Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-09-2019
Ran by jimak (administrator) on DESKTOP-QU6GUT2 (HP 750-170se) (13-09-2019 15:52:33)
Running from C:\Users\James\Downloads\FRST-OlderVersion
Loaded Profiles: jimak & James & sugar & (Available Profiles: jimak & Kelly & nanke & James & sugar)
Platform: Windows 10 Home Version 1903 18362.356 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(CyberLink Corp. -> ) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Dropbox, Inc -> ) C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\77.0.3865.32\remoting_host.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\77.0.3865.32\remoting_host.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google) C:\Users\James\AppData\Local\Google\Chrome\User Data\SwReporter\44.215.200.3\software_reporter_tool.exe
(Google LLC -> Google) C:\Users\James\AppData\Local\Google\Chrome\User Data\SwReporter\44.215.200.3\software_reporter_tool.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel® Security Assist\isaHelperService.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Intel® RMT -> Intel Corporation) C:\Program Files\Intel\Intel® Ready Mode Technology\IRMTService.exe
(Intel® Trusted Connect Service -> Intel® Corporation) C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\James\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\sugar\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\sugar\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19051.16210.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11901.20184.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11901.20184.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19071.901.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19071.901.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\reg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\reg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\reg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\reg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\reg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\reg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\reg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\reg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\reg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WpcMon.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1907.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1907.4-0\NisSrv.exe
(NVIDIA Corporation -> ) C:\Users\James\AppData\Local\NVIDIA\NvBackend\DAO\27264475\0.dat
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files\Java\jre1.8.0_221\bin\javaw.exe
(PDF Complete Inc. -> PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Realtek Semiconductor Corp -> ) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTServer.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe
(SEIKO EPSON Corporation -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATINXE.EXE
(Skype Technologies SA -> Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.51.72.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.51.72.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Sonic Solutions -> Roxio) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
(SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe
(Symantec Corporation -> Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9226720 2017-05-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [321112 2019-06-28] (Intel® Rapid Storage Technology -> Intel Corporation)
HKLM-x32\...\Run: [Microsoft Default Manager] => C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe [439568 2010-05-10] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1087184 2016-01-20] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154539578\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154548232\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154539875\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154548717\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1678832 2019-08-23] (Google LLC -> Google LLC)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540094\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540094\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1678832 2019-08-23] (Google LLC -> Google LLC)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549008\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549008\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1678832 2019-08-23] (Google LLC -> Google LLC)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937\...\Run: [Google Update] => C:\Users\Kelly\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2012-02-01] (Google Inc -> Google Inc.)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883\...\Run: [Google Update] => C:\Users\Kelly\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2012-02-01] (Google Inc -> Google Inc.)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1008-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154541406\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1008-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154541406\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1678832 2019-08-23] (Google LLC -> Google LLC)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1008-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154553401\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1008-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154553401\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1678832 2019-08-23] (Google LLC -> Google LLC)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [35926416 2019-08-28] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\...\Run: [Javaw-shaded] => C:\Users\James\Documents\Oracle\docs\javaw-shaded.jar [ ]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\...\Run: [Locale] => C:\ProgramData\Oracle\Java\lib\locale.jar [2078972 2019-09-06] () [File not signed]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\...\Run: [Charset] => C:\Users\James\AppData\Roaming\java\lib\charset.jar [2078972 2019-09-06] () [File not signed] <==== ATTENTION
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\...\Run: [Lwjgl] => C:\Users\James\3D Objects\Java\3D\lwjgl.jar [2078972 2019-09-06] () [File not signed]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\...\Run: [LocaleRuntime] => C:\ProgramData\Oracle\Java\lib\locale.jar [2078972 2019-09-06] () [File not signed]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [35926416 2019-08-28] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156\...\Run: [Javaw-shaded] => C:\Users\James\Documents\Oracle\docs\javaw-shaded.jar [ ]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156\...\Run: [Locale] => C:\ProgramData\Oracle\Java\lib\locale.jar [2078972 2019-09-06] () [File not signed]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156\...\Run: [Charset] => C:\Users\James\AppData\Roaming\java\lib\charset.jar [2078972 2019-09-06] () [File not signed] <==== ATTENTION
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156\...\Run: [Lwjgl] => C:\Users\James\3D Objects\Java\3D\lwjgl.jar [2078972 2019-09-06] () [File not signed]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156\...\Run: [LocaleRuntime] => C:\ProgramData\Oracle\Java\lib\locale.jar [2078972 2019-09-06] () [File not signed]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156\...\RunOnce: [Application Restart #0] => C:\Windows\System32\WpcMon.exe [1259424 2019-09-10] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1678832 2019-08-23] (Google LLC -> Google LLC)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [35926416 2019-08-28] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291\...\Run: [Javaw-shaded] => C:\Users\James\Documents\Oracle\docs\javaw-shaded.jar [ ]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291\...\Run: [Locale] => C:\ProgramData\Oracle\Java\lib\locale.jar [2078972 2019-09-06] () [File not signed]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291\...\Run: [Charset] => C:\Users\James\AppData\Roaming\java\lib\charset.jar [2078972 2019-09-06] () [File not signed] <==== ATTENTION
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291\...\Run: [Lwjgl] => C:\Users\James\3D Objects\Java\3D\lwjgl.jar [2078972 2019-09-06] () [File not signed]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291\...\Run: [LocaleRuntime] => C:\ProgramData\Oracle\Java\lib\locale.jar [2078972 2019-09-06] () [File not signed]
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291\...\RunOnce: [Application Restart #0] => C:\Windows\System32\WpcMon.exe [1259424 2019-09-10] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1678832 2019-08-23] (Google LLC -> Google LLC)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1010\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154544561\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154601993\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM\...\Drivers32-x32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll
HKLM\...\Drivers32-x32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.132\Installer\chrmstp.exe [2019-09-03] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2017-10-26]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2015-12-28]
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2019-07-20]
ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {002CA495-2520-4FCD-B31C-2B9B3D11C4CE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [1990856 2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {0B3C0772-2AED-4742-97D4-496E2B4A562E} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\James\Downloads\esetonlinescanner_enu.exe [8149816 2019-09-04] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {12979D43-AB8A-4E6F-8DCB-0E8035F3EFF3} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133552 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {12DD3A0A-D946-4361-87EB-2605711D9190} - System32\Tasks\HPCeeScheduleForjimak => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [96568 2015-06-16] (Hewlett-Packard Company -> Hewlett-Packard)
Task: {19B6B828-4AFA-4846-8097-B4EF80EB2943} - System32\Tasks\HP Photo Creations Communicator => C:\Users\jimak\AppData\Roaming\HP Photo Creations\Communicator.exe [186368 2015-12-27] (Visan Industries -> )
Task: {1D630010-6CFB-4EC1-9F0A-E3F981433A9B} - System32\Tasks\Norton 360\Norton Security Suite Error Analyzer => C:\Program Files (x86)\Norton Security Suite\Engine\22.9.0.71\SymErr.exe
Task: {231EE854-B890-48BB-91CC-5CD043040DE8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913904 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2A98AE16-875F-4A11-AFCC-44511E806421} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [120680 2017-06-22] (HP Inc. -> HP Inc.)
