC.Services.SystemService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [273232 2016-08-24] (LENOVO -> Lenovo)
R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_18_12\McApExe.exe [745880 2019-01-23] (McAfee, Inc. -> McAfee, Inc.)
S3 McAWFwk; c:\program files\common files\McAfee\ActWiz\McAWFwk.exe [458688 2018-11-14] (McAfee, Inc. -> McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\3.1.160.0\\McCSPServiceHost.exe [2158952 2018-12-17] (McAfee, Inc. -> McAfee, Inc.)
S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [371840 2019-01-16] (McAfee, Inc. -> McAfee, LLC)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [604216 2019-01-16] (McAfee, Inc. -> McAfee, LLC)
R3 mfevtp; C:\WINDOWS\system32\mfevtps.exe [509728 2019-01-16] (McAfee, Inc. -> McAfee, LLC)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1692552 2018-12-19] (McAfee, Inc. -> McAfee, Inc.)
R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [1360384 2019-02-05] (McAfee, Inc. -> McAfee, Inc.)
R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [449664 2018-08-29] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [942720 2018-09-12] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [253776 2019-02-21] (Razer USA Ltd. -> Razer Inc)
R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [287472 2019-03-27] (Razer USA Ltd. -> )
R2 RemoteMouseService; C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe [18432 2016-06-25] () [File not signed]
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [293352 2017-09-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [532864 2019-04-02] (Razer USA Ltd. -> Razer Inc.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [339968 2018-04-06] (Popcorn Time) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3830128 2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [77384 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
R3 CMUSBDAC; C:\WINDOWS\system32\DRIVERS\CMUSBDAC.sys [627208 2016-11-30] (Microsoft Windows Hardware Compatibility Publisher -> C-MEDIA)
S3 DFX11_1; C:\WINDOWS\system32\drivers\dfx11_1x64.sys [28008 2018-03-08] (Power Technology -> Windows ® Win 7 DDK provider)
S3 DFX12; C:\WINDOWS\system32\drivers\dfx12x64.sys [29688 2018-03-08] (Power Technology -> Windows ® Win 7 DDK provider)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R0 fsbts; C:\WINDOWS\System32\drivers\fsbts.sys [65872 2018-08-07] (F-Secure Corporation -> )
S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [218408 2018-12-24] (McAfee, Inc. -> McAfee, Inc.)
R2 McPvDrv; C:\WINDOWS\system32\drivers\McPvDrv.sys [88504 2018-10-12] (McAfee, Inc. -> McAfee, Inc.)
R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [100824 2013-12-03] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [511024 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [373808 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [86136 2019-01-22] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC)
R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [517168 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [981032 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
R3 mfencbdc; C:\WINDOWS\system32\DRIVERS\mfencbdc.sys [563728 2018-11-19] (McAfee, Inc. -> McAfee LLC.)
S3 mfencrk; C:\WINDOWS\system32\DRIVERS\mfencrk.sys [109072 2018-11-19] (McAfee, Inc. -> McAfee LLC.)
R3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [117800 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [254024 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
S3 Netaapl; C:\WINDOWS\system32\DRIVERS\netaapl64.sys [23040 2016-03-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_desktop_ref4wu.inf_amd64_0109a19b5125cb43\nvlddmkm.sys [16936048 2017-11-09] (NVIDIA Corporation -> NVIDIA Corporation)
S3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69544 2018-06-08] (NVIDIA Corporation -> NVIDIA Corporation)
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [724968 2017-09-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [8169472 2018-09-15] (Microsoft Windows -> Realtek Semiconductor Corporation )
R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [45960 2019-01-16] (Razer USA Ltd. -> Razer Inc)
R3 RzDev_0060; C:\WINDOWS\System32\drivers\RzDev_0060.sys [49648 2018-04-22] (Razer USA Ltd. -> Razer Inc)
R3 RzDev_0221; C:\WINDOWS\System32\drivers\RzDev_0221.sys [49648 2018-04-22] (Razer USA Ltd. -> Razer Inc)
R3 RzDev_0C00; C:\WINDOWS\System32\drivers\RzDev_0C00.sys [49648 2018-04-22] (Razer USA Ltd. -> Razer Inc)
S3 rzendpt; C:\WINDOWS\System32\drivers\rzendpt.sys [52240 2017-07-19] (Razer USA Ltd. -> Razer Inc)
S3 RZSURROUNDVADService; C:\WINDOWS\system32\drivers\RzSurroundVAD.sys [49176 2016-10-16] (Razer USA Ltd. -> Windows ® Win 7 DDK provider)
S3 sparkocam; C:\WINDOWS\system32\DRIVERS\sparkocam.sys [37200 2016-09-01] (Sparkosoft Inc -> Sparkosoft)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [31392 2017-07-28] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [31392 2017-07-21] (Valve Corp. -> )
S3 tap0901; C:\WINDOWS\system32\DRIVERS\tap0901.sys [36040 2015-09-11] (SaferSocial Ltd -> The OpenVPN Project)
R3 VBAudioVACMME; C:\WINDOWS\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2014-09-02] (Vincent Burel -> Windows ® Win 7 DDK provider)
R3 VBAudioVMVAIOMME; C:\WINDOWS\system32\DRIVERS\vbaudio_vmvaio64_win7.sys [41192 2016-06-22] (Vincent Burel -> Windows ® Win 7 DDK provider)
S3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\vmdrv.sys [27136 2018-03-15] (Voicemod Sociedad Limitada -> Windows ® Win 7 DDK provider)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-14] (CyberLink -> "CyberLink)
S3 xb1usb; C:\WINDOWS\System32\drivers\xb1usb.sys [42760 2016-02-23] (Windows Central Build Account - X -> Microsoft Corporation)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-04-19 19:59 - 2019-04-19 20:00 - 000046370 _____ C:\Users\Hossam\Downloads\FRST.txt
2019-04-19 19:55 - 2019-04-19 19:59 - 000000000 ____D C:\FRST
2019-04-19 19:55 - 2019-04-19 19:55 - 000000000 ____D C:\Users\Hossam\Downloads\FRST-OlderVersion
2019-04-19 19:54 - 2019-04-19 19:55 - 002434048 _____ (Farbar) C:\Users\Hossam\Downloads\FRST64.exe
2019-04-19 19:47 - 2019-04-19 19:47 - 000000000 ___HD C:\OneDriveTemp
2019-04-19 16:56 - 2019-04-19 16:56 - 000014802 _____ C:\Users\Hossam\Downloads\api-ms-win-crt-string-l1-1-0.dll (64-Bit).zip
2019-04-16 03:08 - 2019-04-16 03:08 - 000000000 ____D C:\Users\Hossam\AppData\Local\OneDrive
2019-04-16 01:08 - 2019-04-16 01:08 - 000000037 _____ C:\Users\Hossam\AppData\Roaming\WB.CFG
2019-04-15 22:17 - 2019-04-15 22:17 - 000000000 ____D C:\Users\Hossam\AppData\Local\D3DSCache
2019-04-15 21:12 - 2019-04-15 21:12 - 000000000 ____D C:\Users\Hossam\AppData\Local\DBG
2019-04-15 03:05 - 2019-04-15 03:05 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign52ef1851f2ffab8f
2019-04-15 03:03 - 2019-04-15 03:03 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign498f61ed6d17f1f1
2019-04-15 03:03 - 2019-04-15 03:03 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign2e83ca98d94ef235
2019-04-15 03:03 - 2019-04-15 03:03 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign070108571ae4148f
2019-04-14 20:28 - 2019-04-14 19:36 - 000000000 ____D C:\Windows.old
2019-04-14 20:23 - 2019-04-14 20:28 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-04-14 20:23 - 2019-04-14 20:23 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-04-14 20:23 - 2019-04-14 20:23 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-04-14 20:22 - 2019-04-14 20:22 - 023440896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 020815360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 019025408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 012843520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 012139008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 008898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 007919104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 007877120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 006071296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 005436904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 004660224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 004488192 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2019-04-14 20:22 - 2019-04-14 20:22 - 003904512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 003690496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2019-04-14 20:22 - 2019-04-14 20:22 - 003551112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 003442176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-04-14 20:22 - 2019-04-14 20:22 - 003421696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2019-04-14 20:22 - 2019-04-14 20:22 - 002942464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 002127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 001459080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 001297120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 001294520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 001259320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-04-14 20:22 - 2019-04-14 20:22 - 001072424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 001064448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 001019392 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000897536 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000772608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000263600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\EduPrintProv.exe