Task: {2F7BFCAB-3D5E-42C8-86A7-9366DA5631B2} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133552 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3174EA0D-3F0F-4021-8259-7D64F413AB15} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39920 2018-10-24] (Garmin International, Inc. -> )
Task: {376895CB-9C65-43E1-8C35-3B76741C4567} - System32\Tasks\EPSON ET-2550 Series Update {ED47F9D0-EE59-4F19-B5E4-C4D7A10CB1D7} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNXE.EXE [690536 2013-11-21] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Task: {3B68628D-8DCF-4579-BAD3-FEA2AA3C272A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133552 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {579F0761-DBE1-4023-A075-7F70756D19EA} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5B89733C-E402-45D1-B6DC-86FB3D4E35C1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MpCmdRun.exe [469960 2019-07-25] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6F1B877E-0993-43ED-BB65-64F426E21111} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1094008 2019-08-21] (HP Inc. -> HP Inc.)
Task: {73CFE9F6-51F2-4470-B161-940CDC91876F} - System32\Tasks\Norton 360\Norton Security Suite Error Processor => C:\Program Files (x86)\Norton Security Suite\Engine\22.9.0.71\SymErr.exe
Task: {7B21E2D5-5978-4B87-90FA-BE05107129A1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-02-06] (Google Inc -> Google Inc.)
Task: {7C05153D-3E0F-4A01-9E2F-FDC04DEAF008} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2016-11-07] (HP Inc. -> HP Inc.)
Task: {7C59CB6A-532B-4E98-8451-421D87EBEB5E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [651400 2017-09-20] (Hewlett Packard -> HP Inc.)
Task: {7CB1A712-F633-4826-A5D9-686EE32A1CDF} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [511344 2015-06-19] (Dropbox, Inc -> )
Task: {84C394B3-4C4D-45F6-8257-D7A0FDBED658} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [654136 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8E0C4B2B-C98E-4876-BCAF-1A32B74CC5F3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MpCmdRun.exe [469960 2019-07-25] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8EDC6E60-5F09-4CF2-8034-596B3C236C2B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1094008 2019-08-21] (HP Inc. -> HP Inc.)
Task: {901657A0-5C68-4738-9BB0-300A9E6D2D2B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1459056 2018-05-04] (HP Inc. -> HP Inc.)
Task: {9301AA02-229C-460F-8B8D-C3877B9A08D7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [212856 2018-08-21] (HP Inc. -> HP Inc.)
Task: {A4C1D33B-D124-4F1D-AC1D-80A6BC7633BA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MpCmdRun.exe [469960 2019-07-25] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A7FADF86-1BCF-420B-95D7-BBD344EC1066} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302384 2019-08-14] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AA5E968C-A28B-4449-93F4-FB90E7184B5E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [1990856 2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {AB2DE88F-3397-4657-B632-4FB401C51349} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\James\Downloads\esetonlinescanner_enu.exe [8149816 2019-09-04] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {ABC7CCEF-17E7-447F-B053-BD635247F5B0} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B9E22E17-0091-4B59-AB99-5C0EFE850895} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. -> Adobe Systems)
Task: {C114C5BD-62A9-4352-B8E2-2A960CC6F347} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [909112 2016-07-26] (Intel® Trusted Connect Service -> Intel® Corporation)
Task: {CEBA3F1D-1F89-4933-8277-2C908C9AB8E1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MpCmdRun.exe [469960 2019-07-25] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D1FFA991-1844-4F67-91E0-7A50CE01DB25} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [651400 2017-09-20] (Hewlett Packard -> HP Inc.)
Task: {E11F4EBB-1FB7-4A0E-A01E-7E4E7A129AF3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-02-06] (Google Inc -> Google Inc.)
Task: {E1B4B5C9-93B2-4513-B502-DAF524DEAFA0} - System32\Tasks\Norton 360\Norton Security Suite Autofix => C:\Program Files (x86)\Norton Security Suite\Engine\22.9.0.71\SymErr.exe
Task: {E780BE8A-2832-4BA0-B867-CFF7B8FC012C} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133552 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EC6933DA-5CB2-4EB4-998D-1A219CF34BB6} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913904 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F1DDC401-AA7C-4F83-A7F5-9788E9DC9721} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1459056 2018-05-04] (HP Inc. -> HP Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\EPSON ET-2550 Series Update {ED47F9D0-EE59-4F19-B5E4-C4D7A10CB1D7}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNXE.EXE:/EXE:{ED47F9D0-EE59-4F19-B5E4-C4D7A10CB1D7} /F:UpdateWORKGROUP\DESKTOP-QU6GUT2$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\HP Photo Creations Communicator.job => C:\Users\jimak\AppData\Roaming\HP Photo Creations\Communicator.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForjimak.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{366b18d4-d755-444c-8999-9b675ae2fc89}: [DhcpNameServer] 75.75.75.75 75.75.76.76
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131790833698413202&GUID=CCF004ED-A7EC-4A91-A0C2-1A7D42D4E2BD
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131790833713422072&GUID=CCF004ED-A7EC-4A91-A0C2-1A7D42D4E2BD
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=620947&OCID=AVRES000&pc=UE00
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540094\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=620947&OCID=AVRES000&pc=UE00
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540094\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549008\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=620947&OCID=AVRES000&pc=UE00
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549008\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130851043804093471&GUID=0B9E462D-5342-1184-1131-CA487689EF0A
HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/CQDSK/1
HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130851043804093471&GUID=0B9E462D-5342-1184-1131-CA487689EF0A
HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/CQDSK/1
HKU\S-1-5-21-1736177130-1667789116-2251809797-1008-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154541406\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131790833701916890&GUID=CCF004ED-A7EC-4A91-A0C2-1A7D42D4E2BD
HKU\S-1-5-21-1736177130-1667789116-2251809797-1008-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154553401\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131790833701916890&GUID=CCF004ED-A7EC-4A91-A0C2-1A7D42D4E2BD
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CPDTDF
SearchScopes: HKLM -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/711-111092-2357-0/4?satitle={searchTerms}&mfe=Desktops
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CPDTDF
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/711-111092-2357-0/4?satitle={searchTerms}&mfe=Desktops
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1001 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540094 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549008 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937 -> {8B4B4C54-1D83-4193-AF89-61DF217AF50A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CPDTDF
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/711-111092-2357-0/4?satitle={searchTerms}&mfe=Desktops
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883 -> {8B4B4C54-1D83-4193-AF89-61DF217AF50A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CPDTDF
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/711-111092-2357-0/4?satitle={searchTerms}&mfe=Desktops
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1009 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154544561 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154544561 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154544561 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154544561 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154601993 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154601993 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154601993 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154601993 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2012-12-13] (Skype Technologies SA -> Skype Technologies S.A.)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security Suite\Engine32\22.9.0.71\coIEPlg.dll => No File
BHO-x32: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-07-27] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2015-04-30] (EVERNOTE CORPORATION -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-12-13] (Skype Technologies SA -> Skype Technologies S.A.)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21] (Hewlett-Packard Company -> HP Inc.)
Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Toolbar: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: HKLM-x32 {BEA7310D-06C4-4339-A784-DC3804819809} hxxp://images3.pnimedia.com/ProductAssets/costcous/activex/v3_0_0_7/PhotoCenter_ActiveX_Control.cab
Handler-x32: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files (x86)\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL [2001-01-22] (Microsoft Corporation) [File not signed]
Handler-x32: http - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: http - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: https - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: https - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: msdaipp - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: msdaipp - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2012-12-13] (Skype Technologies SA -> Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-12-13] (Skype Technologies SA -> Skype Technologies S.A.)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon
FF Extension: (Norton Security Toolbar) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon [2017-03-31] [Legacy]
FF HKLM-x32\...\Firefox\Extensions: [
[email protected]] - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\Firefox
FF Extension: (Bing Bar) - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\Firefox [2015-12-27] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{27182e60-b5f3-411c-b545-b44205977502}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension
FF Extension: (Search Helper Extension) - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension [2015-12-27] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension
FF Extension: (Default Manager) - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension [2015-12-27] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon
FF HKLM-x32\...\Firefox\Extensions: [
[email protected]] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on
FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2018-10-10] [Legacy] [not signed]
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpWinExt,version=5.0 -> C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll [2010-08-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-09-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-07-31] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1001: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\jimak\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (Visan Industries -> RocketLife, LLP)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\jimak\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2018-08-18] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540094: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\jimak\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (Visan Industries -> RocketLife, LLP)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540094: @zoom.us/ZoomVideoPlugin -> C:\Users\jimak\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2018-08-18] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549008: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\jimak\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (Visan Industries -> RocketLife, LLP)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549008: @zoom.us/ZoomVideoPlugin -> C:\Users\jimak\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2018-08-18] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\Kelly\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (Visan Industries -> RocketLife, LLP)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937: @talk.google.com/GoogleTalkPlugin -> C:\Users\Kelly\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2014-06-06] (Google Inc -> Google)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937: @talk.google.com/O1DPlugin -> C:\Users\Kelly\AppData\Roaming\Mozilla\plugins\npo1d.dll [2014-06-06] (Google Inc -> Google)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937: @tools.google.com/Google Update;version=3 -> C:\Users\Kelly\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll [2014-06-18] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937: @tools.google.com/Google Update;version=9 -> C:\Users\Kelly\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll [2014-06-18] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540937: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Kelly\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\Kelly\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (Visan Industries -> RocketLife, LLP)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883: @talk.google.com/GoogleTalkPlugin -> C:\Users\Kelly\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2014-06-06] (Google Inc -> Google)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883: @talk.google.com/O1DPlugin -> C:\Users\Kelly\AppData\Roaming\Mozilla\plugins\npo1d.dll [2014-06-06] (Google Inc -> Google)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883: @tools.google.com/Google Update;version=3 -> C:\Users\Kelly\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll [2014-06-18] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883: @tools.google.com/Google Update;version=9 -> C:\Users\Kelly\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll [2014-06-18] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549883: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Kelly\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1009: @nsroblox.roblox.com/launcher -> C:\Users\James\AppData\Local\Roblox\Versions\version-aee78a51139946c2\\NPRobloxProxy.dll [2013-01-01] (ROBLOX Corporation -> ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1009: @nsroblox.roblox.com/launcher64 -> C:\Users\James\AppData\Local\Roblox\Versions\version-aee78a51139946c2\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation) [File not signed]
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156: @nsroblox.roblox.com/launcher -> C:\Users\James\AppData\Local\Roblox\Versions\version-aee78a51139946c2\\NPRobloxProxy.dll [2013-01-01] (ROBLOX Corporation -> ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154542156: @nsroblox.roblox.com/launcher64 -> C:\Users\James\AppData\Local\Roblox\Versions\version-aee78a51139946c2\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation) [File not signed]
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291: @nsroblox.roblox.com/launcher -> C:\Users\James\AppData\Local\Roblox\Versions\version-aee78a51139946c2\\NPRobloxProxy.dll [2013-01-01] (ROBLOX Corporation -> ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154557291: @nsroblox.roblox.com/launcher64 -> C:\Users\James\AppData\Local\Roblox\Versions\version-aee78a51139946c2\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation) [File not signed]
Chrome:
=======
CHR HomePage: Default -> hxxp://xfinity.comcast.net/?cid=insDate12272012
CHR StartupUrls: Default -> "hxxp://alexa.amazon.com/spa/index.html#cards","hxxp://google.com/","hxxp://www.google.com"
CHR Profile: C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default [2019-09-13]
CHR Extension: (Slides) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-15]
CHR Extension: (Docs) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-15]
CHR Extension: (Google Drive) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-27]
CHR Extension: (YouTube) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-27]
CHR Extension: (Honey) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2019-09-11]
CHR Extension: (Google Search) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-27]
CHR Extension: (Adobe Acrobat) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-08-21]
CHR Extension: (Google Play Music) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2019-04-05]
CHR Extension: (Sheets) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-15]
CHR Extension: (Search Selector Beta) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\gboaiodgdajeapekadgejlbmabjganof [2019-09-11]
CHR Extension: (Google Docs Offline) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-04]
CHR Extension: (Crackle) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic [2019-04-05]
CHR Extension: (Norton Identity Safe) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2015-12-27]
CHR Extension: (HP Network Check Launcher) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkfpchpiljkaemlpmpebnglgkomamfeo [2018-09-07]
CHR Extension: (Skype) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-12-09]
CHR Extension: (Norton Safe) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmgcfemagnogdodbambjhdcmfcpicngl [2019-04-05]
CHR Extension: (Chrome Web Store Payments) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-10]
CHR Extension: (Gmail) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-25]
CHR Extension: (Chrome Media Router) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-08-08]
CHR HKLM\...\Chrome\Extension: [gboaiodgdajeapekadgejlbmabjganof] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1736177130-1667789116-2251809797-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [gboaiodgdajeapekadgejlbmabjganof] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154540094\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [gboaiodgdajeapekadgejlbmabjganof] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1736177130-1667789116-2251809797-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-09132019154549008\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [gboaiodgdajeapekadgejlbmabjganof] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gboaiodgdajeapekadgejlbmabjganof] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-12-13]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-03-27] (BattlEye Innovations e.K. -> )
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [127192 2015-11-19] (Realtek Semiconductor Corp -> )
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\77.0.3865.32\remoting_host.exe [73200 2019-08-12] (Google LLC -> Google Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2981056 2016-08-11] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [780928 2018-05-08] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [677376 2016-08-02] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [144560 2012-05-17] (SEIKO EPSON Corporation -> Seiko Epson Corporation)
S2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [137344 2009-11-18] (Hewlett Packard -> Hewlett-Packard Co.) [File not signed]
U2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 HPSupportSolutionsFrameworkService; c:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [333688 2018-06-13] (HP Inc. -> HP Inc.)
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [987432 2016-07-26] (Intel® Trusted Connect Service -> Intel® Corporation)
S3 Intel® Security Assist; C:\Program Files (x86)\Intel\Intel® Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
R2 IRMTService; C:\Program Files\Intel\Intel® Ready Mode Technology\IRMTService.exe [181360 2016-06-21] (Intel® RMT -> Intel Corporation)
R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel® Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [177440 2016-09-14] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
S2 N360; C:\Program Files (x86)\Norton Security Suite\Engine\22.9.1.12\N360.exe [326152 2017-03-16] (Symantec Corporation -> Symantec Corporation)
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation -> Symantec Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-05] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-05] (NVIDIA Corporation -> NVIDIA Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1793088 2017-11-08] (PDF Complete Inc. -> PDF Complete Inc)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -> )