2019-04-14 20:22 - 2019-04-14 20:22 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2019-04-14 20:22 - 2019-04-14 20:22 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2019-04-14 20:22 - 2019-04-14 20:22 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe
2019-04-14 20:22 - 2019-04-14 20:22 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfts.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll
2019-04-14 20:22 - 2019-04-14 20:22 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfts.dll
2019-04-14 20:21 - 2019-04-14 20:22 - 026810368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 017513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 015223296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 009682744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 007883776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 007687576 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 007645608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 006925824 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 006544824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 006440960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 006309040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 005765120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 005205448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 004991112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 004704272 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 004588536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 004527624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 004304896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 003982848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 003657728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 003656192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 003557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 003496448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 003384832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 003377976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 003334496 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002995712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002925880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 002871304 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 002842624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002777224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002720256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 002701304 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002689024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002627384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 002592816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002469376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 002438368 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002346496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002275896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002189312 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002073960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002042368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 002017792 _____ C:\WINDOWS\system32\rdpnano.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001994768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001969464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 001918464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001892864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001860096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001856000 ____R (The ICU Project) C:\WINDOWS\system32\icuin.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001844448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001760768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001697752 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-04-14 20:21 - 2019-04-14 20:21 - 001687552 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001674480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001672704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001671352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001647632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001641400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001616384 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001615872 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuin.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001605120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001590064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001567232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001496576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001484800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001478968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001468952 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 001467344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001458056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001395056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001370624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001360184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 001342400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-04-14 20:21 - 2019-04-14 20:21 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001311232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001259320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001253688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 001249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001221944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001213752 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001191728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001179680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 001155072 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuuc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001133568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001072640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-04-14 20:21 - 2019-04-14 20:21 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 001054200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 001053192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001044280 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 001035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001026792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001022616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000998712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000984888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000982880 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000981816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000976896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000974352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000964096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000927232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000909840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-04-14 20:21 - 2019-04-14 20:21 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000871792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000865784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000855040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000850760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000845824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000828728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000821048 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000809784 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000807424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000799568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000793832 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000766480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000761280 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000757664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000737080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000730936 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000730112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000725928 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000711168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000699392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000675096 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000653040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000651792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000651064 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000649064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000620560 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000604008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000598544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000580024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\objsel.