R2 RoxioNow Service; C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe [399344 2010-09-11] (Sonic Solutions -> Roxio)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324576 2017-05-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [726600 2019-06-25] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\NisSrv.exe [2552416 2019-07-25] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MsMpEng.exe [108832 2019-07-25] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
S2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 BHDrvx64; C:\Program Files (x86)\Norton Security Suite\NortonData\22.5.2.15\Definitions\BASHDefs\20170322.001\BHDrvx64.sys [1831064 2017-03-03] (Symantec Corporation -> Symantec Corporation)
R1 ccSet_N360; C:\WINDOWS\system32\drivers\N360x64\1609010.00C\ccSetx64.sys [174240 2017-02-07] (Symantec Corporation -> Symantec Corporation)
S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [69024 2019-05-29] (Microsoft Windows Hardware Compatibility Publisher -> www.winchiphead.com)
S1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [497312 2017-01-25] (Symantec Corporation -> Symantec Corporation)
R0 iaStorAC; C:\WINDOWS\System32\drivers\iaStorAC.sys [1035768 2019-06-28] (Intel® Rapid Storage Technology -> Intel Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton Security Suite\NortonData\22.5.2.15\Definitions\IPSDefs\20170324.001\IDSvia64.sys [1038024 2017-02-15] (Symantec Corporation -> Symantec Corporation)
R3 IntelReadyModeDriver; C:\WINDOWS\System32\drivers\IntelReadyModeDriver.sys [34952 2016-06-21] (Intel® RMT -> Intel Corporation)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [275232 2019-09-13] (Malwarebytes Corporation -> Malwarebytes)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b49751b9038af669\nvlddmkm.sys [21836032 2019-05-23] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [886528 2015-06-03] (Realtek Semiconductor Corp -> Realtek )
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [796560 2019-06-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [418784 2016-11-10] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 RTWlanE02; C:\WINDOWS\System32\drivers\rtwlane02.sys [9607464 2019-03-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
S3 SRTSP; C:\WINDOWS\System32\Drivers\N360x64\1609010.00C\SRTSP64.SYS [770200 2017-03-16] (Symantec Corporation -> Symantec Corporation)
R1 SRTSPX; C:\WINDOWS\system32\drivers\N360x64\1609010.00C\SRTSPX64.SYS [49312 2017-03-16] (Symantec Corporation -> Symantec Corporation)
R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [46776 2019-05-24] (SteelSeries ApS -> )
R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [47824 2019-05-24] (SteelSeries ApS -> SteelSeries ApS)
R0 SymEFASI; C:\WINDOWS\System32\drivers\N360x64\1609010.00C\SYMEFASI64.SYS [1716896 2017-02-07] (Symantec Corporation -> Symantec Corporation)
S0 SymELAM; C:\WINDOWS\System32\drivers\N360x64\1609010.00C\SymELAM.sys [24616 2017-02-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Symantec Corporation)
R3 SymEvent; C:\windows\system32\Drivers\SYMEVENT64x86.SYS [102608 2017-02-15] (Symantec Corporation -> Symantec Corporation)
R1 SymIRON; C:\WINDOWS\system32\drivers\N360x64\1609010.00C\Ironx64.SYS [291480 2017-02-07] (Symantec Corporation -> Symantec Corporation)
R1 SymNetS; C:\WINDOWS\System32\Drivers\N360x64\1609010.00C\SYMNETS.SYS [567512 2017-02-07] (Symantec Corporation -> Symantec Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [47496 2019-07-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [344288 2019-07-25] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54496 2019-07-25] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-09-13 15:45 - 2019-09-13 15:45 - 000275232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-09-13 14:04 - 2019-09-13 14:04 - 000039752 _____ C:\Users\sugar\Downloads\CoverLockHeed2019.pdf
2019-09-11 14:50 - 2019-09-10 20:41 - 000835480 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2019-09-11 14:50 - 2019-09-10 20:41 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2019-09-10 20:38 - 2019-09-10 20:38 - 005500928 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 004306944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-09-10 20:38 - 2019-09-10 20:38 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DavSyncProvider.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DavSyncProvider.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000283264 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2019-09-10 20:38 - 2019-09-10 20:38 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-09-10 20:38 - 2019-09-10 20:38 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecerts.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fvecerts.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 025445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 022626304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 019811328 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 018019328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 008011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 007196160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 007014912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 006516864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 006236160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 006081744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005916672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005848840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005762032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005091840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005013504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 004857856 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 004538368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 003916048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 003817472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 003750912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 003738376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 003637760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-09-10 20:37 - 2019-09-10 20:37 - 002771520 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-09-10 20:37 - 2019-09-10 20:37 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-09-10 20:37 - 2019-09-10 20:37 - 002743808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002586816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002562048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002494232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002314440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002258640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002224952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001957000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001913088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001845616 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001815040 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001691136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001664168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001616568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001531656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001510744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001488216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001413624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001410048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001305608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001283600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-09-10 20:37 - 2019-09-10 20:37 - 001263104 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001244728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001192096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 001154952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001138688 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001122816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001105480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001098928 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001073168 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 001054656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000910336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000888832 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000781912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000776704 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000775680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIsoCtnr.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000727752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000667272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000634880 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000631808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000628400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000626688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000593112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000564736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000541264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000516752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000515448 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000511488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000510984 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000488056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000454736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000442304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000431448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000401832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000375512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000362056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-09-10 20:37 - 2019-09-10 20:37 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000316216 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngctasks.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000267496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000210448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceCenter.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\twext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaSvc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000167136 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000145720 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000120344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compstui.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-09-10 20:37 - 2019-09-10 20:37 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-09-10 20:37 - 2019-09-10 20:37 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000072816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpnotify.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edpnotify.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddrawex.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInput1_4.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000042512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddrawex.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compact.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInputUap.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInput1_4.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000019984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-09-10 20:37 - 2019-09-10 20:37 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDKOR.DLL
2019-09-10 20:37 - 2019-09-10 20:37 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 009927992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 007902912 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 007839120 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 007582752 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 007261648 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 006408704 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 006226352 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 006162432 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 004551352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 004012032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 004009472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003724800 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 003701248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003590672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 003551232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003372448 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003353088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002871608 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 002870272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002762296 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002723840 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 002551096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002466512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002119168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002032640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001999960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001754232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-09-10 20:36 - 2019-09-10 20:36 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001744400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001686528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001633648 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001509728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 001482256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 001439232 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 001371648 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-09-10 20:36 - 2019-09-10 20:36 - 001261256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001259424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 001158656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001149200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 001094144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001068560 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001065984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000977408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000913168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000909736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000905728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000889960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000822416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000810808 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000810496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000808960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000797112 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000731960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000722288 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000683008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000680976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000676632 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000637752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000596008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000561680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000511288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000478264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000464696 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000441360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000411128 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000401208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000338800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000334936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000310072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApproveChildRequest.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000237880 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000182288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000149504 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000147184 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000146416 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000141840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000106296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo-overrides.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000063288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInputUap.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\compact.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ws2ifsl.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2019-09-10 20:35 - 2019-09-10 20:36 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000863744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000804880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000589600 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-09-10 20:35 - 2019-09-10 20:35 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000435728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthA2dp.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-09-10 20:35 - 2019-09-10 20:35 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000088568 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000055304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2019-09-09 11:44 - 2019-09-09 11:44 - 000008615 _____ C:\Users\sugar\Downloads\winmail (3).dat
2019-09-09 11:44 - 2019-09-09 11:44 - 000008615 _____ C:\Users\sugar\Downloads\winmail (2).dat
2019-09-05 19:57 - 2019-09-05 19:57 - 000001755 _____ C:\Users\James\Desktop\report.txt
2019-09-05 17:09 - 2019-09-05 17:09 - 000003812 _____ C:\WINDOWS\System32\Tasks\EOSv3 Scheduler onLogOn
2019-09-05 17:09 - 2019-09-05 17:09 - 000003370 _____ C:\WINDOWS\System32\Tasks\EOSv3 Scheduler onTime
2019-09-05 17:09 - 2019-09-05 17:09 - 000000268 _____ C:\Users\jimak\Desktop\esetlog.txt
2019-09-04 18:53 - 2019-09-05 06:47 - 000001163 _____ C:\Users\jimak\Desktop\ESET Online Scanner.lnk
2019-09-04 18:53 - 2019-09-04 18:53 - 000001262 _____ C:\Users\jimak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2019-09-04 18:53 - 2019-09-04 18:53 - 000000776 _____ C:\Users\James\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2019-09-04 18:53 - 2019-09-04 18:53 - 000000000 ____D C:\Users\jimak\AppData\Local\ESET
2019-09-04 18:53 - 2019-09-04 18:53 - 000000000 ____D C:\Users\James\AppData\Local\ESET
2019-09-04 18:52 - 2019-09-04 18:52 - 008149816 _____ (ESET spol. s r.o.) C:\Users\James\Downloads\esetonlinescanner_enu.exe
2019-09-02 12:04 - 2019-09-02 12:30 - 000000000 ____D C:\Users\James\OneDrive\Documents\Arduino
2019-09-02 12:04 - 2019-09-02 12:06 - 000000000 ____D C:\Users\James\OneDrive\Documents\ArduinoData
2019-08-27 15:24 - 2019-09-13 15:52 - 000000000 ____D C:\Users\James\Downloads\FRST-OlderVersion
2019-08-24 15:51 - 2019-09-02 11:46 - 000010172 _____ C:\Users\James\Downloads\Fixlog.txt
2019-08-24 15:29 - 2019-08-24 15:32 - 000000000 ____D C:\AdwCleaner
2019-08-24 15:29 - 2019-08-24 15:29 - 007623880 _____ (Malwarebytes) C:\Users\James\Downloads\adwcleaner_7.4.exe
2019-08-24 15:29 - 2019-08-24 15:29 - 007623880 _____ (Malwarebytes) C:\Users\James\Downloads\adwcleaner_7.4 (1).exe
2019-08-24 11:02 - 2019-08-29 15:49 - 000080467 _____ C:\Users\James\Downloads\Addition.txt
2019-08-24 10:57 - 2019-08-29 15:50 - 000217658 _____ C:\Users\James\Downloads\FRST.txt
2019-08-24 10:56 - 2019-09-13 15:52 - 000000000 ____D C:\FRST
2019-08-23 14:19 - 2019-08-23 14:19 - 000212119 _____ C:\Users\jimak\Desktop\Love your enemies.pdf
2019-08-23 08:42 - 2019-08-23 08:42 - 000000000 ____D C:\Users\jimak\AppData\Local\mbamtray
2019-08-22 17:54 - 2019-08-22 17:54 - 000000000 ____D C:\Users\sugar\AppData\Local\mbam
2019-08-22 17:48 - 2019-08-22 17:48 - 000000000 ____D C:\Users\sugar\AppData\Local\mbamtray
2019-08-22 10:23 - 2019-08-22 10:23 - 000000000 ____D C:\Users\James\AppData\Local\mbamtray
2019-08-22 10:23 - 2019-08-22 10:23 - 000000000 ____D C:\Users\James\AppData\Local\mbam
2019-08-22 10:22 - 2019-08-22 10:22 - 000001919 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-08-22 10:22 - 2019-08-22 10:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-08-22 10:22 - 2019-08-22 10:22 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-08-22 10:22 - 2019-08-22 10:22 - 000000000 ____D C:\Program Files\Malwarebytes
2019-08-22 10:22 - 2019-06-26 13:00 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2019-08-22 10:22 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-08-22 10:21 - 2019-08-22 10:21 - 064333800 _____ (Malwarebytes ) C:\Users\James\Downloads\mb3-setup-37469.37469-3.8.3.2965-1.0.613-1.0.11270.exe
2019-08-22 10:09 - 2019-08-22 10:09 - 001306034 _____ C:\Users\James\Downloads\LuckPerms-Bukkit-4.4.1 (1).jar
2019-08-22 09:56 - 2019-08-22 09:56 - 000048821 _____ C:\Users\James\Downloads\PoseidonAnticheat.jar
2019-08-22 09:47 - 2019-08-22 09:47 - 000500166 _____ C:\Users\James\Downloads\Horizon-1.4.6-Hotfix#6 (1).jar
2019-08-21 17:39 - 2019-08-21 17:39 - 000063995 _____ C:\Users\jimak\Downloads\Love Your Enemies_ How Decent People Can Save America from the Culture of Contempt-Notebook (1).csv
2019-08-20 08:55 - 2019-08-20 08:55 - 000000000 ____D C:\Users\nanke\AppData\Roaming\Google
2019-08-20 08:55 - 2019-08-20 08:55 - 000000000 ____D C:\Users\nanke\ansel
2019-08-18 12:12 - 2019-08-18 12:12 - 000004878 _____ C:\Users\James\Downloads\488d4818-b41f-4960-a4c7-00252e6b76f7.dat
2019-08-18 11:52 - 2019-08-18 11:56 - 000003524 _____ C:\Users\James\Downloads\691a121a-6fbd-4635-bff9-65aad34539e2.dat
2019-08-18 08:24 - 2019-08-23 14:06 - 000042440 _____ C:\Users\jimak\Desktop\Book Love Your Enemies Notes.xlsx
2019-08-18 08:23 - 2019-08-18 08:23 - 000065977 _____ C:\Users\jimak\Downloads\Love Your Enemies_ How Decent People Can Save America from the Culture of Contempt-Notebook.csv
2019-08-14 16:37 - 2019-08-14 16:37 - 000128466 _____ C:\Users\James\Downloads\OpenInv.jar
2019-08-14 16:37 - 2019-08-14 16:37 - 000000000 ____D C:\Users\James\AppData\Local\Desmond_Brand
2019-08-14 14:47 - 2019-08-14 14:47 - 000220172 _____ C:\Users\James\Downloads\Xray_Ultimate_1.13_v3.1.1 (1).zip
2019-08-14 09:32 - 2011-09-20 02:02 - 000461312 _____ (Desmond Brand) C:\Users\James\Desktop\Caffeinated.exe
2019-08-14 09:31 - 2019-08-14 09:31 - 000127270 _____ C:\Users\James\Downloads\Caffeinated-1.0.zip
2019-08-14 06:57 - 2019-08-14 06:58 - 000000000 ____D C:\Users\James\Desktop\Real modding now
2019-08-14 06:52 - 2019-08-14 06:52 - 000000222 _____ C:\Users\James\Desktop\Bloons TD Battles.url
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-09-13 15:57 - 2019-08-05 20:10 - 000004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{80DEAE8C-01B5-477C-9FF2-D1E82E0041CA}
2019-09-13 15:55 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2019-09-13 15:51 - 2019-05-23 17:46 - 000000000 ____D C:\Users\sugar\AppData\Roaming\steelseries-engine-3-client
2019-09-13 15:49 - 2019-08-05 19:56 - 000937076 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-09-13 15:49 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-09-13 15:49 - 2019-03-19 00:50 - 000000000 ____D C:\WINDOWS\INF
2019-09-13 15:48 - 2019-03-19 00:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-09-13 15:47 - 2018-02-08 10:34 - 000000000 ___RD C:\Users\James\3D Objects
2019-09-13 15:47 - 2017-10-19 23:04 - 000000000 ____D C:\Users\James\AppData\Local\Packages
2019-09-13 15:47 - 2015-07-16 10:00 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-09-13 15:46 - 2019-03-19 00:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-09-13 15:46 - 2016-08-20 11:32 - 000000000 ____D C:\ProgramData\NVIDIA
2019-09-13 15:45 - 2015-12-26 23:18 - 000000000 ____D C:\ProgramData\PDFC
2019-09-13 15:44 - 2019-08-05 20:10 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-09-13 14:31 - 2019-03-19 00:37 - 001572864 _____ C:\WINDOWS\system32\config\BBI
2019-09-13 14:24 - 2019-08-05 20:10 - 000004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{478D3183-2E34-44CD-B28C-478E69B5A612}
2019-09-13 12:43 - 2019-08-05 19:39 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-09-13 09:51 - 2019-03-09 11:27 - 000000000 ____D C:\Users\jimak\Desktop\My financial files 2018
2019-09-13 08:14 - 2015-12-27 16:04 - 000000000 ____D C:\Users\jimak\AppData\Local\CrashDumps
2019-09-13 08:11 - 2016-02-01 20:25 - 000000000 ____D C:\Users\sugar\AppData\Local\CrashDumps
2019-09-12 08:13 - 2019-06-24 20:36 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForjimak.job
2019-09-11 21:50 - 2016-01-30 17:42 - 000024860 _____ C:\Users\sugar\AppData\Roaming\wklnhst.dat
2019-09-11 21:48 - 2019-08-05 20:10 - 000004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{536246E7-1486-47E5-8E5E-5A94F6A15EF0}
2019-09-11 19:54 - 2019-08-05 20:10 - 000003256 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForjimak
2019-09-11 19:53 - 2019-08-05 20:10 - 000003380 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1736177130-1667789116-2251809797-1001
2019-09-11 19:53 - 2019-08-05 11:21 - 000002374 _____ C:\Users\jimak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-09-11 19:53 - 2015-12-26 20:24 - 000000000 ___RD C:\Users\jimak\OneDrive
2019-09-11 19:46 - 2017-10-19 23:57 - 000000000 ___RD C:\Users\jimak\3D Objects
2019-09-11 14:53 - 2017-10-21 09:17 - 000000000 ___RD C:\Users\sugar\3D Objects
2019-09-11 14:50 - 2019-08-05 19:39 - 000479080 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\TextInput
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\Provisioning
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-09-10 20:41 - 2019-03-19 00:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-09-10 20:40 - 2019-03-19 02:20 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2019-09-10 20:40 - 2019-03-19 02:20 - 000018903 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2019-09-10 13:45 - 2019-08-05 20:10 - 000003380 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1736177130-1667789116-2251809797-1010
2019-09-10 13:45 - 2019-08-05 11:21 - 000002374 _____ C:\Users\sugar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-09-10 13:45 - 2016-01-30 16:39 - 000000000 ___RD C:\Users\sugar\OneDrive
2019-09-08 14:05 - 2019-05-19 12:08 - 000000000 ____D C:\Users\James\AppData\Roaming\steelseries-engine-3-client
2019-09-08 13:21 - 2015-12-28 12:02 - 000000000 ____D C:\Users\James\AppData\Local\CrashDumps
2019-09-07 17:25 - 2016-09-06 17:13 - 000000000 ____D C:\Users\sugar\AppData\Roaming\CyberLink
2019-09-07 17:23 - 2016-01-30 16:36 - 000000000 ____D C:\Users\sugar\AppData\Local\NVIDIA Corporation
2019-09-06 19:56 - 2015-12-27 15:07 - 000000000 ____D C:\Users\James\AppData\Roaming\.minecraft
2019-09-06 18:15 - 2019-08-05 20:10 - 000003380 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1736177130-1667789116-2251809797-1009
2019-09-06 18:15 - 2019-08-05 11:21 - 000002374 _____ C:\Users\James\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-09-06 18:15 - 2015-12-27 15:04 - 000000000 ___RD C:\Users\James\OneDrive
2019-09-06 16:41 - 2017-01-29 21:19 - 000000000 ____D C:\Users\James\AppData\Roaming\discord
2019-09-04 20:52 - 2017-12-22 18:31 - 000000000 ____D C:\Users\jimak\AppData\Local\{7C0D4A51-58A5-26E9-353D-03011155FF99}
2019-09-04 20:52 - 2017-09-04 08:28 - 000000000 ____D C:\Users\jimak\AppData\Local\{A3059559-87AD-F9E1-EA35-DC09CE5D2091}
2019-09-03 17:19 - 2016-01-30 16:20 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-02 12:03 - 2018-12-29 08:35 - 000000000 ____D C:\Users\James\AppData\Local\PlaceholderTileLogoFolder
2019-09-02 12:03 - 2018-07-09 21:05 - 000000000 ____D C:\ProgramData\Packages
2019-09-02 11:47 - 2018-10-05 13:14 - 000000000 ____D C:\Users\jimak\Desktop\Outdoor trail cam pictures
2019-09-02 10:58 - 2019-08-05 20:10 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-02 10:58 - 2019-08-05 20:10 - 000004106 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-02 10:58 - 2019-08-05 20:10 - 000003976 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-02 10:58 - 2019-08-05 20:10 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-02 10:58 - 2019-08-05 20:10 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-02 10:58 - 2019-08-05 20:10 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-02 10:58 - 2019-08-05 20:10 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-02 10:58 - 2019-08-05 20:10 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-02 10:58 - 2019-08-05 20:10 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-02 10:58 - 2019-08-05 20:10 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-02 10:58 - 2018-12-26 19:01 - 000001454 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2019-09-02 10:58 - 2017-08-28 14:26 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-09-02 10:58 - 2017-08-28 14:26 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-09-02 10:58 - 2017-08-28 14:26 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-09-02 10:58 - 2015-12-27 14:54 - 000000000 ____D C:\Users\James\AppData\Local\NVIDIA Corporation
2019-08-30 16:04 - 2016-07-07 17:59 - 000000000 ____D C:\Users\sugar\AppData\LocalLow\Temp
2019-08-30 16:03 - 2019-08-05 20:10 - 000004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2019-08-30 15:59 - 2019-08-05 11:21 - 000000000 ____D C:\Users\James
2019-08-30 15:53 - 2019-05-29 13:54 - 000000000 ____D C:\Users\jimak\AppData\Roaming\steelseries-engine-3-client
2019-08-28 14:30 - 2017-10-19 23:02 - 000000000 ____D C:\Users\sugar\AppData\Local\Packages
2019-08-24 15:24 - 2016-03-20 20:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2019-08-24 15:24 - 2016-03-20 20:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-08-24 15:24 - 2016-03-20 20:05 - 000000000 ____D C:\Program Files\Java
2019-08-24 15:23 - 2015-12-01 09:46 - 000000000 ____D C:\ProgramData\Temp
2019-08-22 19:10 - 2016-12-25 12:55 - 000000000 ____D C:\Program Files (x86)\Steam
2019-08-22 18:04 - 2017-10-19 20:33 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-08-22 17:50 - 2019-08-05 11:21 - 000000000 ____D C:\Users\jimak
2019-08-22 17:49 - 2015-12-01 09:37 - 000000000 ____D C:\ProgramData\Realtek
2019-08-22 17:43 - 2018-08-07 16:03 - 000002734 _____ C:\Users\James\Desktop\Xbox Controller to PC USB Adapter Cab.._.lnk
2019-08-22 17:43 - 2018-06-23 08:49 - 000002778 _____ C:\Users\James\Desktop\Capacitor.lnk
2019-08-22 17:43 - 2017-06-23 07:12 - 000002530 _____ C:\Users\James\Desktop\James's site.lnk
2019-08-22 17:43 - 2015-12-01 09:46 - 000002200 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Priceline.com.lnk
2019-08-22 17:40 - 2019-08-05 11:21 - 000000000 ____D C:\Users\sugar
2019-08-22 17:40 - 2019-08-05 11:21 - 000000000 ____D C:\Users\nanke
2019-08-22 10:22 - 2019-03-19 00:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-08-22 09:58 - 2015-12-27 15:07 - 000000000 ____D C:\Users\James\AppData\Roaming\java
2019-08-21 16:58 - 2018-12-25 17:07 - 000000000 ____D C:\Users\James\AppData\Local\Battle.net
2019-08-21 16:58 - 2018-12-25 17:07 - 000000000 ____D C:\Program Files (x86)\Battle.net
2019-08-21 16:25 - 2016-01-30 18:02 - 000000000 ____D C:\Users\nanke\AppData\Local\CrashDumps
2019-08-21 13:34 - 2018-12-25 17:10 - 000000000 ____D C:\Program Files (x86)\Call of Duty Black Ops 4
2019-08-21 12:00 - 2018-12-25 17:08 - 000000000 ____D C:\Users\James\AppData\Local\Blizzard Entertainment
2019-08-21 08:33 - 2019-08-05 19:37 - 000000000 ____D C:\Windows.old
2019-08-20 08:56 - 2019-08-05 20:10 - 000003380 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1736177130-1667789116-2251809797-1008
2019-08-20 08:56 - 2019-08-05 11:21 - 000002374 _____ C:\Users\nanke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-08-20 08:56 - 2016-01-30 17:46 - 000000000 ___RD C:\Users\nanke\OneDrive
2019-08-20 08:56 - 2016-01-30 17:44 - 000000000 ____D C:\Users\nanke\AppData\Local\NVIDIA Corporation
2019-08-20 08:55 - 2017-10-19 22:58 - 000000000 ____D C:\Users\nanke\AppData\Local\Packages
2019-08-20 08:54 - 2016-01-30 17:50 - 000000000 ___RD C:\Users\nanke\3D Objects
2019-08-20 08:54 - 2016-01-28 19:26 - 000000000 ____D C:\Users\jimak\AppData\Local\ElevatedDiagnostics
2019-08-19 19:48 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-08-17 15:22 - 2019-08-03 16:43 - 000000000 ___DC C:\WINDOWS\Panther
2019-08-14 15:21 - 2019-07-24 16:27 - 000000080 _____ C:\Users\James\Desktop\new cords.txt
2019-08-14 09:01 - 2018-08-12 15:23 - 000007599 _____ C:\Users\jimak\AppData\Local\Resmon.ResmonCfg
2019-08-14 06:52 - 2016-12-25 13:04 - 000000000 ____D C:\Users\James\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-08-14 06:43 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\oobe
==================== Files in the root of some directories ================
2012-03-22 16:44 - 2012-03-22 16:44 - 003993600 _____ () C:\Program Files (x86)\GUT68F0.tmp
2013-08-24 11:34 - 2013-08-24 20:13 - 004188160 _____ () C:\Program Files (x86)\GUTE474.tmp
2017-09-05 18:14 - 2018-09-07 09:32 - 000000461 _____ () C:\Users\jimak\AppData\Roaming\WB.CFG
2015-12-28 11:27 - 2019-04-03 17:40 - 000003462 _____ () C:\Users\jimak\AppData\Roaming\wklnhst.dat
2015-12-26 20:20 - 2019-08-30 15:51 - 000516392 _____ () C:\Users\jimak\AppData\Local\BTServer.log
2017-09-05 18:37 - 2017-09-05 19:36 - 000012800 _____ () C:\Users\jimak\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-08-12 15:23 - 2019-08-14 09:01 - 000007599 _____ () C:\Users\jimak\AppData\Local\Resmon.ResmonCfg
2019-08-04 11:28 - 2019-08-04 11:28 - 000307643 _____ () C:\Users\jimak\AppData\Local\SRQP
2019-03-02 14:28 - 2019-03-02 14:28 - 000300544 _____ () C:\Users\jimak\AppData\Local\SRQPON2.tmp
2017-12-16 10:28 - 2017-12-25 16:28 - 000000052 _____ () C:\Users\jimak\AppData\Local\SRQPONMLKJ
2017-12-22 18:28 - 2017-12-22 18:28 - 000000056 _____ () C:\Users\jimak\AppData\Local\wbq5hwbq5h
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ============================