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000553784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2019-04-14 20:21 - 2019-04-14 20:21 - 000540448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000528384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000522752 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000513040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000508208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000506168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000485192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000474928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-04-14 20:21 - 2019-04-14 20:21 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000463672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000461112 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000421392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2019-04-14 20:21 - 2019-04-14 20:21 - 000408528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000404792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000386872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000386360 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000385024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000384312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000343984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000322568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000312632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000306488 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RADCUI.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000283032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiCloudStore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000257696 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000255128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000234808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000195896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.CredentialProvider.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000169784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000159272 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winquic.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000157496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000156984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winquic.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000147496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000143880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000134456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000131384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000115360 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\negoexts.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvsetup.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\negoexts.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000098664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000097808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000090424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvsetup.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000089336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpr.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\KdsCli.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000071208 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntlanman.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscapi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscapi.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000039736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WppRecorder.sys
2019-04-14 20:21 - 2019-04-14 20:21 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfproc.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credui.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000035640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcPing.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscdll.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RpcPing.exe
2019-04-14 20:21 - 2019-04-14 20:21 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscdll.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-04-14 20:21 - 2019-04-14 20:21 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-04-14 20:21 - 2019-04-14 20:21 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-04-14 20:21 - 2019-04-14 20:21 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-04-14 20:21 - 2019-04-14 20:21 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-04-14 20:21 - 2019-04-14 20:21 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-04-14 20:21 - 2019-04-14 20:21 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-04-14 20:21 - 2019-04-14 20:21 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-04-14 20:21 - 2019-04-14 20:21 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-04-14 20:19 - 2019-04-14 20:28 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-04-14 20:19 - 2019-04-14 20:19 - 001167960 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-04-14 20:19 - 2019-04-14 20:19 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2019-04-14 20:19 - 2019-04-14 20:19 - 000780376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-04-14 20:19 - 2019-04-14 20:19 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
2019-04-14 20:19 - 2019-04-14 20:19 - 000126064 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-04-14 20:19 - 2019-04-14 20:19 - 000104560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-04-14 20:19 - 2019-04-14 20:19 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XPSSHHDR.dll
2019-04-14 20:19 - 2019-04-14 20:19 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XPSSHHDR.dll
2019-04-14 20:19 - 2019-04-14 20:19 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml
2019-04-14 20:19 - 2019-04-14 20:19 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml
2019-04-14 20:19 - 2019-04-14 20:19 - 000036896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-04-14 20:19 - 2019-04-14 20:19 - 000035440 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-04-14 20:19 - 2019-04-14 20:19 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2019-04-14 20:19 - 2019-04-14 20:19 - 000000000 ____D C:\Program Files\MSBuild
2019-04-14 20:19 - 2019-04-14 20:19 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2019-04-14 20:19 - 2019-04-14 20:19 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-04-14 20:17 - 2019-04-14 20:36 - 000000000 ____D C:\ProgramData\Packages
2019-04-14 20:06 - 2019-04-15 03:11 - 000000000 ____D C:\Users\Hossam\AppData\Local\PlaceholderTileLogoFolder
2019-04-14 20:02 - 2019-04-14 20:02 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-04-14 20:01 - 2019-04-15 03:01 - 000000000 ____D C:\Users\Hossam\AppData\Local\Comms
2019-04-14 20:01 - 2019-04-14 20:37 - 000000000 ____D C:\Users\Hossam\AppData\Local\Publishers
2019-04-14 20:01 - 2019-04-14 20:01 - 000001446 _____ C:\Users\Hossam\Desktop\Microsoft Edge.lnk
2019-04-14 20:01 - 2019-04-14 20:01 - 000000000 ___RD C:\Users\Hossam\3D Objects
2019-04-14 20:01 - 2019-04-14 20:01 - 000000000 ___HD C:\Users\Hossam\MicrosoftEdgeBackups
2019-04-14 20:01 - 2019-04-14 20:01 - 000000000 ____D C:\Users\Hossam\AppData\Local\MicrosoftEdge
2019-04-14 20:00 - 2019-04-15 16:01 - 000000000 ____D C:\Users\Hossam\AppData\Local\ConnectedDevicesPlatform
2019-04-14 20:00 - 2019-04-14 20:00 - 000000254 __RSH C:\Users\Hossam\ntuser.pol
2019-04-14 20:00 - 2019-04-14 20:00 - 000000020 ___SH C:\Users\Hossam\ntuser.ini
2019-04-14 19:45 - 2017-11-09 05:39 - 000540784 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-04-14 19:45 - 2017-11-09 05:39 - 000446392 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-04-14 19:45 - 2017-10-27 18:06 - 000136312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2019-04-14 19:45 - 2017-09-14 01:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-04-14 19:45 - 2017-09-14 01:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-04-14 19:45 - 2017-09-14 01:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-04-14 19:45 - 2017-09-14 01:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-04-14 19:39 - 2019-04-19 19:52 - 001760796 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-04-14 19:36 - 2019-04-19 19:46 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-04-14 19:36 - 2019-04-19 16:35 - 000000000 ____D C:\WINDOWS\System32\Tasks\McAfee
2019-04-14 19:36 - 2019-04-14 19:36 - 000004552 _____ C:\WINDOWS\System32\Tasks\Nervition Reports
2019-04-14 19:36 - 2019-04-14 19:36 - 000003296 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2019-04-14 19:36 - 2019-04-14 19:36 - 000003074 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{5C9DBA02-FBA0-450B-B43F-54C38254F680}
2019-04-14 19:36 - 2019-04-14 19:36 - 000003068 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2019-04-14 19:36 - 2019-04-14 19:36 - 000002868 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2019-04-14 19:36 - 2019-04-14 19:36 - 000002844 _____ C:\WINDOWS\System32\Tasks\update-S-1-5-21-561342403-3159581679-3982711157-1001
2019-04-14 19:36 - 2019-04-14 19:36 - 000002810 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-561342403-3159581679-3982711157-1004
2019-04-14 19:36 - 2019-04-14 19:36 - 000002810 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-561342403-3159581679-3982711157-1001
2019-04-14 19:36 - 2019-04-14 19:36 - 000002720 _____ C:\WINDOWS\System32\Tasks\Red Giant Link
2019-04-14 19:36 - 2019-04-14 19:36 - 000002676 _____ C:\WINDOWS\System32\Tasks\update-sys
2019-04-14 19:36 - 2019-04-14 19:36 - 000002638 _____ C:\WINDOWS\System32\Tasks\{C21F450B-D00F-4ABE-B6D2-CDE6C65B23FA}
2019-04-14 19:36 - 2019-04-14 19:36 - 000002616 _____ C:\WINDOWS\System32\Tasks\[email protected]
2019-04-14 19:36 - 2019-04-14 19:36 - 000002610 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-561342403-3159581679-3982711157-1001
2019-04-14 19:36 - 2019-04-14 19:36 - 000002596 _____ C:\WINDOWS\System32\Tasks\[email protected]
2019-04-14 19:36 - 2019-04-14 19:36 - 000002568 _____ C:\WINDOWS\System32\Tasks\McAfeeLogon
2019-04-14 19:36 - 2019-04-14 19:36 - 000002480 _____ C:\WINDOWS\System32\Tasks\{ED5084A6-4D34-4C5A-AA8D-3723621254F9}
2019-04-14 19:36 - 2019-04-14 19:36 - 000002442 _____ C:\WINDOWS\System32\Tasks\b86d3bc690af9a1b64797c131e23dee6
2019-04-14 19:36 - 2019-04-14 19:36 - 000002402 _____ C:\WINDOWS\System32\Tasks\MicrosoftUpdate
2019-04-14 19:36 - 2019-04-14 19:36 - 000002318 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-561342403-3159581679-3982711157-500
2019-04-14 19:36 - 2019-04-14 19:36 - 000002314 _____ C:\WINDOWS\System32\Tasks\{24374C17-E411-49F6-9EEF-C6AB8679F3EC}
2019-04-14 19:36 - 2019-04-14 19:36 - 000002150 _____ C:\WINDOWS\System32\Tasks\{90080978-87CD-43C8-A945-5C4509928561}
2019-04-14 19:36 - 2019-04-14 19:36 - 000002072 _____ C:\WINDOWS\System32\Tasks\McInstruTrack
2019-04-14 19:36 - 2019-04-14 19:36 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD
2019-04-14 19:36 - 2019-04-14 19:36 - 000000000 ____D C:\WINDOWS\System32\Tasks\Remediation
2019-04-14 19:36 - 2019-04-14 19:36 - 000000000 ____D C:\WINDOWS\System32\Tasks\Razer Synapse
2019-04-14 19:36 - 2019-04-14 19:36 - 000000000 ____D C:\WINDOWS\System32\Tasks\MEGA
2019-04-14 19:36 - 2019-04-14 19:36 - 000000000 ____D C:\WINDOWS\System32\Tasks\Lenovo
2019-04-14 19:36 - 2019-04-14 19:36 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple
2019-04-14 19:36 - 2019-04-14 19:36 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-04-14 19:36 - 2014-04-03 20:35 - 000003594 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1050727674-2070356693-977449066-500
2019-04-14 19:35 - 2019-04-14 19:36 - 000011433 _____ C:\WINDOWS\diagwrn.xml
2019-04-14 19:35 - 2019-04-14 19:36 - 000011433 _____ C:\WINDOWS\diagerr.xml
2019-04-14 19:32 - 2019-04-14 20:06 - 000002417 _____ C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-04-14 19:32 - 2019-04-14 20:01 - 000000000 ____D C:\Users\Hossam
2019-04-14 19:32 - 2019-04-14 19:34 - 000000000 ____D C:\Users\Administrator
2019-04-14 19:32 - 2019-04-14 19:32 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\Start-meny
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\Skrivare
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\Programdata
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\Nätverket
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\Mina dokument
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\Mallar
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\Lokala inställningar
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\Documents\Mina videoklipp
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\Documents\Mina bilder
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\Documents\Min musik
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Program
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\AppData\Local\Tidigare
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Hossam\AppData\Local\Programdata
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\Start-meny
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\Skrivare
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\Programdata
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\Nätverket
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\Mina dokument
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\Mallar
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\Lokala inställningar
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\Documents\Mina videoklipp
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\Documents\Mina bilder
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\Documents\Min musik
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Program
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\AppData\Local\Tidigare
2019-04-14 19:32 - 2019-04-14 19:32 - 000000000 _SHDL C:\Users\Administrator\AppData\Local\Programdata
2019-04-14 19:32 - 2018-09-15 09:29 - 000001105 _____ C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-04-14 19:31 - 2019-04-14 19:31 - 000000000 ____D C:\ProgramData\USOShared
2019-04-14 19:31 - 2019-03-12 08:33 - 002865152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-04-14 19:29 - 2019-04-19 00:29 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-04-14 19:29 - 2019-04-14 19:33 - 005338008 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-04-14 18:51 - 2019-04-14 20:00 - 000000000 ___DC C:\WINDOWS\Panther
2019-04-14 18:12 - 2019-04-14 18:12 - 000000000 ___HD C:\$Windows.~WS
2019-04-14 04:50 - 2019-04-14 04:50 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsignd5338a945c03891a
2019-04-14 04:48 - 2019-04-14 04:48 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsignefdcdf7ed673ecd3
2019-04-14 04:48 - 2019-04-14 04:48 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign83eb3925791b9423
2019-04-14 04:48 - 2019-04-14 04:48 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign5ab814c6810e3614
2019-04-14 04:48 - 2019-04-14 04:48 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign19ae9b8758f7a92e
2019-04-14 04:45 - 2019-04-14 04:45 - 000000000 ____D C:\Users\Hossam\Desktop\Windows Installations
2019-04-14 04:44 - 2019-04-14 04:44 - 000043520 ___SH C:\Users\Hossam\Downloads\Thumbs.db
2019-04-14 03:19 - 2019-04-14 03:19 - 000000000 __SHD C:\Users\Hossam\AppData\LocalLow\EmieBrowserModeList
2019-04-14 03:19 - 2019-04-14 03:19 - 000000000 __SHD C:\Users\Hossam\AppData\Local\EmieBrowserModeList
2019-04-13 21:09 - 2019-04-14 19:36 - 000000254 __RSH C:\ProgramData\ntuser.pol
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\Start-meny
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\Skrivare
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\Programdata
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\Nätverket
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\Mina dokument
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\Mallar
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\Lokala inställningar
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\Documents\Mina videoklipp
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\Documents\Mina bilder
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\Documents\Min musik
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Program
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\AppData\Local\Tidigare
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default\AppData\Local\Programdata
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default User\Documents\Mina videoklipp
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default User\Documents\Mina bilder
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default User\Documents\Min musik
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Program
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Tidigare
2019-04-13 21:08 - 2019-04-13 21:08 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Programdata
2019-04-13 21:07 - 2019-04-14 19:35 - 000023004 _____ C:\WINDOWS\system32\emptyregdb.dat
2019-04-13 21:02 - 2019-04-13 21:02 - 000000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2019-04-13 21:02 - 2019-04-13 21:02 - 000000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2019-04-13 20:59 - 2014-11-21 10:57 - 000000369 _____ C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2019-04-13 20:59 - 2014-11-21 10:57 - 000000369 _____ C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2019-04-13 20:56 - 2019-04-14 19:45 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-04-13 20:56 - 2017-10-27 18:36 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2019-04-13 20:56 - 2017-10-27 18:12 - 005960824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-04-13 20:56 - 2017-10-27 18:12 - 002587768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-04-13 20:56 - 2017-10-27 18:12 - 001766520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-04-13 20:56 - 2017-10-27 18:12 - 000607168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-04-13 20:56 - 2017-10-27 18:12 - 000449656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-04-13 20:56 - 2017-10-27 18:12 - 000123000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-04-13 20:56 - 2017-10-27 18:12 - 000081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-04-13 20:56 - 2017-10-25 12:33 - 007802921 _____ C:\WINDOWS\system32\nvcoproc.bin
2019-04-13 20:55 - 2019-04-14 20:24 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-04-13 20:55 - 2019-04-14 20:24 - 000000000 ____D C:\Program Files\Realtek
2019-04-13 20:55 - 2019-04-14 19:45 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-04-13 20:55 - 2019-04-14 19:44 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-04-13 20:55 - 2019-04-14 19:30 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-04-13 20:55 - 2019-04-14 19:30 - 000000000 ____D C:\Program Files (x86)\Razer
2019-04-13 20:55 - 2019-04-13 21:01 - 000000000 ____D C:\ProgramData\Razer
2019-04-13 20:55 - 2019-04-13 20:55 - 000000000 _____ C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2019-04-13 20:55 - 2019-04-13 20:55 - 000000000 _____ C:\ProgramData\DP45977C.lfl
2019-04-13 02:06 - 2019-04-13 02:06 - 001640992 _____ C:\Users\Hossam\Downloads\Autoruns.zip
2019-04-12 22:08 - 2019-04-14 18:51 - 000000000 ____D C:\ESD
2019-04-11 23:39 - 2019-04-11 23:39 - 000000204 _____ C:\Users\Hossam\Desktop\UNO.url
2019-04-07 20:11 - 2019-04-07 20:12 - 000000000 ____D C:\Users\Hossam\AppData\Local\{62D85484-4670-383C-2BE8-1DD40F80E14C}
2019-04-07 19:21 - 2019-04-07 19:21 - 000000000 ____D C:\ProgramData\ByteFence
2019-04-05 04:13 - 2019-04-05 04:13 - 000000000 ____D C:\Users\Hossam\Documents\Need for Speed™ Payback
2019-03-31 18:58 - 2019-04-14 15:22 - 000000000 ____D C:\Users\Hossam\Documents\Outlook-filer
2019-03-30 23:56 - 2019-04-14 20:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office-verktyg
2019-03-28 00:13 - 2019-03-28 00:13 - 000000000 ____D C:\Users\Hossam\AppData\LocalLow\Unknown Vendor
2019-03-26 02:04 - 2019-03-26 02:04 - 000000000 ____D C:\Users\Hossam\Documents\Need for Speed™ Payback 100% done story
2019-03-26 02:01 - 2019-04-14 20:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Need for Speed™ Payback
2019-03-26 02:01 - 2019-03-26 02:01 - 000000582 _____ C:\Users\Public\Desktop\Need for Speed™ Payback.lnk
2019-03-26 02:01 - 2019-03-26 02:01 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
2019-03-26 00:29 - 2019-03-26 00:29 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsigna6d0830216ae8ed9
2019-03-26 00:29 - 2019-03-26 00:29 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign6fef7fd0825b2aae
2019-03-26 00:29 - 2019-03-26 00:29 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign34d0784bd2a84de9
2019-03-26 00:29 - 2019-03-26 00:29 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign073d22035447f1b1
2019-03-25 23:50 - 2019-03-26 00:09 - 000000000 ____D C:\Users\Hossam\Desktop\Pics and docs
2019-03-25 23:37 - 2019-04-14 20:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock
2019-03-25 23:37 - 2019-03-25 23:37 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Stardock
2019-03-25 23:37 - 2019-03-25 23:37 - 000000000 ____D C:\Users\Hossam\AppData\Local\Stardock
2019-03-25 23:37 - 2019-03-25 23:37 - 000000000 ____D C:\ProgramData\Stardock
2019-03-25 23:17 - 2019-03-25 23:17 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsignfb20476027667341
2019-03-25 23:17 - 2019-03-25 23:17 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign8b1536af9bf7fadf
2019-03-25 23:17 - 2019-03-25 23:17 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign66914657d09124a6
2019-03-25 23:17 - 2019-03-25 23:17 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign1c855183cca861c2
2019-03-25 15:57 - 2019-03-25 15:57 - 000000204 _____ C:\Users\Hossam\Desktop\PC Building Simulator.url
2019-03-24 23:26 - 2019-03-25 16:59 - 000000000 ____D C:\Users\Hossam\AppData\LocalLow\uTorrent
2019-03-24 23:25 - 2019-03-26 03:20 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\uTorrent
2019-03-24 23:25 - 2019-03-24 23:25 - 000000871 _____ C:\Users\Hossam\Desktop\µTorrent.lnk
2019-03-24 23:25 - 2019-03-24 23:25 - 000000851 _____ C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2019-03-24 23:24 - 2019-04-14 19:36 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-03-24 23:24 - 2019-04-14 19:36 - 000002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-03-24 23:24 - 2019-03-24 23:24 - 002981864 _____ (BitTorrent Inc.) C:\Users\Hossam\Downloads\uTorrent.exe
2019-03-24 02:00 - 2019-04-19 19:49 - 000000000 __RSD C:\Users\Hossam\Documents\McAfee-valv
2019-03-24 02:00 - 2019-04-14 20:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2019-03-24 02:00 - 2019-03-24 02:00 - 000002045 _____ C:\Users\Public\Desktop\McAfee® Total Protection.lnk
2019-03-24 02:00 - 2019-03-24 02:00 - 000000000 ____D C:\Users\Hossam\AppData\Local\McAfee File Lock
2019-03-24 02:00 - 2018-12-24 08:18 - 000218408 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\HipShieldK.sys
2019-03-24 02:00 - 2018-10-12 07:58 - 000088504 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\McPvDrv.sys
2019-03-24 01:58 - 2019-04-08 16:39 - 000000000 ____D C:\Program Files\McAfee
2019-03-24 01:58 - 2019-04-07 19:17 - 000000000 ____D C:\Program Files (x86)\McAfee
2019-03-24 01:58 - 2019-03-24 01:58 - 000000000 ____D C:\Program Files\McAfee.com
2019-03-24 01:57 - 2019-03-24 01:59 - 000000000 ____D C:\Program Files\Common Files\McAfee
2019-03-24 01:57 - 2019-01-16 01:11 - 000509728 _____ (McAfee, LLC) C:\WINDOWS\system32\mfevtps.exe
2019-03-24 01:52 - 2019-03-24 02:02 - 000000043 _____ C:\Users\Hossam\AppData\Roaming\MCVi2UserDetail.ini
2019-03-24 01:43 - 2019-03-24 01:43 - 003921408 _____ C:\WINDOWS\system32\wksprtcli.dll
2019-03-24 01:42 - 2019-04-14 20:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roblox
2019-03-24 01:42 - 2019-03-24 01:42 - 000002492 _____ C:\Users\Administrator\Desktop\Мinecraft.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000002472 ___RS C:\Users\Hossam\Desktop\Мinecraft.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000002127 _____ C:\Users\Public\Desktop\Вattlе.nеt.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000001699 _____ C:\Users\Administrator\Desktop\Ерiс Gаmes Lаunсhеr.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000001679 ___RS C:\Users\Hossam\Desktop\Ерiс Gаmes Lаunсhеr.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000001578 _____ C:\Users\Administrator\Desktop\Оverwatсh.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000001558 ___RS C:\Users\Hossam\Desktop\Оverwatсh.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000001218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gооglе Chrome.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000001095 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\lightcleaner.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000001092 _____ C:\Users\Administrator\Desktop\Adult Dating.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000001084 _____ C:\Users\Administrator\Desktop\Win iPhone X.lnk
2019-03-24 01:42 - 2019-03-24 01:42 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\SPI
2019-03-24 01:42 - 2019-03-24 01:42 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Browsers
2019-03-24 01:42 - 2019-03-24 01:42 - 000000000 ____D C:\Program Files (x86)\lightcleaner
2019-03-23 22:10 - 2019-03-23 22:10 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign867b3a286cc5ba7c
2019-03-23 22:10 - 2019-03-23 22:10 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign652648dcce59cb46
2019-03-23 22:10 - 2019-03-23 22:10 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign579d7a898dddfed3
2019-03-23 22:08 - 2019-03-23 22:08 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsignba9094ae37c3272d
2019-03-23 22:08 - 2019-03-23 22:08 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsignba5988229ebcaee2
2019-03-23 22:08 - 2019-03-23 22:08 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsign8f8ecc394cf0ce16
2019-03-23 21:58 - 2019-03-23 21:58 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsignec13ba4060efb8f2
2019-03-23 21:58 - 2019-03-23 21:58 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsigncd166cb341e4fa4f
2019-03-23 21:58 - 2019-03-23 21:58 - 000000000 ____D C:\Users\Hossam\AppData\Local\Tempzxpsigna9d70fb6cc9cba36
 
==================== One month (modified) ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-04-19 19:52 - 2018-09-15 18:26 - 000713712 _____ C:\WINDOWS\system32\perfh01D.dat
2019-04-19 19:52 - 2018-09-15 18:26 - 000145586 _____ C:\WINDOWS\system32\perfc01D.dat
2019-04-19 19:52 - 2018-09-15 09:31 - 000000000 ____D C:\WINDOWS\INF
2019-04-19 19:47 - 2017-01-21 14:30 - 000001375 _____ C:\Users\Hossam\Desktop\Spotify.lnk
2019-04-19 19:47 - 2016-06-12 15:58 - 000000000 ___RD C:\Users\Hossam\OneDrive
2019-04-19 19:46 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-04-19 19:46 - 2015-09-15 01:17 - 000000000 ____D C:\ProgramData\NVIDIA
2019-04-19 18:02 - 2018-09-15 08:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-04-19 18:02 - 2016-06-22 04:25 - 000004520 _____ C:\Users\Hossam\AppData\Roaming\VoiceMeeterDefault.xml
2019-04-19 17:32 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-04-19 16:42 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-04-19 16:42 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-04-19 16:42 - 2017-02-06 21:58 - 000000000 ____D C:\Users\Hossam\AppData\Local\Adobe
2019-04-18 22:53 - 2016-06-22 10:22 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\OBS
2019-04-18 22:41 - 2019-02-27 17:28 - 000001390 _____ C:\Users\Public\Desktop\Skype.lnk
2019-04-18 22:41 - 2019-02-27 17:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2019-04-17 18:31 - 2018-09-07 19:05 - 000000000 ____D C:\Users\Hossam\AppData\Local\Ubisoft Game Launcher
2019-04-17 03:51 - 2016-08-05 06:43 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\discord
2019-04-15 19:02 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-04-15 03:59 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\appcompat
2019-04-15 03:05 - 2017-08-18 20:13 - 000000000 ____D C:\Users\Hossam\Desktop\Hossam
2019-04-14 22:06 - 2018-09-15 09:36 - 000835480 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2019-04-14 22:06 - 2018-09-15 09:36 - 000179608 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2019-04-14 22:06 - 2018-09-15 09:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-04-14 22:01 - 2016-06-12 15:54 - 000000000 ____D C:\Users\Hossam\AppData\Local\Packages
2019-04-14 20:28 - 2019-02-27 17:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Long Dark Redux
2019-04-14 20:28 - 2019-02-25 16:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry New Dawn
2019-04-14 20:28 - 2019-02-08 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2019-04-14 20:28 - 2018-12-19 06:23 - 000000000 ____D C:\WINDOWS\system32\%LOCALAPPDATA%
2019-04-14 20:28 - 2018-12-17 03:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Resident Evil 7 Biohazard
2019-04-14 20:28 - 2018-11-22 19:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PosteRazor
2019-04-14 20:28 - 2018-10-29 14:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2019-04-14 20:28 - 2018-09-15 18:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2019-04-14 20:28 - 2018-09-15 18:26 - 000000000 ____D C:\WINDOWS\system32\WCN
2019-04-14 20:28 - 2018-09-15 09:36 - 000000000 ____D C:\WINDOWS\Setup
2019-04-14 20:28 - 2018-09-15 09:33 - 000000000 __RHD C:\Users\Public\Libraries
2019-04-14 20:28 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\spool
2019-04-14 20:28 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-04-14 20:28 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Help
2019-04-14 20:28 - 2018-09-15 09:33 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-04-14 20:28 - 2018-09-15 09:31 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-04-14 20:28 - 2018-08-19 00:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry 5
2019-04-14 20:28 - 2018-08-19 00:22 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2019-04-14 20:28 - 2018-08-19 00:22 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2019-04-14 20:28 - 2018-08-19 00:22 - 000000000 ____D C:\WINDOWS\system32\es-cl
2019-04-14 20:28 - 2018-08-19 00:22 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2019-04-14 20:28 - 2018-06-30 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hello Neighbor
2019-04-14 20:28 - 2018-06-08 23:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch
2019-04-14 20:28 - 2018-06-08 21:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2019-04-14 20:28 - 2018-04-08 02:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\File Viewer Lite
2019-04-14 20:28 - 2017-04-07 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\extensions
2019-04-14 20:28 - 2017-03-24 20:30 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-04-14 20:28 - 2017-02-19 23:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-04-14 20:28 - 2017-02-01 22:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft
2019-04-14 20:28 - 2017-01-03 00:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2019-04-14 20:28 - 2016-12-11 03:35 - 000000000 ____D C:\WINDOWS\system32\log
2019-04-14 20:28 - 2016-11-28 00:44 - 000000000 ____D C:\WINDOWS\SysWOW64\xlive
2019-04-14 20:28 - 2016-11-06 00:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2019-04-14 20:28 - 2016-11-05 14:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic Bullet PhotoLooks
2019-04-14 20:28 - 2016-11-05 13:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Giant
2019-04-14 20:28 - 2016-10-31 19:19 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3
2019-04-14 20:28 - 2016-10-23 22:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic Bullet Looks
2019-04-14 20:28 - 2016-07-26 02:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot
2019-04-14 20:28 - 2016-07-15 17:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2019-04-14 20:28 - 2016-07-04 08:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remote Mouse
2019-04-14 20:28 - 2016-06-29 04:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReelSmart Motion Blur 4, After Effects-compatible plugin set
2019-04-14 20:28 - 2016-06-17 19:53 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2019-04-14 20:28 - 2016-06-17 01:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-04-14 20:28 - 2015-09-15 01:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2019-04-14 20:28 - 2015-09-15 01:19 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2019-04-14 20:28 - 2015-09-15 01:18 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2019-04-14 20:28 - 2015-09-15 01:17 - 000000000 ____D C:\Program Files (x86)\Realtek
2019-04-14 20:28 - 2014-11-21 18:34 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Embedded Lockdown Manager
2019-04-14 20:28 - 2013-08-22 17:36 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2019-04-14 20:28 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-04-14 20:24 - 2019-02-25 21:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-04-14 20:24 - 2018-09-15 18:27 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2019-04-14 20:24 - 2018-09-15 18:27 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2019-04-14 20:24 - 2018-09-15 18:26 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2019-04-14 20:24 - 2018-09-15 18:26 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2019-04-14 20:24 - 2018-09-15 18:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2019-04-14 20:24 - 2018-09-15 18:26 - 000000000 ____D C:\WINDOWS\system32\winrm
2019-04-14 20:24 - 2018-09-15 18:26 - 000000000 ____D C:\WINDOWS\system32\slmgr
2019-04-14 20:24 - 2018-09-15 18:26 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2019-04-14 20:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2019-04-14 20:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2019-04-14 20:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2019-04-14 20:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2019-04-14 20:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-04-14 20:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2019-04-14 20:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2019-04-14 20:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\InputMethod
2019-04-14 20:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\et-EE
2019-04-14 20:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\InputMethod
2019-04-14 20:24 - 2018-08-02 01:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mr DJ
2019-04-14 20:24 - 2016-06-22 04:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VB Audio
2019-04-14 20:24 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2019-04-14 20:24 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2019-04-14 20:22 - 2018-09-15 09:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-04-14 20:22 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-04-14 20:22 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-04-14 20:22 - 2018-09-15 08:09 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-04-14 20:19 - 2019-03-12 08:34 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2019-04-14 20:19 - 2018-09-15 09:41 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2019-04-14 20:19 - 2018-09-15 09:41 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2019-04-14 20:19 - 2018-09-15 09:41 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2019-04-14 20:19 - 2018-09-15 09:41 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2019-04-14 20:19 - 2018-09-15 09:41 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2019-04-14 20:19 - 2018-09-15 09:41 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2019-04-14 20:19 - 2018-09-15 09:41 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2019-04-14 20:19 - 2018-09-15 09:41 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2019-04-14 20:19 - 2018-09-15 09:41 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2019-04-14 20:19 - 2018-09-15 09:41 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2019-04-14 20:19 - 2018-09-15 09:41 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2019-04-14 20:19 - 2018-09-15 09:37 - 000472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2019-04-14 20:19 - 2018-09-15 09:37 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2019-04-14 20:19 - 2018-09-15 09:37 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2019-04-14 20:19 - 2018-09-15 09:37 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2019-04-14 20:19 - 2018-09-15 09:37 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2019-04-14 20:19 - 2018-09-15 09:37 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2019-04-14 20:19 - 2018-09-15 09:37 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2019-04-14 20:19 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2019-04-14 20:19 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2019-04-14 20:19 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\MUI
2019-04-14 20:19 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\es-MX
2019-04-14 20:18 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\ServiceState
2019-04-14 20:14 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-04-14 20:04 - 2018-02-09 03:12 - 000000000 ____D C:\Users\Hossam\Desktop\Min Dator
2019-04-14 20:01 - 2016-06-13 00:52 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-04-14 19:45 - 2018-10-29 02:33 - 000000000 ____D C:\temp
2019-04-14 19:45 - 2018-09-09 01:22 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2019-04-14 19:36 - 2018-09-15 09:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-04-14 19:36 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Registration
2019-04-14 19:36 - 2018-09-15 09:33 - 000000000 ____D C:\Program Files\windows nt
2019-04-14 19:36 - 2018-09-15 08:09 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-04-14 19:33 - 2019-02-25 21:53 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-04-14 19:33 - 2018-08-31 22:07 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2019-04-14 19:33 - 2016-06-22 10:21 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software
2019-04-14 19:33 - 2016-06-17 01:45 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-04-14 19:32 - 2018-11-20 19:07 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VectorCraft Games
2019-04-14 19:32 - 2018-10-29 23:28 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultrabox
2019-04-14 19:32 - 2018-07-30 19:48 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2019-04-14 19:32 - 2016-08-05 06:43 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2019-04-14 19:32 - 2016-06-22 04:20 - 000000000 ____D C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VB Audio
2019-04-14 19:32 - 2014-04-03 20:18 - 000000000 ____D C:\Users\Administrator\AppData\Local\Packages
2019-04-14 19:31 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\USOPrivate
2019-04-14 19:30 - 2018-09-15 09:33 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-04-14 19:30 - 2018-09-15 09:33 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-04-14 18:25 - 2016-07-26 02:12 - 000000410 _____ C:\WINDOWS\Tasks\update-S-1-5-21-561342403-3159581679-3982711157-1001.job
2019-04-14 15:35 - 2018-08-08 00:55 - 000000000 ____D C:\Program Files\Microsoft Office
2019-04-14 15:22 - 2019-02-07 03:39 - 000002147 _____ C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk
2019-04-14 15:21 - 2016-07-26 02:12 - 000000410 _____ C:\WINDOWS\Tasks\update-sys.job
2019-04-14 04:50 - 2016-07-05 19:50 - 000000000 ____D C:\Users\Hossam\Desktop\Bilder
2019-04-14 03:19 - 2016-06-17 01:13 - 000000000 __SHD C:\Users\Hossam\AppData\Local\EmieUserList
2019-04-14 03:19 - 2016-06-17 01:13 - 000000000 __SHD C:\Users\Hossam\AppData\Local\EmieSiteList
2019-04-14 03:19 - 2016-06-12 16:02 - 000000000 __SHD C:\Users\Hossam\AppData\LocalLow\EmieUserList
2019-04-14 03:19 - 2016-06-12 16:02 - 000000000 __SHD C:\Users\Hossam\AppData\LocalLow\EmieSiteList
2019-04-14 01:57 - 2018-10-29 22:02 - 000000000 ____D C:\Users\Hossam\Downloads\Youtube
2019-04-13 21:02 - 2013-08-22 15:36 - 000000000 ____D C:\Users\Default.migrated
2019-04-13 02:49 - 2017-03-16 16:42 - 000000000 ____D C:\Users\Hossa_000
2019-04-12 23:54 - 2016-11-05 14:02 - 000000000 ____D C:\Users\Hossam\AppData\Local\ElevatedDiagnostics
2019-04-12 15:50 - 2016-10-29 20:05 - 000000000 ____D C:\Users\Hossam\AppData\Local\CrashDumps
2019-04-07 19:17 - 2015-09-15 01:23 - 000000000 ____D C:\ProgramData\McAfee
2019-03-30 23:56 - 2018-08-08 01:07 - 000002367 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2019-03-30 23:56 - 2018-08-08 01:07 - 000002344 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2019-03-30 23:56 - 2018-08-08 01:07 - 000002342 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2019-03-30 23:56 - 2018-08-08 01:07 - 000002339 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2019-03-30 23:56 - 2018-08-08 01:07 - 000002321 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2019-03-30 23:56 - 2018-08-08 01:07 - 000002317 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2019-03-30 23:56 - 2018-08-08 01:07 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2019-03-30 23:53 - 2018-08-08 01:08 - 000002312 _____ C:\Users\Hossam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive för företag.lnk
2019-03-27 15:16 - 2015-09-15 01:19 - 001856382 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2019-03-26 02:01 - 2015-09-15 01:19 - 000000000 ____D C:\ProgramData\Package Cache
2019-03-25 15:47 - 2019-02-25 01:40 - 000000000 ____D C:\Users\Hossam\AppData\LocalLow\The Irregular Corp
2019-03-24 23:23 - 2018-02-04 05:57 - 000000000 ____D C:\Program Files (x86)\Google
2019-03-24 02:37 - 2018-08-27 15:41 - 000000000 __SHD C:\Users\Hossam\AppData\Local\_restore{E415C293-1C11-4005-B5E5-91EC1A0BAE7D}
2019-03-24 02:37 - 2018-08-26 02:11 - 000000000 __SHD C:\Users\Hossam\AppData\Local\UserData.db
2019-03-24 02:37 - 2018-08-01 14:41 - 000000000 ___HD C:\Users\Hossam\AppData\Local\{9A5F1821-1526-1C50-A634-7F84341A2214}
2019-03-24 02:37 - 2018-07-23 23:11 - 000000000 ___HD C:\Users\Hossam\AppData\Local\web server extensions
2019-03-24 02:37 - 2018-07-09 21:41 - 000000000 ___HD C:\Users\Hossam\AppData\Local\Windows Workflow Foundation
2019-03-24 02:36 - 2018-09-14 23:41 - 000000000 __SHD C:\Users\Hossam\AppData\Local\PortableApps.com
2019-03-24 02:36 - 2018-09-11 20:41 - 000000000 __SHD C:\Users\Hossam\AppData\Local\NET.Remote Assistance
2019-03-24 02:36 - 2018-07-25 22:41 - 000000000 ___HD C:\Users\Hossam\AppData\Local\Remote NET.Assistance
2019-03-24 02:36 - 2018-07-21 18:41 - 000000000 ___HD C:\Users\Hossam\AppData\Local\NET.Framework SDK
2019-03-24 02:36 - 2018-07-16 23:41 - 000000000 ___HD C:\Users\Hossam\AppData\Local\Peer.Net
2019-03-24 02:35 - 2018-05-18 22:11 - 000000000 ___HD C:\Users\Hossam\AppData\Local\MSN Gaming Zone
2019-03-24 02:34 - 2018-08-31 17:11 - 000000000 __SHD C:\Users\Hossam\AppData\Local\Media Network Sharing
2019-03-24 02:34 - 2018-07-16 01:11 - 000000000 ___HD C:\Users\Hossam\AppData\Local\Local Extension Settings
2019-03-24 02:34 - 2018-06-04 01:41 - 000000000 ___HD C:\Users\Hossam\AppData\Local\helpctr
2019-03-24 02:34 - 2018-05-01 18:25 - 000000000 ___HD C:\Users\Hossam\AppData\Local\InstallShield
2019-03-24 02:31 - 2018-08-04 00:11 - 000000000 ___HD C:\Users\Hossam\AppData\Local\FoxitReaderPortable
2019-03-24 02:30 - 2018-06-18 00:41 - 000000000 ___HD C:\Users\Hossam\AppData\Local\CamStudio 2.8.0
2019-03-24 02:30 - 2018-06-04 21:41 - 000000000 ___HD C:\Users\Hossam\AppData\Local\CamStudio 2.7
2019-03-24 02:00 - 2013-08-22 15:25 - 000000124 _____ C:\WINDOWS\win.ini
2019-03-24 01:58 - 2016-10-25 00:06 - 000000000 ____D C:\Program Files\Common Files\AV
2019-03-24 01:48 - 2016-06-18 02:45 - 000000000 ____D C:\ProgramData\boost_interprocess
2019-03-23 22:10 - 2018-04-08 02:37 - 000000000 ____D C:\Users\Hossam\AppData\Local\File Viewer
 
==================== Files in the root of some directories =======
 
2018-02-04 05:11 - 2016-05-05 18:37 - 000059904 _____ (Microsoft Corporation) C:\Program Files (x86)\ynYyYSO.exe
2017-04-12 21:35 - 2017-04-12 21:35 - 143054765 _____ () C:\Program Files\Common Files\Adobe.rar
2018-02-04 05:11 - 2016-05-05 18:37 - 000059904 _____ (Microsoft Corporation) C:\Program Files (x86)\Common Files\WYUoEqIpB.exe
2016-06-21 04:53 - 2016-06-24 23:26 - 000000132 _____ () C:\Users\Hossam\AppData\Roaming\Adobe PNG Format CS6 Prefs
2016-10-05 23:21 - 2018-01-31 19:48 - 000000033 _____ () C:\Users\Hossam\AppData\Roaming\AdobeWLCMCache.dat
2019-03-24 01:52 - 2019-03-24 02:02 - 000000043 _____ () C:\Users\Hossam\AppData\Roaming\MCVi2UserDetail.ini
2016-06-22 04:25 - 2019-04-19 18:02 - 000004520 _____ () C:\Users\Hossam\AppData\Roaming\VoiceMeeterDefault.xml
2019-04-16 01:08 - 2019-04-16 01:08 - 000000037 _____ () C:\Users\Hossam\AppData\Roaming\WB.CFG
2017-02-06 22:10 - 2019-04-14 19:09 - 002785478 _____ () C:\Users\Hossam\AppData\Local\BTServer.log
2018-11-07 16:11 - 2018-11-14 00:41 - 006161408 _____ () C:\Users\Hossam\AppData\Local\dump007.dat
2018-09-28 17:48 - 2018-09-28 17:48 - 000000000 _____ () C:\Users\Hossam\AppData\Local\oobelibMkey.log
2017-04-12 16:31 - 2017-04-12 16:41 - 000007625 _____ () C:\Users\Hossam\AppData\Local\Resmon.ResmonCfg
2017-02-06 23:25 - 2017-02-06 23:25 - 000000003 _____ () C:\Users\Hossam\AppData\Local\updater.log
2018-02-04 05:11 - 2018-02-04 05:11 - 000000003 _____ () C:\Users\Hossam\AppData\Local\wbem.ini
 
Some files in TEMP:
====================
2019-04-19 19:47 - 2019-04-14 20:32 - 000781032 _____ (Spotify Ltd) C:\Users\Hossam\AppData\Local\Temp\SpotifyMigrator.exe
 
Some zero byte size files/folders:
==========================
C:\Windows\SysWOW64\Drivers\89a7e005f9f9712bfbd8e64b60f54381.sys
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\dllhost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\dllhost.exe => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
==================== End of FRST.txt ============================

  • 0

#4
iMacg3

iMacg3

    Malware Removal

  • Malware Removal
  • 346 posts
Hi,

Please post the contents of the Addition.txt log created by FRST.
It will be in the same directory as FRST64.EXE.
  • 0






Similar Topics


Also tagged with one or more of these keywords: startupchecklibrary.dll, missing, help, dll, dll missing, missing dll file, file missing, missing dll

5 user(s) are reading this topic

1 members, 4 guests, 0 anonymous users


    iMacg3

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP