Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Problem with StartupChecklibrary.dll and winscomrssrv.dll

malware virus rundll

  • Please log in to reply

#1
Jon Pry

Jon Pry

    New Member

  • Member
  • Pip
  • 2 posts

Hello,

 

I have a workstation dell running Win10 pro x64. I use it for both work and gaming. Recently I haven't been able to download updates to my system via the Windows Update tool. I was getting the "Windows Update Error Code 0x80080005" that didn't allow any Windows services to update including Windows Store. The tutorials to fix this issue manually were quite lengthy and somewhat complicated. So, just before I was going to do a fresh install of Windows I went to the Microsoft site and noticed the November 2019 update had came out. My logic was that, if it was able to be installed it could potentially fix my issue.

 

Well. It did fix it partially. My system is now about to update and install Windows updates. But now, I'm getting these two pop ups when my system starts. 

 

"There was a problem with StartupChecklibrary.dll and winscomrssrv.dll"

 

And I'm not able to update or install games from the MS store either.

 

Any help would be greatly appreciated!

 

Thanks

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-11-2019
Ran by jonpr (administrator) on DELL-WORKSTATIO (Dell Inc. Precision Tower 5810) (22-11-2019 14:04:47)
Running from S:\Downloads
Loaded Profiles: jonpr & postgres (Available Profiles: jonpr & postgres & ebony)
Platform: Windows 10 Pro Version 1909 18363.476 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\SBZ.exe
(Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation -> Sysinternals - www.sysinternals.com) C:\Users\jonpr\OneDrive\Desktop\ms tool\Autoruns64.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_1.35.19001.0_x64__8wekyb3d8bbwe\GamingServices.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_1.35.19001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11911.1001.9.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd) C:\Windows\SysWOW64\CtHdaSvc.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\NisSrv.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c54903cb687d7726\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c54903cb687d7726\Display.NvContainer\NVDisplay.Container.exe
(PostgreSQL Global Development Group) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe
(PostgreSQL Global Development Group) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
(PostgreSQL Global Development Group) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
(PostgreSQL Global Development Group) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
(PostgreSQL Global Development Group) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
(PostgreSQL Global Development Group) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
(PostgreSQL Global Development Group) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
(PostgreSQL Global Development Group) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8830744 2016-11-02] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1437976 2016-11-02] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3136136 2019-01-29] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2019-10-25] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942744 2018-12-17] (Logitech -> Logitech, Inc.)
HKLM-x32\...\Run: [UpdReg] => C:\WINDOWS\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) [File not signed]
HKLM-x32\...\Run: [Sound Blaster Z-Series Control Panel] => C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\SBZ.exe [877056 2014-11-24] (Creative Technology Ltd) [File not signed]
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3284944 2019-11-14] (Valve -> Valve Corporation)
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [71464072 2019-10-22] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\Run: [Discord] => C:\Users\jonpr\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2019-10-25] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-2868613054-3718284689-2572456167-1002\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-18] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-21] (Google LLC -> Google LLC)
Startup: C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2019-11-12]
ShortcutTarget: Twitch.lnk -> C:\Users\jonpr\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0E475106-0AA3-49E1-B939-B440E15C7C04} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {147D597C-511A-4D31-84F3-AD2ED7DCC88D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-15] (Google Inc -> Google LLC)
Task: {1BE2AC94-B1C3-4EDB-B406-99E1AE7D873D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2A67EFC4-A6A3-463C-8571-5D2BDB4C0A61} - System32\Tasks\Microsoft\Windows\WDI\SrvHost => rundll32.exe winscomrssrv.dll,SrvMainHost <==== ATTENTION
Task: {2EF9335D-CE0E-4CE3-A4E7-B6C88F722EDC} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3BB89D6A-B8F6-43DA-A833-F6AEDD38B931} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4607C699-A0BF-43D8-93D1-622FDB368389} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {48352774-4FB8-418C-B13B-D594D8ABC9E6} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5E69637C-BD55-4F60-BF31-504CD5DB18FF} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1437976 2016-11-02] (Realtek Semiconductor Corp -> Realtek Semiconductor)
Task: {637FD1E8-440A-4D3E-AD96-826ABC446617} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {71F84779-3241-4993-84AD-3D29DB37ABA0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-15] (Google Inc -> Google LLC)
Task: {888DC5AC-B81C-4562-B9E6-17D7DAEFA871} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
Task: {90343968-69C4-4E31-B7DF-12EC2EC17AEE} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {947F316F-ED4C-48DB-90AF-B11A7D2DB133} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {97901348-F31C-4395-A3F2-863F008FB7F1} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2868613054-3718284689-2572456167-1004 => C:\Users\jonpr\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task: {AA2A5070-DE5B-48C3-A501-E2DA41853D46} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AC813BC1-0F5F-4417-B851-9452B8A68B01} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {B12B62F5-87D1-456D-AC68-1996BFC2FE12} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D13D5BCB-752D-4608-A292-D050FFC0F658} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DDF44249-1BD7-42B8-A1DA-88936F8B1DB7} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [654456 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E21A9320-D068-4A54-9DA7-7F00ECD49C60} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301928 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E2B3810C-26DC-4DC8-85B3-A59A277AF5B0} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{045dc368-3a5e-4964-ad0f-f86cc96ee873}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2019-01-29] (Logitech Inc -> Logitech, Inc.)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2019-01-29] (Logitech Inc -> Logitech, Inc.)
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://files.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab

FireFox:
========
FF DefaultProfile: xox6sssy.default
FF ProfilePath: C:\Users\jonpr\AppData\Roaming\Mozilla\Firefox\Profiles\xox6sssy.default [2019-08-15]
FF ProfilePath: C:\Users\jonpr\AppData\Roaming\Mozilla\Firefox\Profiles\njz4iqdm.default-release [2019-11-22]
FF Extension: (AdblockAddon) - C:\Users\jonpr\AppData\Roaming\Mozilla\Firefox\Profiles\njz4iqdm.default-release\Extensions\[email protected] [2019-09-16]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2019-08-15] [not signed]
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-04] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-04] (Google Inc -> Google LLC)
FF Plugin HKU\S-1-5-21-2868613054-3718284689-2572456167-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\jonpr\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2019-10-29] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://search.conduit.com/?ctid=CT3321486&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP00278D3C-7779-4CAA-90C3-8C904CBC85E2&SSPV=T21111_sp_ch
CHR StartupUrls: Default -> "hxxp://search.conduit.com/?ctid=CT3321486&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP00278D3C-7779-4CAA-90C3-8C904CBC85E2&SSPV=T21111_sp_ch","hxxp://google.com/","hxxp://us.yhs4.search.yahoo.com/web/partner?&hspart=w3i&hsimp=yhs-synd1&type=W3i_SP,221,0_0,StartPage,20140105,19670,0,IE11,7743"
CHR DefaultSearchURL: Default -> hxxps://mail.google.com/mail/u/0/#inbox
CHR Session Restore: Default -> is enabled.
CHR Notifications: Default -> hxxps://voice.google.com
CHR Profile: C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default [2019-11-22]
CHR DownloadDir: S:\Downloads
CHR Extension: (Slides) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-08-15]
CHR Extension: (Docs) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-08-15]
CHR Extension: (Google Drive) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-08-15]
CHR Extension: (YouTube) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-08-15]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-10-22]
CHR Extension: (Rakuten Ebates: Get Cash Back For Shopping) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\chhjbpecpncaggjpdakmflnfcopglcmi [2019-11-02]
CHR Extension: (Google Play Music) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2019-09-14]
CHR Extension: (Facebook Pixel Helper) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2019-09-28]
CHR Extension: (Sheets) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-08-15]
CHR Extension: (Google Docs Offline) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-08-15]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-11-21]
CHR Extension: (Keywords Everywhere - Keyword Tool) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbapdpeemoojbophdfndmlgdhppljgmp [2019-11-07]
CHR Extension: (TweetDeck by Twitter) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdpomandigafcibbmofojjchbcdagbl [2019-08-15]
CHR Extension: (Google Keep - notes and lists) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2019-11-19]
CHR Extension: (SimilarWeb - Traffic Rank & Website Analysis) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\hoklmmgfnpapgjgcpechhaamimifchmp [2019-11-02]
CHR Extension: (Dropbox) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2019-08-15]
CHR Extension: (Sketchpad 3.5) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkghjbajgkcialbbimbifdcjilhcgoim [2019-08-15]
CHR Extension: (Google Dictionary (by Google)) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2019-08-15]
CHR Extension: (Screencastify - Screen Video Recorder) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmeijimgabbpbgpdklnllpncmdofkcpn [2019-11-19]
CHR Extension: (OMG! Ubuntu!) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhmmlbjenhdockdgpklmdiamollflljn [2019-08-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Gmail) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-27]
CHR Profile: C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-11-19]
CHR Profile: C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1 [2019-11-22]
CHR Extension: (Slides) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-08-15]
CHR Extension: (Docs) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-08-15]
CHR Extension: (Google Drive) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-08-15]
CHR Extension: (YouTube) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-08-15]
CHR Extension: (Spotify - Music for every moment) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cnkjkdjlofllcpbemipjbcpfnglbgieh [2019-08-15]
CHR Extension: (Sheets) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-08-15]
CHR Extension: (Google Docs Offline) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-08-20]
CHR Extension: (Turbo Ad Finder) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kjbjojolojmokicddfeaamkodihccdcl [2019-10-21]
CHR Extension: (Chrome Web Store Payments) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Gmail) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-27]
CHR Profile: C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 3 [2019-11-19]
CHR Extension: (Slides) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-08-15]
CHR Extension: (Docs) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aohghmighlieiainnegkcijnfilokake [2019-08-15]
CHR Extension: (Google Drive) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-08-15]
CHR Extension: (YouTube) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-08-15]
CHR Extension: (Sheets) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-08-15]
CHR Extension: (Google Docs Offline) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-08-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-11]
CHR Extension: (Gmail) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-27]
CHR Profile: C:\Users\jonpr\AppData\Local\Google\Chrome\User Data\System Profile [2019-08-15]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-08-26] (Apple Inc. -> Apple Inc.)
S3 Creative Media Toolbox 6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\MT6Licensing.exe [79360 2019-08-22] (Creative Labs) [File not signed]
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [423424 2012-10-08] (Creative Technology Ltd) [File not signed]
R2 CtHdaSvc; C:\WINDOWS\sysWow64\CtHdaSvc.exe [122880 2017-01-18] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2019-08-19] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 GamingServices; C:\Program Files\WindowsApps\Microsoft.GamingServices_1.35.19001.0_x64__8wekyb3d8bbwe\GamingServices.exe [21640 2019-11-21] (Microsoft Corporation -> Microsoft Corporation)
R2 GamingServicesNet; C:\Program Files\WindowsApps\Microsoft.GamingServices_1.35.19001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe [21640 2019-11-21] (Microsoft Corporation -> Microsoft Corporation)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [184064 2016-12-12] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [9586824 2019-10-22] (Logitech Inc -> Logitech, Inc.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2425136 2019-11-12] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3303736 2019-11-12] (Electronic Arts, Inc. -> Electronic Arts)
S3 Rockstar Service; X:\Game Library\Launcher\RockstarService.exe [474256 2019-11-19] (Rockstar Games, Inc. -> Rockstar Games)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [318744 2016-11-02] (Realtek Semiconductor Corp -> Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-10-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c54903cb687d7726\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c54903cb687d7726\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
R2 postgresql-x64-9.5; "C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe" runservice -N "postgresql-x64-9.5" -D "C:\Program Files\PostgreSQL\9.5\data" -w

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 cthda; C:\WINDOWS\system32\drivers\cthda.sys [1074984 2017-01-18] (Creative Technology Ltd -> Creative Technology Ltd)
R3 cthdb; C:\WINDOWS\system32\DRIVERS\cthdb.sys [42792 2017-01-18] (Creative Technology Ltd -> Creative Technology Ltd)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [135520 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 gameflt; C:\WINDOWS\System32\DriverStore\FileRepository\gameflt.inf_amd64_1b1c9965dc1c6f0f\gameflt.sys [71000 2019-11-21] (Microsoft Windows -> Microsoft Corporation)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [736000 2016-12-12] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R3 IntcAzAudAddService; C:\WINDOWS\system32\drivers\RTDVHD64.sys [2687520 2016-11-02] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R2 LGHUBTemperatureService; C:\ProgramData\LGHUB\depots\28228\driver_cpu_temperature\logi_core_temp.sys [25448 2019-10-22] (Logitech Inc. -> Logitech)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [38136 2019-10-22] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [20624 2019-10-22] (WDKTestCert sqa,131523902232810150 -> Logitech, Inc.)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66808 2019-10-22] (Logitech Inc -> Logitech)
R3 Netwtw06; C:\WINDOWS\System32\drivers\Netwtw06.sys [8723968 2019-03-18] (Microsoft Windows -> Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c54903cb687d7726\nvlddmkm.sys [22749640 2019-11-08] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-11-06] (NVIDIA Corporation -> NVIDIA Corporation)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166752 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> )
R3 UcmCxUcsiNvppc; C:\WINDOWS\System32\drivers\UcmCxUcsiNvppc.sys [715680 2019-08-16] (NVIDIA Corporation -> NVIDIA Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-10-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [351968 2019-10-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-28] (Microsoft Windows -> Microsoft Corporation)
R3 Xvdd; C:\WINDOWS\System32\DriverStore\FileRepository\xvdd.inf_amd64_4beca0218f643d77\xvdd.sys [478256 2019-10-10] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-22 13:53 - 2019-11-22 14:05 - 000000000 ____D C:\FRST
2019-11-21 20:43 - 2019-11-21 17:52 - 000000000 ____D C:\Windows.old
2019-11-21 20:32 - 2019-11-21 20:43 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-11-21 20:31 - 2019-11-21 20:32 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-11-21 20:31 - 2019-11-21 20:31 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-11-21 20:28 - 2019-11-21 20:28 - 025901056 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 022627840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 017787904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 009928208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 008011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 007904152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 007849424 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 007278592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 007262456 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 006521768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 006435840 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 006232576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 006227104 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 006166016 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 006082808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 005890048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 005763848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 005501952 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 005112320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 004615616 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 004578816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 004307968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 004150272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 004129408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 004047360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 004005888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003968512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003967920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 003791360 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003752960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003728384 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003591208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 003487232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003387392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003371928 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003105792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002988344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 002956472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002871848 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 002772272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002763016 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 002703872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002698768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 002586816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002562048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002399232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002369552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002258848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002188808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002158080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002126112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001974824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001920512 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001916984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001866272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-11-21 20:28 - 2019-11-21 20:28 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001718584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001691648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001664688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001659192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001647064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001616696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001495864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001413864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001399096 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001387024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001327064 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001259416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001189376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001185792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 001182720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001171704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 001126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001069064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 001047352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001017680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000982840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000960040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000911824 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000874936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000874536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000827192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000822200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000816952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000811536 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000768488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000700416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000679152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000673664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000669352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000666640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000657424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000638264 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000586768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000517432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000514576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000510792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000494904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000477712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-11-21 20:28 - 2019-11-21 20:28 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000461320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000452920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000416016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000404904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000396088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000380944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000372752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Magnify.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000322504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000292664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000291256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ManagedEventLogging.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ConfigWrapper.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000259384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000251512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000230200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-11-21 20:28 - 2019-11-21 20:28 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CmUtil.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000204816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\accessibilitycpl.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-11-21 20:28 - 2019-11-21 20:28 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000136536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000113160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000105488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2019-11-21 20:28 - 2019-11-21 20:28 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000089568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000088568 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcXtrnal.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AtBroker.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2019-11-21 20:28 - 2019-11-21 20:28 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncController.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Common.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2019-11-21 20:28 - 2019-11-21 20:28 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AtBroker.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000065272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\reg.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppCore.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAppMonitor.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CabUtil.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000047208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.EventLogMessages.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2010CustomActions.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAgentPolicyGenerator.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2019-11-21 20:28 - 2019-11-21 20:28 - 000036368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\posetup.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000030720 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000028344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000024792 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Management.WmiAccess.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Management.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppData.WinRT.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncCommon.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Common.WinRT.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2019-11-21 20:28 - 2019-11-21 20:28 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.LocalSyncProvider.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcXtrnal.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernSync.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-11-21 20:28 - 2019-11-21 20:28 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevTemplateBaselineGenerator.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevTemplateConfigItemGenerator.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SmbSyncProvider.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscadminui.exe
2019-11-21 20:28 - 2019-11-21 20:28 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.MonitorSyncProvider.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncConditions.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx
2019-11-21 20:28 - 2019-11-21 20:28 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2019-11-21 20:28 - 2019-11-21 20:28 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-11-21 20:28 - 2019-11-21 20:28 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-11-21 20:26 - 2019-11-21 20:26 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-11-21 20:26 - 2019-11-21 20:26 - 000000000 ____D C:\Program Files\MSBuild
2019-11-21 20:26 - 2019-11-21 20:26 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-11-21 20:25 - 2019-03-01 20:31 - 001166488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-11-21 20:25 - 2019-03-01 20:31 - 000124568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-11-21 20:25 - 2019-03-01 20:31 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-11-21 20:25 - 2019-02-05 21:41 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-11-21 20:25 - 2019-02-05 21:41 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-11-21 20:25 - 2019-02-05 21:41 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-11-21 20:24 - 2019-11-21 20:24 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-11-21 20:24 - 2019-11-21 20:24 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-11-21 18:57 - 2019-11-21 18:40 - 000052360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2019-11-21 18:41 - 2019-11-21 18:41 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-11-21 18:39 - 2019-11-21 18:39 - 000000020 ___SH C:\Users\jonpr\ntuser.ini
2019-11-21 17:54 - 2019-11-22 13:15 - 000840852 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-11-21 17:51 - 2019-11-21 20:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-11-21 17:51 - 2019-11-21 17:51 - 000015243 _____ C:\WINDOWS\diagwrn.xml
2019-11-21 17:51 - 2019-11-21 17:51 - 000015243 _____ C:\WINDOWS\diagerr.xml
2019-11-21 17:51 - 2019-11-21 17:51 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-21 17:51 - 2019-11-21 17:51 - 000003348 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-11-21 17:51 - 2019-11-21 17:51 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-21 17:51 - 2019-11-21 17:51 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-21 17:51 - 2019-11-21 17:51 - 000003124 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-11-21 17:51 - 2019-11-21 17:51 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-21 17:51 - 2019-11-21 17:51 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-21 17:51 - 2019-11-21 17:51 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-21 17:51 - 2019-11-21 17:51 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-21 17:51 - 2019-11-21 17:51 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-21 17:51 - 2019-11-21 17:51 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-21 17:51 - 2019-11-21 17:51 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2868613054-3718284689-2572456167-1004
2019-11-21 17:51 - 2019-11-21 17:51 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-21 17:51 - 2019-11-21 17:51 - 000002608 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2019-11-21 17:51 - 2019-11-21 17:51 - 000002304 _____ C:\WINDOWS\system32\Tasks\RtHDVBg_PushButton
2019-11-21 17:51 - 2019-11-21 17:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Apple
2019-11-21 17:48 - 2019-11-21 17:48 - 000000020 ___SH C:\Users\postgres\ntuser.ini
2019-11-21 17:46 - 2019-11-21 18:39 - 000000000 ____D C:\Users\jonpr
2019-11-21 17:46 - 2019-11-21 17:49 - 000000000 ____D C:\Users\postgres
2019-11-21 17:46 - 2019-11-21 17:49 - 000000000 ____D C:\Users\ebony
2019-11-21 17:46 - 2019-03-18 23:46 - 000001105 _____ C:\Users\postgres\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-11-21 17:46 - 2019-03-18 23:46 - 000001105 _____ C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-11-21 17:46 - 2019-03-18 23:46 - 000001105 _____ C:\Users\ebony\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-11-21 17:45 - 2019-11-21 17:45 - 000000000 ____D C:\Program Files\Waves
2019-11-21 17:45 - 2019-10-06 21:56 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-11-21 17:44 - 2019-11-22 13:12 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-11-21 17:44 - 2019-11-21 17:48 - 006391336 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-11-21 16:53 - 2019-11-21 18:39 - 000000000 ___DC C:\WINDOWS\Panther
2019-11-21 16:47 - 2019-11-21 17:52 - 000000000 ___HD C:\$GetCurrent
2019-11-19 16:52 - 2019-11-19 16:52 - 000007296 _____ C:\Users\jonpr\AppData\Local\recently-used.xbel
2019-11-18 17:45 - 2019-11-18 17:45 - 000000000 ____D C:\ProgramData\Ubisoft
2019-11-15 16:33 - 2019-11-15 16:33 - 000000024 _____ C:\WINDOWS\system32\WinUpdates105.dat
2019-11-15 16:33 - 2019-11-15 16:33 - 000000003 _____ C:\WINDOWS\system32\wdbcache.tmp
2019-11-14 22:01 - 2019-11-21 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anthem™
2019-11-14 22:01 - 2019-11-14 22:01 - 000000851 _____ C:\Users\Public\Desktop\Anthem™.lnk
2019-11-14 22:01 - 2019-11-14 22:01 - 000000851 _____ C:\ProgramData\Desktop\Anthem™.lnk
2019-11-14 21:26 - 2019-11-15 16:31 - 000000777 _____ C:\Users\jonpr\OneDrive\Documents\Jeremiah20,11.txt
2019-11-14 21:18 - 2019-11-21 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dead Cells
2019-11-14 21:18 - 2019-11-14 21:18 - 000000886 _____ C:\Users\Public\Desktop\Dead Cells.lnk
2019-11-14 21:18 - 2019-11-14 21:18 - 000000886 _____ C:\ProgramData\Desktop\Dead Cells.lnk
2019-11-14 20:04 - 2019-11-19 14:45 - 000002503 _____ C:\Users\jonpr\OneDrive\Documents\Hebrew Tribes and Names.txt
2019-11-14 18:53 - 2019-11-08 04:20 - 005557488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-11-14 18:53 - 2019-11-06 23:23 - 000229248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2019-11-14 18:53 - 2019-11-06 23:23 - 000075600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2019-11-14 18:53 - 2019-11-06 23:23 - 000047032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
2019-11-14 18:52 - 2019-11-08 08:20 - 004952112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-11-14 18:52 - 2019-11-08 08:20 - 004219440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-11-14 18:52 - 2019-11-08 04:23 - 001073864 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-11-14 18:52 - 2019-11-08 04:23 - 001073864 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-11-14 18:52 - 2019-11-08 04:23 - 000931528 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-11-14 18:52 - 2019-11-08 04:23 - 000931528 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-11-14 18:52 - 2019-11-08 04:23 - 000848584 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-11-14 18:52 - 2019-11-08 04:23 - 000848584 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-11-14 18:52 - 2019-11-08 04:23 - 000706248 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-11-14 18:52 - 2019-11-08 04:23 - 000706248 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-11-14 18:52 - 2019-11-08 04:23 - 000449792 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-11-14 18:52 - 2019-11-08 04:23 - 000352696 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-11-14 18:52 - 2019-11-08 04:22 - 011841968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-11-14 18:52 - 2019-11-08 04:22 - 010167216 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 017458432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 005381544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 004717568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 002074240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 001568880 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 001482184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 001370080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 001145056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 001066056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 001001048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 000824912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 000813000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 000685824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 000677304 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 000659544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 000574592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2019-11-14 18:52 - 2019-11-08 04:21 - 000556672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 000544728 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-11-14 18:52 - 2019-11-08 04:21 - 000451504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2019-11-14 18:52 - 2019-11-08 04:20 - 040510200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-11-14 18:52 - 2019-11-08 04:20 - 035379456 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-11-14 18:52 - 2019-11-08 04:20 - 015026944 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-11-14 18:52 - 2019-11-08 04:20 - 000858456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2019-11-14 18:52 - 2019-11-06 23:23 - 000081581 _____ C:\WINDOWS\system32\nvidia-smi.1.pdf
2019-11-14 18:52 - 2019-11-06 23:23 - 000076271 _____ C:\WINDOWS\system32\nvinfo.pb
2019-11-12 23:05 - 2019-11-14 19:06 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Twitch
2019-11-12 23:05 - 2019-11-12 23:05 - 000001109 _____ C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk
2019-11-12 23:05 - 2019-11-12 23:05 - 000000000 ____D C:\ProgramData\Twitch
2019-11-11 20:37 - 2019-11-11 20:37 - 000078387 _____ C:\Users\ebony\Downloads\$10 CASH MACHINE (2).pdf
2019-11-11 19:46 - 2019-11-11 19:46 - 000078387 _____ C:\Users\ebony\Downloads\$10 CASH MACHINE (1).pdf
2019-11-11 19:21 - 2019-11-11 19:21 - 000078387 _____ C:\Users\ebony\Downloads\$10 CASH MACHINE.pdf
2019-11-07 20:49 - 2019-11-07 20:49 - 000008477 _____ C:\ProgramData\DisplaySessionContainer4.log_backup1
2019-11-07 20:10 - 2019-11-07 20:11 - 000000000 ____D C:\Users\ebony\AppData\LocalLow\Mozilla
2019-11-07 20:10 - 2019-11-07 20:10 - 000000000 ____D C:\Users\ebony\AppData\Roaming\Mozilla
2019-11-07 20:10 - 2019-11-07 20:10 - 000000000 ____D C:\Users\ebony\AppData\Local\Mozilla
2019-11-07 20:08 - 2019-11-07 20:08 - 000000000 ____D C:\Users\ebony\AppData\Roaming\Google
2019-11-07 20:04 - 2019-11-07 20:04 - 000001657 _____ C:\Users\ebony\Downloads\UnfinishedUploads.usertesting
2019-11-07 20:04 - 2019-11-07 20:04 - 000001657 _____ C:\Users\ebony\Downloads\UnfinishedUploads (1).usertesting
2019-11-07 19:14 - 2019-11-07 19:14 - 000000000 ____D C:\Users\ebony\AppData\Local\Comms
2019-11-07 19:03 - 2019-11-12 16:05 - 000000000 ____D C:\Users\ebony\AppData\Roaming\LGHUB
2019-11-07 19:03 - 2019-11-11 20:43 - 000000000 ____D C:\Users\ebony\AppData\Local\LGHUB
2019-11-07 19:01 - 2019-11-07 19:02 - 000000000 ____D C:\Users\ebony\AppData\Local\PlaceholderTileLogoFolder
2019-11-07 19:00 - 2019-11-11 20:38 - 000000120 ____R C:\Users\ebony\OneDrive\Documents\My Notebook.url
2019-11-07 19:00 - 2019-11-07 19:00 - 000000000 ___HD C:\Users\ebony\MicrosoftEdgeBackups
2019-11-07 18:59 - 2019-11-11 18:37 - 000000000 ___RD C:\Users\ebony\OneDrive
2019-11-07 18:59 - 2019-11-07 19:01 - 000000000 ____D C:\Users\ebony\AppData\Local\MicrosoftEdge
2019-11-07 18:59 - 2019-11-07 18:59 - 000001450 _____ C:\Users\ebony\Desktop\Microsoft Edge.lnk
2019-11-07 18:59 - 2019-11-07 18:59 - 000000000 ____D C:\Users\ebony\AppData\Roaming\Logitech
2019-11-07 18:58 - 2019-11-21 17:47 - 000000000 ____D C:\Users\ebony\AppData\Local\Packages
2019-11-07 18:58 - 2019-11-11 18:43 - 000000000 ____D C:\Users\ebony\AppData\Local\Google
2019-11-07 18:58 - 2019-11-11 18:37 - 000000000 ____D C:\Users\ebony\AppData\Local\ConnectedDevicesPlatform
2019-11-07 18:58 - 2019-11-07 19:02 - 000002336 _____ C:\Users\ebony\Desktop\Google Chrome.lnk
2019-11-07 18:58 - 2019-11-07 19:00 - 000000000 ____D C:\Users\ebony\AppData\Local\NVIDIA Corporation
2019-11-07 18:58 - 2019-11-07 18:58 - 000000000 ___RD C:\Users\ebony\3D Objects
2019-11-07 18:58 - 2019-11-07 18:58 - 000000000 ____D C:\Users\ebony\AppData\Roaming\Adobe
2019-11-07 18:58 - 2019-11-07 18:58 - 000000000 ____D C:\Users\ebony\AppData\Local\VirtualStore
2019-11-07 18:58 - 2019-11-07 18:58 - 000000000 ____D C:\Users\ebony\AppData\Local\Publishers
2019-11-07 18:58 - 2019-11-07 18:58 - 000000000 ____D C:\Users\ebony\AppData\Local\NVIDIA
2019-11-07 18:58 - 2019-11-07 18:58 - 000000000 ____D C:\Users\ebony\ansel
2019-11-05 20:49 - 2010-06-02 04:55 - 000527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2019-11-05 20:49 - 2010-06-02 04:55 - 000518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2019-11-05 20:49 - 2010-06-02 04:55 - 000239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2019-11-05 20:49 - 2010-06-02 04:55 - 000176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2019-11-05 20:49 - 2010-06-02 04:55 - 000077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2019-11-05 20:49 - 2010-06-02 04:55 - 000074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2019-11-05 20:49 - 2010-05-26 11:41 - 002401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2019-11-05 20:49 - 2010-05-26 11:41 - 002106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2019-11-05 20:49 - 2010-05-26 11:41 - 001998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2019-11-05 20:49 - 2010-05-26 11:41 - 001907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2019-11-05 20:49 - 2010-05-26 11:41 - 001868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2019-11-05 20:49 - 2010-05-26 11:41 - 000511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2019-11-05 20:49 - 2010-05-26 11:41 - 000470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2019-11-05 20:49 - 2010-05-26 11:41 - 000276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2019-11-05 20:49 - 2010-05-26 11:41 - 000248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2019-11-05 20:49 - 2010-02-04 10:01 - 000530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2019-11-05 20:49 - 2010-02-04 10:01 - 000528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2019-11-05 20:49 - 2010-02-04 10:01 - 000238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2019-11-05 20:49 - 2010-02-04 10:01 - 000176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2019-11-05 20:49 - 2010-02-04 10:01 - 000078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2019-11-05 20:49 - 2010-02-04 10:01 - 000074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2019-11-05 20:49 - 2010-02-04 10:01 - 000024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2019-11-05 20:49 - 2010-02-04 10:01 - 000022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2019-11-05 20:49 - 2009-09-04 17:44 - 000517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2019-11-05 20:49 - 2009-09-04 17:44 - 000515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2019-11-05 20:49 - 2009-09-04 17:44 - 000238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2019-11-05 20:49 - 2009-09-04 17:44 - 000176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2019-11-05 20:49 - 2009-09-04 17:44 - 000073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2019-11-05 20:49 - 2009-09-04 17:44 - 000069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2019-11-05 20:49 - 2009-09-04 17:29 - 005554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2019-11-05 20:49 - 2009-09-04 17:29 - 005501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2019-11-05 20:49 - 2009-09-04 17:29 - 002582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2019-11-05 20:49 - 2009-09-04 17:29 - 002475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2019-11-05 20:49 - 2009-09-04 17:29 - 001974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2019-11-05 20:49 - 2009-09-04 17:29 - 001892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2019-11-05 20:49 - 2009-09-04 17:29 - 000523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2019-11-05 20:49 - 2009-09-04 17:29 - 000453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2019-11-05 20:49 - 2009-09-04 17:29 - 000285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2019-11-05 20:49 - 2009-09-04 17:29 - 000235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2019-11-05 20:49 - 2009-03-16 14:18 - 000521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2019-11-05 20:49 - 2009-03-16 14:18 - 000517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2019-11-05 20:49 - 2009-03-16 14:18 - 000235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2019-11-05 20:49 - 2009-03-16 14:18 - 000174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2019-11-05 20:49 - 2009-03-16 14:18 - 000024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2019-11-05 20:49 - 2009-03-16 14:18 - 000022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2019-11-05 20:49 - 2009-03-09 15:27 - 005425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2019-11-05 20:49 - 2009-03-09 15:27 - 004178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2019-11-05 20:49 - 2009-03-09 15:27 - 002430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2019-11-05 20:49 - 2009-03-09 15:27 - 001846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2019-11-05 20:49 - 2009-03-09 15:27 - 000520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2019-11-05 20:49 - 2009-03-09 15:27 - 000453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2019-11-05 20:49 - 2008-10-27 10:04 - 000518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2019-11-05 20:49 - 2008-10-27 10:04 - 000514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2019-11-05 20:49 - 2008-10-27 10:04 - 000235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2019-11-05 20:49 - 2008-10-27 10:04 - 000175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2019-11-05 20:49 - 2008-10-27 10:04 - 000074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2019-11-05 20:49 - 2008-10-27 10:04 - 000070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2019-11-05 20:49 - 2008-10-27 10:04 - 000025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2019-11-05 20:49 - 2008-10-27 10:04 - 000023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2019-11-05 20:49 - 2008-10-15 06:22 - 005631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2019-11-05 20:49 - 2008-10-15 06:22 - 004379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2019-11-05 20:49 - 2008-10-15 06:22 - 002605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2019-11-05 20:49 - 2008-10-15 06:22 - 002036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2019-11-05 20:49 - 2008-10-15 06:22 - 000519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2019-11-05 20:49 - 2008-10-15 06:22 - 000452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2019-11-05 20:49 - 2008-07-31 10:41 - 000238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2019-11-05 20:49 - 2008-07-31 10:41 - 000177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2019-11-05 20:49 - 2008-07-31 10:41 - 000072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2019-11-05 20:49 - 2008-07-31 10:41 - 000068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2019-11-05 20:49 - 2008-07-31 10:40 - 000513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2019-11-05 20:49 - 2008-07-31 10:40 - 000509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2019-11-05 20:49 - 2008-07-10 11:01 - 000467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2019-11-05 20:49 - 2008-07-10 11:00 - 004992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2019-11-05 20:49 - 2008-07-10 11:00 - 003851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2019-11-05 20:49 - 2008-07-10 11:00 - 001942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2019-11-05 20:49 - 2008-07-10 11:00 - 001493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2019-11-05 20:49 - 2008-07-10 11:00 - 000540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2019-11-05 20:49 - 2008-05-30 14:19 - 000511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2019-11-05 20:49 - 2008-05-30 14:19 - 000507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2019-11-05 20:49 - 2008-05-30 14:18 - 000238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2019-11-05 20:49 - 2008-05-30 14:18 - 000177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2019-11-05 20:49 - 2008-05-30 14:17 - 000068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2019-11-05 20:49 - 2008-05-30 14:17 - 000065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2019-11-05 20:49 - 2008-05-30 14:17 - 000025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2019-11-05 20:49 - 2008-05-30 14:16 - 000028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2019-11-05 20:49 - 2008-05-30 14:11 - 004991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2019-11-05 20:49 - 2008-05-30 14:11 - 003850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2019-11-05 20:49 - 2008-05-30 14:11 - 001941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2019-11-05 20:49 - 2008-05-30 14:11 - 001491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2019-11-05 20:49 - 2008-05-30 14:11 - 000540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2019-11-05 20:49 - 2008-05-30 14:11 - 000467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2019-11-05 20:49 - 2008-03-05 16:04 - 000489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2019-11-05 20:49 - 2008-03-05 16:03 - 000479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2019-11-05 20:49 - 2008-03-05 16:03 - 000238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2019-11-05 20:49 - 2008-03-05 16:03 - 000177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2019-11-05 20:49 - 2008-03-05 16:00 - 000028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2019-11-05 20:49 - 2008-03-05 16:00 - 000025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2019-11-05 20:49 - 2008-03-05 15:56 - 001860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2019-11-05 20:49 - 2008-03-05 15:56 - 001420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2019-11-05 20:49 - 2008-02-05 23:07 - 000529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2019-11-05 20:49 - 2008-02-05 23:07 - 000462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2019-11-05 20:48 - 2008-03-05 15:56 - 004910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2019-11-05 20:48 - 2008-03-05 15:56 - 003786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2019-11-05 20:48 - 2007-10-22 03:40 - 000411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2019-11-05 20:48 - 2007-10-22 03:39 - 000267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2019-11-05 20:48 - 2007-10-22 03:37 - 000021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2019-11-05 20:48 - 2007-10-22 03:37 - 000017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2019-11-05 20:48 - 2007-10-12 15:14 - 005081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2019-11-05 20:48 - 2007-10-12 15:14 - 003734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2019-11-05 20:48 - 2007-10-12 15:14 - 002006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2019-11-05 20:48 - 2007-10-12 15:14 - 001374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2019-11-05 20:48 - 2007-10-02 09:56 - 000508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2019-11-05 20:48 - 2007-10-02 09:56 - 000444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2019-11-05 20:48 - 2007-07-20 00:57 - 000411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2019-11-05 20:48 - 2007-07-20 00:57 - 000267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2019-11-05 20:48 - 2007-07-19 18:14 - 005073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2019-11-05 20:48 - 2007-07-19 18:14 - 003727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2019-11-05 20:48 - 2007-07-19 18:14 - 001985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2019-11-05 20:48 - 2007-07-19 18:14 - 001358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2019-11-05 20:48 - 2007-07-19 18:14 - 000508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2019-11-05 20:48 - 2007-07-19 18:14 - 000444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2019-11-05 20:48 - 2007-06-20 20:49 - 000409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2019-11-05 20:48 - 2007-06-20 20:46 - 000266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2019-11-05 20:48 - 2007-05-16 16:45 - 004496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2019-11-05 20:48 - 2007-05-16 16:45 - 003497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2019-11-05 20:48 - 2007-05-16 16:45 - 001401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2019-11-05 20:48 - 2007-05-16 16:45 - 001124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2019-11-05 20:48 - 2007-05-16 16:45 - 000506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2019-11-05 20:48 - 2007-05-16 16:45 - 000443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2019-11-05 20:48 - 2007-04-04 18:55 - 000403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2019-11-05 20:48 - 2007-04-04 18:55 - 000261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2019-11-05 20:48 - 2007-04-04 18:53 - 000081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2019-11-05 20:48 - 2007-03-15 16:57 - 000506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2019-11-05 20:48 - 2007-03-15 16:57 - 000443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2019-11-05 20:48 - 2007-03-12 16:42 - 004494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2019-11-05 20:48 - 2007-03-12 16:42 - 003495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2019-11-05 20:48 - 2007-03-12 16:42 - 001400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2019-11-05 20:48 - 2007-03-12 16:42 - 001123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2019-11-05 20:48 - 2007-03-05 12:42 - 000017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2019-11-05 20:48 - 2007-03-05 12:42 - 000015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2019-11-05 20:48 - 2007-01-24 15:27 - 000393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2019-11-05 20:48 - 2007-01-24 15:27 - 000255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2019-11-05 20:48 - 2006-12-08 12:02 - 000251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2019-11-05 20:48 - 2006-12-08 12:00 - 000390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2019-11-05 20:48 - 2006-11-29 13:06 - 004398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2019-11-05 20:48 - 2006-11-29 13:06 - 003426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2019-11-05 20:48 - 2006-11-29 13:06 - 000469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2019-11-05 20:48 - 2006-11-29 13:06 - 000440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2019-11-05 20:48 - 2006-09-28 16:05 - 003977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2019-11-05 20:48 - 2006-09-28 16:05 - 002414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2019-11-05 20:48 - 2006-09-28 16:05 - 000237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2019-11-05 20:48 - 2006-09-28 16:04 - 000364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2019-11-05 20:48 - 2006-07-28 09:31 - 000083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2019-11-05 20:48 - 2006-07-28 09:30 - 000363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2019-11-05 20:48 - 2006-07-28 09:30 - 000236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2019-11-05 20:48 - 2006-07-28 09:30 - 000062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2019-11-05 20:48 - 2006-05-31 07:24 - 000230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2019-11-05 20:48 - 2006-05-31 07:22 - 000354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2019-11-05 20:48 - 2006-03-31 12:41 - 003927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2019-11-05 20:48 - 2006-03-31 12:40 - 002388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2019-11-05 20:48 - 2006-03-31 12:40 - 000352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2019-11-05 20:48 - 2006-03-31 12:39 - 000229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2019-11-05 20:48 - 2006-03-31 12:39 - 000083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2019-11-05 20:48 - 2006-03-31 12:39 - 000062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2019-11-05 20:48 - 2006-02-03 08:43 - 003830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2019-11-05 20:48 - 2006-02-03 08:43 - 002332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2019-11-05 20:48 - 2006-02-03 08:42 - 000355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2019-11-05 20:48 - 2006-02-03 08:42 - 000230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2019-11-05 20:48 - 2006-02-03 08:41 - 000016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2019-11-05 20:48 - 2006-02-03 08:41 - 000014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2019-11-05 20:48 - 2005-12-05 18:09 - 003815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2019-11-05 20:48 - 2005-12-05 18:09 - 002323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2019-11-05 20:48 - 2005-07-22 19:59 - 003807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2019-11-05 20:48 - 2005-07-22 19:59 - 002319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2019-11-05 20:48 - 2005-05-26 15:34 - 003767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2019-11-05 20:48 - 2005-05-26 15:34 - 002297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2019-11-05 20:48 - 2005-03-18 17:19 - 003823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2019-11-05 20:48 - 2005-03-18 17:19 - 002337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2019-11-05 20:48 - 2005-02-05 19:45 - 003544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2019-11-05 20:48 - 2005-02-05 19:45 - 002222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2019-11-05 01:14 - 2019-11-12 16:06 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-11-04 15:22 - 2019-11-21 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2019-11-03 22:49 - 2019-11-03 22:49 - 000000946 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.10.14.lnk
2019-11-03 20:24 - 2019-11-03 20:24 - 000000000 ____D C:\ProgramData\Codemasters
2019-11-01 19:03 - 2019-11-21 17:47 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blackmagic Design
2019-10-29 18:08 - 2019-11-21 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2019-10-29 18:08 - 2019-10-29 18:08 - 000001816 _____ C:\Users\Public\Desktop\iTunes.lnk
2019-10-29 18:08 - 2019-10-29 18:08 - 000001816 _____ C:\ProgramData\Desktop\iTunes.lnk
2019-10-29 18:08 - 2019-10-29 18:08 - 000000000 ____D C:\Program Files\iTunes
2019-10-29 18:08 - 2019-10-29 18:08 - 000000000 ____D C:\Program Files\iPod
2019-10-29 18:04 - 2019-11-21 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2019-10-29 18:04 - 2019-10-29 18:04 - 000000599 _____ C:\Users\Public\Desktop\Fraps.lnk
2019-10-29 18:04 - 2019-10-29 18:04 - 000000599 _____ C:\ProgramData\Desktop\Fraps.lnk
2019-10-29 18:04 - 2019-10-29 18:04 - 000000000 ____D C:\Fraps
2019-10-29 15:24 - 2019-11-21 17:47 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2019-10-29 15:24 - 2019-10-29 15:24 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Zoom
2019-10-28 03:19 - 2019-11-21 20:43 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2019-10-28 03:14 - 2019-10-28 03:14 - 000000000 ____D C:\ProgramData\PUBG
2019-10-23 13:28 - 2019-11-21 20:42 - 000001209 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-22 13:53 - 2019-03-18 23:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-11-22 13:34 - 2019-03-18 23:50 - 000000000 ____D C:\WINDOWS\INF
2019-11-22 13:29 - 2019-08-15 12:04 - 000000000 ____D C:\Users\jonpr\AppData\LocalLow\Mozilla
2019-11-22 12:25 - 2019-08-16 13:03 - 000000000 ____D C:\ProgramData\NVIDIA
2019-11-22 03:10 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\appcompat
2019-11-21 20:46 - 2019-03-18 23:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-11-21 20:46 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-11-21 20:45 - 2019-08-22 21:55 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\LGHUB
2019-11-21 20:45 - 2019-08-22 21:55 - 000000000 ____D C:\Users\jonpr\AppData\Local\LGHUB
2019-11-21 20:45 - 2019-08-15 09:50 - 000000000 ____D C:\Users\jonpr\AppData\Local\PlaceholderTileLogoFolder
2019-11-21 20:43 - 2019-10-22 15:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2019-11-21 20:43 - 2019-10-08 02:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Burnout™ Paradise Remastered
2019-11-21 20:43 - 2019-10-08 01:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends
2019-11-21 20:43 - 2019-09-30 23:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoProc
2019-11-21 20:43 - 2019-09-24 15:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Black Ops 4
2019-11-21 20:43 - 2019-09-19 13:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dead Space
2019-11-21 20:43 - 2019-09-19 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 1
2019-11-21 20:43 - 2019-09-19 11:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Titanfall™ 2
2019-11-21 20:43 - 2019-09-18 13:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.3
2019-11-21 20:43 - 2019-09-03 08:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Inkscape 0.92.4
2019-11-21 20:43 - 2019-09-03 00:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PostgreSQL 9.5
2019-11-21 20:43 - 2019-09-02 13:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeaZip
2019-11-21 20:43 - 2019-08-27 16:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda.net Launcher
2019-11-21 20:43 - 2019-08-22 16:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
2019-11-21 20:43 - 2019-08-21 18:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NAPS2
2019-11-21 20:43 - 2019-08-21 18:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISA2 basic
2019-11-21 20:43 - 2019-08-18 09:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskMark6
2019-11-21 20:43 - 2019-08-18 09:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2019-11-21 20:43 - 2019-08-16 19:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Westwood Online
2019-11-21 20:43 - 2019-08-16 19:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Westwood Chat
2019-11-21 20:43 - 2019-08-16 13:19 - 000016377 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2019-11-21 20:43 - 2019-08-16 13:19 - 000013447 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2019-11-21 20:43 - 2019-08-16 13:19 - 000012178 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2019-11-21 20:43 - 2019-08-16 13:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-11-21 20:43 - 2019-08-15 12:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio
2019-11-21 20:43 - 2019-08-15 12:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2019-11-21 20:43 - 2019-08-15 12:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2019-11-21 20:43 - 2019-08-15 12:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2019-11-21 20:43 - 2019-08-15 12:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2019-11-21 20:43 - 2019-03-18 23:52 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
2019-11-21 20:43 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-11-21 20:43 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-11-21 20:43 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\spool
2019-11-21 20:43 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-11-21 20:43 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\catroot2.old
2019-11-21 20:43 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\ServiceState
2019-11-21 20:43 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-11-21 20:43 - 2019-03-18 23:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-11-21 20:43 - 2019-03-18 23:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-11-21 20:43 - 2019-03-18 23:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-11-21 20:43 - 2019-03-18 23:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-11-21 20:43 - 2018-09-15 02:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2019-11-21 20:42 - 2019-03-18 23:52 - 000000000 __RHD C:\Users\Public\Libraries
2019-11-21 20:32 - 2019-09-03 08:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2019-11-21 20:32 - 2019-09-03 00:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blackmagic Design
2019-11-21 20:32 - 2019-09-02 13:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS
2019-11-21 20:32 - 2019-08-15 12:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2019-11-21 20:32 - 2019-08-15 09:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2019-11-21 20:32 - 2019-08-15 09:51 - 000000000 ____D C:\Program Files\Realtek
2019-11-21 20:30 - 2019-03-18 23:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-11-21 20:30 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-11-21 20:30 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-11-21 20:30 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-11-21 20:30 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\ShellComponents
2019-11-21 20:30 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-11-21 20:30 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\DiagTrack
2019-11-21 20:30 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-11-21 20:25 - 2019-03-18 23:56 - 000000000 ____D C:\WINDOWS\Setup
2019-11-21 18:57 - 2019-03-18 23:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-11-21 18:40 - 2019-10-10 14:55 - 000031880 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
2019-11-21 18:40 - 2019-09-11 19:27 - 001321096 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2019-11-21 18:40 - 2019-09-11 19:27 - 000149640 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2019-11-21 18:40 - 2019-09-11 19:27 - 000088200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2019-11-21 18:39 - 2019-08-15 09:59 - 000000000 ____D C:\Users\jonpr\AppData\Local\PackageStaging
2019-11-21 18:39 - 2019-08-15 09:49 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-11-21 18:39 - 2019-08-15 09:49 - 000000000 ___RD C:\Users\jonpr\3D Objects
2019-11-21 18:20 - 2019-08-15 12:03 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-11-21 17:52 - 2019-08-15 10:26 - 000000000 ____D C:\Windows10Upgrade
2019-11-21 17:52 - 2019-03-18 23:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-11-21 17:52 - 2019-03-18 23:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-11-21 17:51 - 2019-08-15 09:50 - 000000000 ___RD C:\Users\jonpr\OneDrive
2019-11-21 17:51 - 2019-03-18 23:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-11-21 17:49 - 2019-09-19 10:24 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iCloud
2019-11-21 17:49 - 2019-08-22 15:46 - 000000000 ____D C:\Users\Public\Creative
2019-11-21 17:49 - 2019-03-18 23:52 - 000000000 __RSD C:\WINDOWS\Media
2019-11-21 17:47 - 2019-10-22 13:24 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2019-11-21 17:47 - 2019-09-17 15:54 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2019-11-21 17:47 - 2019-08-29 17:30 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2019-11-21 17:47 - 2019-08-17 22:10 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-11-21 17:47 - 2019-08-15 12:42 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z
2019-11-21 17:47 - 2019-08-15 12:35 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HandBrake
2019-11-21 17:47 - 2019-08-15 12:17 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
2019-11-21 17:47 - 2019-08-15 12:05 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2019-11-21 17:47 - 2019-08-15 09:49 - 000000000 ____D C:\Users\jonpr\AppData\Local\Packages
2019-11-21 17:45 - 2019-08-16 13:03 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-11-21 17:45 - 2019-08-15 09:51 - 000561169 _____ C:\WINDOWS\system32\Drivers\rtwavesskdy.dat
2019-11-21 17:45 - 2019-08-15 09:51 - 000113697 _____ C:\WINDOWS\system32\Drivers\rtwavesvolpro.dat
2019-11-21 17:45 - 2019-08-15 09:51 - 000031095 _____ C:\WINDOWS\system32\Drivers\rtwavesEFX.dat
2019-11-21 17:45 - 2019-08-15 09:51 - 000018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys
2019-11-21 17:45 - 2019-08-15 09:51 - 000010945 _____ C:\WINDOWS\system32\Drivers\rtwavesMFX.dat
2019-11-21 17:45 - 2019-08-15 09:51 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-11-21 17:45 - 2019-08-15 09:51 - 000000000 ____D C:\WINDOWS\system32\RTCOM
2019-11-21 17:45 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2019-11-21 16:53 - 2019-08-15 10:32 - 000000036 _____ C:\WINDOWS\progress.ini
2019-11-21 16:47 - 2019-08-15 10:26 - 000000731 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Update Assistant.lnk
2019-11-21 16:31 - 2019-08-15 12:52 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\vlc
2019-11-21 16:08 - 2019-08-22 16:00 - 000000000 ____D C:\Users\jonpr\AppData\Local\ElevatedDiagnostics
2019-11-20 15:58 - 2019-08-15 12:07 - 000000000 ____D C:\Program Files (x86)\Steam
2019-11-19 18:07 - 2019-08-15 10:00 - 000000000 ____D C:\ProgramData\Packages
2019-11-19 14:45 - 2019-09-15 19:11 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\foobar2000
2019-11-19 14:45 - 2019-08-20 22:41 - 000000000 ____D C:\Users\jonpr\AppData\Local\babl-0.1
2019-11-19 14:45 - 2019-08-15 12:05 - 000000000 ____D C:\Users\jonpr\AppData\Local\Ubisoft Game Launcher
2019-11-18 19:16 - 2019-08-20 22:43 - 000000000 ____D C:\Users\jonpr\AppData\Local\gtk-2.0
2019-11-17 06:01 - 2019-08-15 12:16 - 000000000 ____D C:\Users\jonpr\AppData\Local\Battle.net
2019-11-17 06:01 - 2019-08-15 12:07 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Origin
2019-11-17 06:01 - 2019-08-15 12:07 - 000000000 ____D C:\ProgramData\Origin
2019-11-17 06:00 - 2019-08-15 12:16 - 000000000 ____D C:\Program Files (x86)\Battle.net
2019-11-16 21:23 - 2019-10-08 01:16 - 000000000 ____D C:\Program Files (x86)\Rockstar Games
2019-11-16 21:23 - 2019-09-03 08:40 - 000000000 ____D C:\Program Files\Rockstar Games
2019-11-16 12:44 - 2019-08-15 12:53 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\obs-studio
2019-11-16 11:19 - 2019-09-30 23:33 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\VideoProc
2019-11-15 15:08 - 2019-08-16 13:12 - 000000000 ____D C:\Users\jonpr\AppData\Local\NVIDIA
2019-11-14 22:01 - 2019-09-19 11:13 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
2019-11-14 22:01 - 2019-08-15 12:05 - 000000000 ____D C:\ProgramData\Package Cache
2019-11-14 21:51 - 2019-08-16 14:49 - 000000000 ____D C:\Users\jonpr\AppData\Local\CrashDumps
2019-11-14 09:31 - 2019-08-15 09:55 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-11-14 09:30 - 2019-08-15 09:55 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-11-13 16:16 - 2019-08-15 09:53 - 000748816 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2019-11-12 19:24 - 2019-08-15 12:16 - 000000000 ____D C:\Program Files (x86)\Origin
2019-11-12 16:07 - 2019-09-19 10:24 - 000000000 ___RD C:\Users\jonpr\iCloudDrive
2019-11-12 16:06 - 2019-08-15 12:04 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-11-11 02:16 - 2019-08-15 10:46 - 000000000 ____D C:\Users\jonpr\AppData\Local\D3DSCache
2019-11-09 12:53 - 2019-09-19 10:19 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\HandBrake
2019-11-09 04:04 - 2019-09-15 19:11 - 000001186 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk
2019-11-09 04:04 - 2019-09-15 19:11 - 000000000 ____D C:\Program Files (x86)\foobar2000
2019-11-07 18:58 - 2019-08-22 15:19 - 000009614 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1
2019-11-06 02:01 - 2019-08-15 12:04 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-11-05 20:49 - 2019-10-08 01:44 - 000000839 _____ C:\Users\Public\Desktop\Apex Legends.lnk
2019-11-05 20:49 - 2019-10-08 01:44 - 000000839 _____ C:\ProgramData\Desktop\Apex Legends.lnk
2019-11-05 00:50 - 2019-08-16 13:03 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-11-05 00:50 - 2019-08-16 13:03 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-11-05 00:49 - 2019-08-16 13:03 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-11-04 20:15 - 2019-08-15 12:03 - 000000000 ____D C:\Program Files (x86)\Google
2019-11-03 20:24 - 2019-08-17 11:21 - 000000000 ____D C:\Users\jonpr\OneDrive\Documents\My Games
2019-10-29 20:19 - 2019-09-03 00:25 - 000000000 ____D C:\Program Files (x86)\Blackmagic Design
2019-10-29 18:20 - 2019-08-15 12:35 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\audacity
2019-10-29 18:18 - 2019-08-29 17:30 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\Discord
2019-10-29 18:14 - 2019-10-06 09:40 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\slobs-client
2019-10-29 18:13 - 2019-10-06 09:40 - 000000000 ____D C:\Users\jonpr\AppData\Roaming\obs-studio-node-server
2019-10-29 18:13 - 2019-09-13 15:46 - 000000000 ____D C:\Program Files\Streamlabs OBS
2019-10-29 14:01 - 2019-08-16 13:12 - 000000000 ____D C:\Users\jonpr\AppData\Local\NVIDIA Corporation
2019-10-28 20:17 - 2019-08-15 12:44 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-24 09:01 - 2019-08-16 13:12 - 002845208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2019-10-24 09:01 - 2019-08-16 13:12 - 002209136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2019-10-24 09:01 - 2019-08-16 13:12 - 001323112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll

==================== Files in the root of some directories ========

2019-09-18 14:57 - 2019-09-18 14:57 - 000000000 _____ () C:\Users\jonpr\AppData\Local\oobelibMkey.log
2019-11-19 16:52 - 2019-11-19 16:52 - 000007296 _____ () C:\Users\jonpr\AppData\Local\recently-used.xbel

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-11-2019
Ran by jonpr (22-11-2019 14:06:09)
Running from S:\Downloads
Windows 10 Pro Version 1909 18363.476 (X64) (2019-11-21 22:52:08)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2868613054-3718284689-2572456167-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2868613054-3718284689-2572456167-503 - Limited - Disabled)
ebony (S-1-5-21-2868613054-3718284689-2572456167-1004 - Limited - Enabled) => C:\Users\ebony
Guest (S-1-5-21-2868613054-3718284689-2572456167-501 - Limited - Disabled)
jonpr (S-1-5-21-2868613054-3718284689-2572456167-1001 - Administrator - Enabled) => C:\Users\jonpr
postgres (S-1-5-21-2868613054-3718284689-2572456167-1002 - Limited - Enabled) => C:\Users\postgres
WDAGUtilityAccount (S-1-5-21-2868613054-3718284689-2572456167-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Photoshop CC 2019 (HKLM-x32\...\PHSP_20_0) (Version: 20.0.0 - Adobe Systems Incorporated)
AltServer (HKLM-x32\...\{2535A529-DB80-4BC5-BC95-D2AB7C9660DD}) (Version: 1.0.1 - Riley Testut)
Anthem™ (HKLM-x32\...\{57b4eaa0-f1f5-407e-afbd-2db397381ad8}) (Version: 1.0.58.44883 - Electronic Arts)
Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.2.4 - Electronic Arts, Inc.)
Apple Application Support (32-bit) (HKLM-x32\...\{BED24701-751B-41C5-8888-A8EABAB9FE8C}) (Version: 8.1 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{88F21C94-88AF-4665-AF4F-FECB1FA059B9}) (Version: 8.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{6CECF0FB-EE71-4FE5-8AE0-FA007408934A}) (Version: 13.0.0.38 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A3985C05-7386-411F-A4BF-32A73F37EB44}) (Version: 2.6.3.1 - Apple Inc.)
Assassin's Creed Origins (HKLM-x32\...\Uplay Install 3539) (Version:  - Ubisoft)
Audacity 2.3.2 (HKLM-x32\...\Audacity_is1) (Version: 2.3.2 - Audacity Team)
balenaEtcher 1.5.57 (HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\d2f3b6c7-6f49-59e2-b8a5-f72e33900c2b) (Version: 1.5.57 - Balena Inc.)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.57.44284 - Electronic Arts)
Bethesda.net Launcher (HKLM-x32\...\{3448917E-E4FE-4E30-9502-9FD52EABB6F5}_is1) (Version: 1.51.0 - Bethesda Softworks)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Burnout™ Paradise Remastered (HKLM-x32\...\{ADF3783C-C4B7-46A0-A0A6-EC4CA30479BE}) (Version: 1.0.0.0 - Electronic Arts, Inc.)
Call of Duty Black Ops 4 (HKLM-x32\...\Call of Duty Black Ops 4) (Version:  - Blizzard Entertainment)
CPUID CPU-Z 1.90 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.90 - CPUID, Inc.)
Creative Media Toolbox 6 (HKLM-x32\...\{F1A14CB2-A048-45A6-AFDA-3571296E1D76}) (Version: 6.02 - Creative Technology Limited)
Creative Music Server (HKLM-x32\...\Music Server) (Version: 1.01 - Creative Technology Limited)
Creative Smart Recorder (HKLM-x32\...\Smart Recorder) (Version: 2.20 - Creative Technology Limited)
Creative WaveStudio 7 (HKLM-x32\...\WaveStudio 7) (Version: 7.14 - Creative Technology Limited)
CrystalDiskInfo 8.2.4 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 8.2.4 - Crystal Dew World)
CrystalDiskMark 6.0.2 (HKLM\...\CrystalDiskMark6_is1) (Version: 6.0.2 - Crystal Dew World)
DaVinci Resolve (HKLM\...\{4DA063F8-F151-4D1E-8BC2-43190DE2D31F}) (Version: 16.1.1005 - Blackmagic Design)
DaVinci Resolve Keyboards (HKLM\...\{04F776FB-37A2-4116-84F2-6CF3D731999D}) (Version: 1.0.0.0 - Blackmagic Design)
DaVinci Resolve Panels (HKLM\...\{74ADC138-4768-4C5D-8123-B17527E513B5}) (Version: 1.3.1.0 - Blackmagic Design)
Dead Cells (HKLM-x32\...\{77B0D30B-43DB-464C-B02F-0B9DD13865E4}) (Version: 1.5.0.0 - Motion Twin)
Dead Space™ (HKLM-x32\...\{9789E33B-317A-44B2-AF9A-FF8708AD93E0}) (Version: 3.0.0.222 - Electronic Arts)
Destiny 2 (HKLM-x32\...\Destiny 2) (Version:  - Blizzard Entertainment)
Discord (HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\Discord) (Version: 0.0.305 - Discord Inc.)
Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.03 - Creative Technology Limited)
DTS Connect Pack (HKLM-x32\...\DTS Connect Pack) (Version: 1.00 - Creative Technology Limited)
Epic Games Launcher (HKLM-x32\...\{5B340CD5-07E3-41AA-9117-0A0EC863E454}) (Version: 1.1.220.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.11 - Blackmagic Design)
Fairlight Studio Utility (HKLM\...\{8F81CF78-0ABF-45A7-9C22-C16D3BB6894A}) (Version: 1.1.1.0 - Blackmagic Design)
foobar2000 v1.4.8 (HKLM-x32\...\foobar2000) (Version: 1.4.8 - Peter Pawlowski)
FormatFactory 4.9.0.0 (HKLM-x32\...\FormatFactory) (Version: 4.9.0.0 - Free Time)
Fraps (HKLM-x32\...\Fraps) (Version:  - )
GIMP 2.10.14 (HKLM\...\GIMP-2_is1) (Version: 2.10.14 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.108 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
Grand Theft Auto V (HKLM-x32\...\{5EFC6C07-6B87-43FC-9524-F9E967241741}) (Version: 1.0.1737.6 - Rockstar Games)
HandBrake 1.2.2 (HKLM-x32\...\HandBrake) (Version: 1.2.2 - )
iCloud (HKLM\...\{576BC8FA-1891-47C8-8A23-F3DDB78C06DE}) (Version: 7.15.0.10 - Apple Inc.)
Inkscape 0.92.4 (HKLM\...\{81922150-317E-4BB0-A31D-FF1C14F707C5}) (Version: 0.92.4.0 - Inkscape project)
ISA2 basic 2.1.5 (HKLM-x32\...\{F320039E-800C-4DFB-9382-57E72CD551C0}_is1) (Version: 2.1.5 - Scripture4All Publishing)
iTunes (HKLM\...\{38749252-C55E-44D9-9CB6-52199D0173AB}) (Version: 12.10.2.3 - Apple Inc.)
Kinect for Windows Speech Recognition Language Pack (en-AU) (HKLM-x32\...\{48CEC0A3-AE10-4EE3-AC62-76D3D58792E5}) (Version: 11.0.7400.336 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LibreOffice 6.3.1.2 (HKLM\...\{46BF4998-7CC7-43AA-8D4C-D43DEFB24493}) (Version: 6.3.1.2 - The Document Foundation)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version:  - Logitech)
Logitech SetPoint 6.69 (HKLM\...\sp6) (Version: 6.69.123 - Logitech)
Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.6.8627.1 - Waves Audio Ltd.) Hidden
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.22.27821 (HKLM-x32\...\{6361b579-2795-4886-b2a8-53d5239b6452}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.22.27821 (HKLM-x32\...\{5bfc1380-fd35-4b85-9715-7351535d077e}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mozilla Firefox 70.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 70.0.1 (x64 en-US)) (Version: 70.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.0.2 - Mozilla)
NAPS2 6.1.2 (HKLM-x32\...\NAPS2 (Not Another PDF Scanner 2)_is1) (Version:  - Ben Olden-Cooligan)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.1.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.1.57 - NVIDIA Corporation)
NVIDIA Graphics Driver 441.20 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.20 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 23.2.1 - OBS Project)
Origin (HKLM-x32\...\Origin) (Version: 10.5.55.33574 - Electronic Arts, Inc.)
PeaZip 6.7.2 (WIN64) (HKLM\...\{5A2BC38A-406C-4A5B-BF45-6991F9A05325}_is1) (Version: 6.7.2 - Giorgio Tani)
PostgreSQL 9.5  (HKLM\...\PostgreSQL 9.5) (Version: 9.5 - PostgreSQL Global Development Group)
Realtek Audio COM Components (HKLM-x32\...\{2355B503-9B11-4449-861D-1C1748B26320}) (Version: 1.0.2 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6111 - Realtek Semiconductor Corp.)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.15.182 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.4.1 - Rockstar Games)
Sound Blaster Z-Series (HKLM-x32\...\{DAB64FB1-0BBB-486E-9C57-A3E34F463AEB}) (Version: 1.01.10 - Creative Technology Limited)
Sound Blaster Z-Series Extras (HKLM-x32\...\{9D9DB4BA-E352-4AC8-AD2B-B10104F5AB80}) (Version: 1.0 - Creative Technology Limited)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Steep (HKLM-x32\...\Uplay Install 3279) (Version:  - Ubisoft)
Streamlabs OBS 0.17.1 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.17.1 - General Workings, Inc.)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version:  - TechPowerUp)
Titanfall™ 2 (HKLM-x32\...\{4BD80373-FEE7-45B6-8249-6E8E98717405}) (Version: 1.0.1.3 - Electronic Arts, Inc.)
Twitch (HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
Uplay (HKLM-x32\...\Uplay) (Version: 94.0 - Ubisoft)
VEGAS Pro 16.0 (HKLM\...\{3D82310F-FE3E-11E8-9448-00155D6302F2}) (Version: 16.0.352 - VEGAS)
VEGAS Pro 17.0 (HKLM\...\{E649B5F0-B27C-11E9-B856-A5146957F833}) (Version: 17.0.284 - VEGAS)
VideoProc (HKLM-x32\...\VideoProc) (Version: 3.4 - Digiarty, Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN)
WestwoodChat (HKLM-x32\...\{7CAE6A67-AF7B-4A6A-8705-8AFACA45BB60}) (Version: 1.0.0.0 - WestwoodChat)
WestwoodOnline (HKLM-x32\...\{BBCD6D56-8A26-4DDE-9482-DBC9C7B7341D}) (Version: 1.0.0.0 - WestwoodOnline)
Windows 10 Update Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22925 - Microsoft Corporation)
Zoom (HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\ZoomUMX) (Version: 4.5 - Zoom Video Communications, Inc.)

Packages:
=========
Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_2.8.0.1_neutral__6e5tt8cgb93ep [2019-11-07] (Canon Inc.)
DirectX -> C:\Program Files\WindowsApps\Microsoft.DirectXRuntime_9.29.952.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation)
DirectX -> C:\Program Files\WindowsApps\Microsoft.DirectXRuntime_9.29.952.0_x86__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation)
Forza Horizon 4 -> C:\Program Files\WindowsApps\Microsoft.SunriseBaseGame_1.367.746.2_x64__8wekyb3d8bbwe [2019-11-21] (Microsoft Studios)
Forza Horizon 4 Formula Drift Car Pack -> C:\Program Files\WindowsApps\Microsoft.FormulaDriftCarPack_1.0.3.2_neutral__8wekyb3d8bbwe [2019-08-16] (Microsoft Studios)
Forza Hub -> C:\Program Files\WindowsApps\Microsoft.Lucille_1.0.4.0_x64__8wekyb3d8bbwe [2019-08-15] (Microsoft Studios)
Forza Motorsport 7 -> C:\Program Files\WindowsApps\Microsoft.ApolloBaseGame_1.174.4791.2_x64__8wekyb3d8bbwe [2019-08-17] (Microsoft Studios)
Forza Motorsport 7 Hoonigan Car Pack -> C:\Program Files\WindowsApps\Microsoft.ForzaMotorsport7PreorderBonus_1.3.3.2_neutral__8wekyb3d8bbwe [2019-08-17] (Microsoft Studios)
Gaming Services -> C:\Program Files\WindowsApps\Microsoft.GamingServices_1.35.19001.0_x64__8wekyb3d8bbwe [2019-11-21] (Microsoft Corporation)
Gears 5 -> C:\Program Files\WindowsApps\Microsoft.HalifaxBaseGame_1.1.109.0_x64__8wekyb3d8bbwe [2019-11-21] (Microsoft Studios)
Halo: The Master Chief Collection -> C:\Program Files\WindowsApps\Microsoft.Chelan_1.1000.0.0_x64__8wekyb3d8bbwe [2019-11-19] (Microsoft Studios)
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_41.1788.50991.0_x86__8xx8rvfyw5nnt [2019-08-18] (Instagram)
Mail and Calendar -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12228.20206.0_x64__8wekyb3d8bbwe [2019-11-21] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-08-15] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-08-15] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.33.13094.0_x64__8wekyb3d8bbwe [2019-11-13] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.11052.0_x64__8wekyb3d8bbwe [2019-11-08] (Microsoft Studios) [MS Ad]
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.33.13094.0_x64__8wekyb3d8bbwe [2019-11-21] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.956.0_x64__56jybvy8sckqj [2019-09-30] (NVIDIA Corp.)
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-10-06] (Microsoft Corporation)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0 [2019-11-13] (Spotify AB) [Startup Task]
The Master Chief Collection: REACH -> C:\Program Files\WindowsApps\Microsoft.TheMasterChiefCollectionREACH_1.1.0.0_x64__8wekyb3d8bbwe [2019-11-19] (Microsoft Studios)
The Outer Worlds -> C:\Program Files\WindowsApps\PrivateDivision.TheOuterWorldsWindows10_1.0.369.0_x64__hv3d7yfbgr2rp [2019-11-11] (0)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2868613054-3718284689-2572456167-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\jonpr\AppData\Local\Microsoft\OneDrive\19.123.0624.0005\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-2868613054-3718284689-2572456167-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\jonpr\AppData\Local\Microsoft\OneDrive\19.123.0624.0005\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-2868613054-3718284689-2572456167-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\jonpr\AppData\Local\Microsoft\OneDrive\19.123.0624.0005\amd64\FileSyncShell64.dll => No File
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ContextMenuHandlers1: [FormatFactoryShell] -> {A3888923-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files (x86)\FormatFactory\ShellEx64_106.dll -> No File
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2019-10-25] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers4: [FormatFactoryShell] -> {A3888923-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files (x86)\FormatFactory\ShellEx64_106.dll -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c54903cb687d7726\nvshext.dll [2019-11-08] (NVIDIA Corporation -> NVIDIA Corporation)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.FPS1] => C:\WINDOWS\system32\frapsv64.dll [105984 2019-08-30] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2019-08-30] (Beepa P/L) [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Keep - notes and lists.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=hmjkmjkepdijhoojdojkdfohbdgmmhki
ShortcutWithArgument: C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Play Music.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=fahmaaghhglfmonjliepjlchgpgfmobi
ShortcutWithArgument: C:\Users\jonpr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sketchpad 3.5.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=kkghjbajgkcialbbimbifdcjilhcgoim
ShortcutWithArgument: C:\Users\jonpr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Yawanathan - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"
ShortcutWithArgument: C:\Users\jonpr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\225bb61db2f318c1\jqaeda - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 3"

==================== Loaded Modules (Whitelisted) =============

2019-09-03 00:24 - 2016-08-09 00:13 - 000183296 _____ () [File not signed] C:\Program Files\PostgreSQL\9.5\bin\LIBPQ.dll
2019-09-03 00:24 - 2016-07-27 03:08 - 002264576 _____ () [File not signed] C:\Program Files\PostgreSQL\9.5\bin\libxml2.dll
2019-08-22 16:02 - 2009-03-18 15:00 - 000151552 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTCadiEP.dll
2014-07-03 16:22 - 2014-07-03 16:22 - 000555008 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\CTAudEp.dll
2011-09-16 16:04 - 2011-09-16 16:04 - 000238080 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\CTLoadRs.dll
2013-02-27 10:29 - 2013-02-27 10:29 - 000251904 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\HKDetect.dll
2019-09-03 00:24 - 2015-08-26 03:40 - 001687930 _____ (Free Software Foundation) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\libiconv-2.dll
2019-09-03 00:24 - 2015-08-26 03:40 - 000685350 _____ (Free Software Foundation) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\libintl-8.dll
2019-08-15 12:16 - 2019-08-15 12:08 - 001277440 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2019-08-15 12:16 - 2019-08-15 12:08 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2019-09-03 00:24 - 2016-05-05 01:35 - 001655808 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\LIBEAY32.dll
2019-09-03 00:24 - 2016-05-05 01:35 - 000349696 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\PostgreSQL\9.5\bin\SSLEAY32.dll
2019-08-15 12:16 - 2019-08-15 12:08 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2019-11-12 19:24 - 2019-08-15 12:08 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2019-11-12 19:24 - 2019-08-15 12:08 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2019-11-12 19:24 - 2019-08-15 12:08 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2019-11-12 19:24 - 2019-08-15 12:08 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2019-11-12 19:24 - 2019-08-15 12:08 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-09-15 02:31 - 2018-09-15 02:31 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\jonpr\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\imac-pro-5k-ad.jpg
HKU\S-1-5-21-2868613054-3718284689-2572456167-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk"
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\StartupApproved\Run: => "iCloudServices"
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\StartupApproved\Run: => "iCloudPhotos"
HKU\S-1-5-21-2868613054-3718284689-2572456167-1001\...\StartupApproved\Run: => "iCloudDrive"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{93D4FD6A-F4C7-4DD6-8953-D9E00C6927C8}] => (Allow) X:\Game Library\Origin Games\Anthem\Anthem.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{F3BEE3BC-4EE4-4633-ACB7-B5E4AF39BE3F}] => (Allow) X:\Game Library\Origin Games\Anthem\Anthem.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{3F5A4F2B-D1EF-4E94-8FED-66DAA2D6A007}] => (Allow) X:\Game Library\Origin Games\Anthem\AnthemTrial.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1DD59B58-A165-49A0-A035-239D09601499}] => (Allow) X:\Game Library\Origin Games\Anthem\AnthemTrial.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{0E38BD92-A88E-4CEA-BF5D-6DB3FCA1C98E}] => (Allow) X:\Game Library\Origin Games\Dead Cells\deadcells_gl.exe () [File not signed]
FirewallRules: [{29FDD720-2917-45CC-8D22-89BA2566BE2B}] => (Allow) X:\Game Library\Origin Games\Dead Cells\deadcells_gl.exe () [File not signed]
FirewallRules: [{AD94C813-6E1F-4D98-A7A2-4A8035F28867}] => (Allow) X:\Game Library\Origin Games\Dead Cells\deadcells.exe () [File not signed]
FirewallRules: [{A2C4BB6F-A2B7-45FD-A9DA-EAC43AF1DB34}] => (Allow) X:\Game Library\Origin Games\Dead Cells\deadcells.exe () [File not signed]
FirewallRules: [{29BD9539-7BFB-46AB-83D2-4222D839A472}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{83EAD152-9481-4FAF-8B90-30531F13174B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7CC2AF30-ACCF-4C79-AB1B-56FFEF98A3B3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A9534677-80E0-4E91-8351-086E66E153BC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6AD5386F-9DBA-4E44-BEC2-4CF0E49D6E64}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5E36C4F6-20FC-43C3-911E-CC7A8EF36F55}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{79B1B0E9-2C0B-4EDA-B4AD-2C6C30E069E0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{028989BC-CF21-4E07-B9C5-008200544297}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{66A2E67D-89CF-41BA-8CB4-2E33A4735650}] => (Allow) X:\Game Library\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{A73A0195-9F83-44FC-A4BC-CD946B980C58}] => (Allow) X:\Game Library\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{4D9FB966-5276-4372-AF2E-76CA105906B9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{E2E4C435-3CF5-4EAE-B39E-F3298CE04442}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{54E45D88-7622-43A6-8321-BA6E609D92A2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7C49E020-3631-4A0A-8598-BB632F8B80CF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{E1F2FAFA-C483-4456-9C39-92A441293B28}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Legacy of Kain Soul Reaver\kain2.exe () [File not signed]
FirewallRules: [{7F825E18-3DFC-4B34-9CA8-0DC86B451292}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Legacy of Kain Soul Reaver\kain2.exe () [File not signed]
FirewallRules: [{DADF96B9-B3B4-4B91-A19B-DECA30D8DD62}] => (Allow) C:\ProgramData\Blackmagic Design\DaVinci Resolve\Support\QtDecoder\QTDecoder.exe No File
FirewallRules: [{BB87E239-BFF2-4C8B-A008-F2CD90DC1960}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DPDecoder.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{5ED29655-E5BF-49D8-A5D4-C0CA7B71234F}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\OxygenPanelDaemon.exe No File
FirewallRules: [{6053D54B-FC6F-4B6F-BD78-3A2D4B6FCE96}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe No File
FirewallRules: [{0951CD1A-3D84-42E6-BC5B-2B8F57A0DB51}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe () [File not signed]
FirewallRules: [{C73185E8-6737-4C40-A791-2876241E73DE}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe () [File not signed]
FirewallRules: [{9A85443E-33AD-434C-9C32-39D7588F0A5B}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe () [File not signed]
FirewallRules: [{4AB4B23E-06C5-4C3C-8586-907D82F1E900}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe () [File not signed]
FirewallRules: [{2172491B-F8B5-4292-BABF-D04F7376D60F}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe () [File not signed]
FirewallRules: [{5143E977-CCA4-4E32-AD3D-58CA6B895282}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{26EBBFA0-A45B-4580-800F-F6A2536295EB}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{698079A8-21BA-4900-8EB1-66A5E7A10504}] => (Allow) C:\Users\jonpr\AppData\Roaming\Zoom\bin\airhost.exe No File
FirewallRules: [{16FEE9B4-8A33-447F-90CE-7E8B209A02C9}] => (Allow) C:\Users\jonpr\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{2C23BF73-7DAB-4A28-A39C-55A46D08EC54}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{F475DF3B-1107-495D-B6E4-7AA05349925C}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [{A5C9A4B5-3A91-419F-887B-686F94CBB0CC}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{9113A298-83E1-4630-89E0-E60D26A912F8}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [UDP Query User{78B920EF-7B09-4A71-984A-0CA486662A05}X:\game library\call of duty black ops 4\blackops4.exe] => (Allow) X:\game library\call of duty black ops 4\blackops4.exe (Activision Publishing Inc -> Activision Publishing, Inc.)
FirewallRules: [TCP Query User{572EA320-9F41-43D2-A45E-13D541F1DC10}X:\game library\call of duty black ops 4\blackops4.exe] => (Allow) X:\game library\call of duty black ops 4\blackops4.exe (Activision Publishing Inc -> Activision Publishing, Inc.)
FirewallRules: [{713E8A59-3821-4949-B082-0C13C1D10EA4}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Crash Bandicoot - N Sane Trilogy\CrashBandicootNSaneTrilogy.exe (Activision Publishing Inc -> )
FirewallRules: [{4523FCC4-65E5-474B-A027-18E6E879F63F}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Crash Bandicoot - N Sane Trilogy\CrashBandicootNSaneTrilogy.exe (Activision Publishing Inc -> )
FirewallRules: [{54B871B8-23C9-4CED-B947-7CF5CE736AB7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{EDE55B36-98EF-4CBF-A8CF-03393AECDB37}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{535F179F-7E92-41BB-B4AE-C9A48966BDF0}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{400B3161-FAA4-4B5C-A6C5-B351F6755FED}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [UDP Query User{ECD9B20E-BC8B-408D-AD68-96B49D99F490}C:\program files (x86)\altserver\altserver.exe] => (Allow) C:\program files (x86)\altserver\altserver.exe () [File not signed]
FirewallRules: [TCP Query User{69C0FD52-86ED-4C92-8CCE-B41D93009EBB}C:\program files (x86)\altserver\altserver.exe] => (Allow) C:\program files (x86)\altserver\altserver.exe () [File not signed]
FirewallRules: [UDP Query User{EE43C395-14F1-4A67-8338-D61DF7AFCE8D}X:\game library\steamlibrary\steamapps\common\doom\doomx64vk.exe] => (Allow) X:\game library\steamlibrary\steamapps\common\doom\doomx64vk.exe (id Software) [File not signed]
FirewallRules: [TCP Query User{8757DB4A-669C-48A8-AE36-9B881FC0B1B6}X:\game library\steamlibrary\steamapps\common\doom\doomx64vk.exe] => (Allow) X:\game library\steamlibrary\steamapps\common\doom\doomx64vk.exe (id Software) [File not signed]
FirewallRules: [{4501289B-828B-4CAB-94F5-2ADD898551E1}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Destiny 2\destiny2.exe (Bungie Inc. -> Bungie)
FirewallRules: [{9BC0251E-43E7-47A2-99EE-B6540B723BBA}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Destiny 2\destiny2.exe (Bungie Inc. -> Bungie)
FirewallRules: [UDP Query User{42CC6887-0046-4591-90D5-75F2E343D29C}X:\game library\ubisoft\ubisoft game launcher\games\ghost recon breakpoint\grb.exe] => (Allow) X:\game library\ubisoft\ubisoft game launcher\games\ghost recon breakpoint\grb.exe No File
FirewallRules: [TCP Query User{F5A130B1-425D-4727-8FD6-8866B6D94B5B}X:\game library\ubisoft\ubisoft game launcher\games\ghost recon breakpoint\grb.exe] => (Allow) X:\game library\ubisoft\ubisoft game launcher\games\ghost recon breakpoint\grb.exe No File
FirewallRules: [{3C56FAFC-B817-47D5-BB10-3038A712A052}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\NARUTO SHIPPUDEN Ultimate Ninja STORM 4\NSUNS4.exe () [File not signed]
FirewallRules: [{2283214F-7D78-40EC-8DC9-CB0A98B29CF3}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\NARUTO SHIPPUDEN Ultimate Ninja STORM 4\NSUNS4.exe () [File not signed]
FirewallRules: [UDP Query User{2A1D00F0-F99B-4BC0-B456-48171415A906}X:\game library\call of duty modern warfare beta\modernwarfare.exe] => (Allow) X:\game library\call of duty modern warfare beta\modernwarfare.exe No File
FirewallRules: [TCP Query User{A14F3025-D966-491A-A41A-B3C73A1613D5}X:\game library\call of duty modern warfare beta\modernwarfare.exe] => (Allow) X:\game library\call of duty modern warfare beta\modernwarfare.exe No File
FirewallRules: [{068FF16D-48AA-4342-BE53-D8B0AF4FA77B}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Tunche Arena\Tunche.exe () [File not signed]
FirewallRules: [{692CC00E-941B-4C2F-854D-2590F917058C}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Tunche Arena\Tunche.exe () [File not signed]
FirewallRules: [{BE878EE2-A557-4C2D-87FE-40767E4AEB1D}] => (Allow) X:\Game Library\Origin Games\Dead Space\Dead Space.exe (Electronic Arts, Inc. -> )
FirewallRules: [{3BE3A15D-C8D3-44A0-A921-C504601FCA7F}] => (Allow) X:\Game Library\Origin Games\Dead Space\Dead Space.exe (Electronic Arts, Inc. -> )
FirewallRules: [{BA2508FA-9617-4987-A10A-762C408BFFEB}] => (Allow) X:\Game Library\Origin Games\Battlefield 1\bf1.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{4FABFC08-77A6-46AF-B090-DCB7DA15DD6A}] => (Allow) X:\Game Library\Origin Games\Battlefield 1\bf1.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{6AB2C833-7E3C-462B-9862-0CF5121DE88B}] => (Allow) X:\Game Library\Origin Games\Battlefield 1\bf1Trial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{4B7DEFCE-1F35-442C-B25D-80A127ECF87B}] => (Allow) X:\Game Library\Origin Games\Battlefield 1\bf1Trial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{8440DF65-2305-46C7-BAC4-EB1399EF50A4}] => (Allow) X:\Game Library\Origin Games\Titanfall2\Titanfall2_trial.exe (Respawn Entertainment, LLC -> Respawn Entertainment)
FirewallRules: [{8B8094A1-0575-46D0-B243-84F438DDB559}] => (Allow) X:\Game Library\Origin Games\Titanfall2\Titanfall2_trial.exe (Respawn Entertainment, LLC -> Respawn Entertainment)
FirewallRules: [{9CA369F5-83E6-4B65-800C-800D3502A8E2}] => (Allow) X:\Game Library\Origin Games\Titanfall2\Titanfall2.exe (Respawn Entertainment, LLC -> Respawn Entertainment)
FirewallRules: [{B528B673-5554-4F40-8BDE-05787442E7FF}] => (Allow) X:\Game Library\Origin Games\Titanfall2\Titanfall2.exe (Respawn Entertainment, LLC -> Respawn Entertainment)
FirewallRules: [{E8AE61CD-F50E-42AB-8E78-79715AD429E2}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Audiosurf\engine\QuestViewer.exe () [File not signed]
FirewallRules: [{A38E3E29-A064-4AFE-B1F7-8105E5991870}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Audiosurf\engine\QuestViewer.exe () [File not signed]
FirewallRules: [{6522CBB2-F407-4711-A1C9-B74677233D9D}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{6B0DC5D0-F0E6-4994-9900-D3133C780908}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [{7698ACC2-3D5D-4262-95FB-790C7018914E}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{C1499F7C-A546-48F5-B89C-DBA9B8461259}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [{0F1D6323-FE6F-45F9-95D3-A25EAA19F11F}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{7236D89B-A2F1-4339-A364-B816C283CCD8}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\DOOM\DOOMx64.exe (id Software) [File not signed]
FirewallRules: [{325F2674-C688-48FE-8965-62121D9C4A56}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\DOOM\DOOMx64.exe (id Software) [File not signed]
FirewallRules: [{52CA2BAD-3697-402A-80FD-4A08842872FB}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Call of Duty Ghosts\iw6sp64_ship.exe (Activision) [File not signed]
FirewallRules: [{23B1732A-3685-4FCE-8F44-EA7A2D86F3A5}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Call of Duty Ghosts\iw6sp64_ship.exe (Activision) [File not signed]
FirewallRules: [{FD8B5A43-147F-4601-B0D9-40D329122CBF}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\MGS_TPP\mgsvtpp.exe (Konami Digital Entertainment) [File not signed]
FirewallRules: [{5762F80F-D790-43CE-990D-FF85F9F5D925}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\MGS_TPP\mgsvtpp.exe (Konami Digital Entertainment) [File not signed]
FirewallRules: [{A82FCD29-64B5-4B15-A8A7-95F1C8A37FE3}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Emily Wants To Play\EmilyWantsToPlay.exe () [File not signed]
FirewallRules: [{D20CE39B-DCDC-4E36-9593-E823A0B3DD84}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Emily Wants To Play\EmilyWantsToPlay.exe () [File not signed]
FirewallRules: [{EF6554C8-66AD-4C40-BB7D-039D1515B9C4}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\DOOM 3 BFG Edition\Doom3BFG.exe (Bethesda Softworks -> id Software LLC, a ZeniMax Media company) [File not signed]
FirewallRules: [{6707A488-11F9-4016-953F-91D676444793}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\DOOM 3 BFG Edition\Doom3BFG.exe (Bethesda Softworks -> id Software LLC, a ZeniMax Media company) [File not signed]
FirewallRules: [UDP Query User{91E73A29-FFB7-4FFB-AD81-196B210E46BE}X:\game library\grand theft auto v\gta5.exe] => (Allow) X:\game library\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{B4EC9550-E6E6-42D1-A9BB-4FF48D0CC269}X:\game library\grand theft auto v\gta5.exe] => (Allow) X:\game library\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{C1990A7D-8BD9-4D07-A824-960B950124AA}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe No File
FirewallRules: [{E4CDC96F-DA48-4867-BF53-BF29EA00CFB1}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe No File
FirewallRules: [{B172DB08-A75A-4E5D-AC46-85D31F0D4EDA}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\quakechampions\client\bin\pc\QuakeChampions.exe No File
FirewallRules: [{EEAACC79-FE6E-4D79-819C-0874D73F3ADB}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\quakechampions\client\bin\pc\QuakeChampions.exe No File
FirewallRules: [UDP Query User{5F06B002-3C12-45CD-B75F-23DFA65B1B54}X:\game library\ubisoft\ubisoft game launcher\games\ghost recon breakpoint\grb_upp.exe] => (Allow) X:\game library\ubisoft\ubisoft game launcher\games\ghost recon breakpoint\grb_upp.exe No File
FirewallRules: [TCP Query User{4C05D5FA-2137-4558-A8B7-1EDC6B4F7DBE}X:\game library\ubisoft\ubisoft game launcher\games\ghost recon breakpoint\grb_upp.exe] => (Allow) X:\game library\ubisoft\ubisoft game launcher\games\ghost recon breakpoint\grb_upp.exe No File
FirewallRules: [UDP Query User{9B1B83F2-60C0-4821-9EF9-276C5EF609B5}X:\game library\gta5.exe] => (Allow) X:\game library\gta5.exe No File
FirewallRules: [TCP Query User{204E2732-36D1-4877-8E23-E03DB7978362}X:\game library\gta5.exe] => (Allow) X:\game library\gta5.exe No File
FirewallRules: [UDP Query User{E774985C-4406-426C-B85D-41281A3C5EB8}C:\program files\blackmagic design\davinci resolve\fuscript.exe] => (Allow) C:\program files\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [TCP Query User{8D2E1221-1C5E-4C76-A6C1-EA9339638A5E}C:\program files\blackmagic design\davinci resolve\fuscript.exe] => (Allow) C:\program files\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{30C69F21-5163-436F-AE16-C77B70D3DD52}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Project Warlock Arctic Attack\pw_aa_x64.exe No File
FirewallRules: [{36EEF143-80D1-472C-AF81-64D858E29ED2}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Project Warlock Arctic Attack\pw_aa_x64.exe No File
FirewallRules: [{17CEEFBC-E1E6-42B6-BB14-20105A4A36F9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{A773C8C2-4DF5-40EE-B594-223299C02186}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{71F9AE50-5670-4513-8502-5E769FE0223C}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Tomb Raider\TombRaider.exe No File
FirewallRules: [{C1C9F94B-C176-45BB-8A26-B80B283C6F22}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\Tomb Raider\TombRaider.exe No File
FirewallRules: [UDP Query User{F1952453-8494-4A1E-8970-466DA942B27B}X:\game library\steamlibrary\steamapps\common\mk10\binaries\retail\mk10.exe] => (Allow) X:\game library\steamlibrary\steamapps\common\mk10\binaries\retail\mk10.exe No File
FirewallRules: [TCP Query User{B1B748A6-67CE-4DE5-B7E3-28C569C13AE2}X:\game library\steamlibrary\steamapps\common\mk10\binaries\retail\mk10.exe] => (Allow) X:\game library\steamlibrary\steamapps\common\mk10\binaries\retail\mk10.exe No File
FirewallRules: [UDP Query User{15AE0C49-99E1-47A6-ABDB-811E07815238}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [TCP Query User{5C8ADDB5-54D9-4B6A-B8CC-59ADAA7FED21}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [UDP Query User{E2766D2D-1766-4C13-A36B-3668F41A58F6}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [TCP Query User{64685351-1217-422A-8333-AB3380FF5497}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [UDP Query User{A59C7084-0909-432B-9A75-D5032267E101}X:\game library\destiny 2\destiny2.exe] => (Allow) X:\game library\destiny 2\destiny2.exe No File
FirewallRules: [TCP Query User{FB59A0F7-218A-47CD-8E22-847354AA5971}X:\game library\destiny 2\destiny2.exe] => (Allow) X:\game library\destiny 2\destiny2.exe No File
FirewallRules: [{1EACABEF-6369-4270-AD0F-0C1F8A0E1B21}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\MechWarrior Online\Bin64\MWOClient.exe No File
FirewallRules: [{4C1A0C8B-D4E2-451F-AB81-B179E7CFDA57}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\MechWarrior Online\Bin64\MWOClient.exe No File
FirewallRules: [{BF1F1591-9A75-4334-A33B-066AD1A22745}] => (Allow) X:\Game Library\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's The Division 2\TheDivision2.exe No File
FirewallRules: [UDP Query User{C2FA44F2-9E0C-410E-98BB-416E1D23A49F}X:\game library\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) X:\game library\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (Bluehole, Inc. -> Bluehole GinnoGames, Inc.)
FirewallRules: [TCP Query User{31E3B70F-E0FB-4221-BCDF-D2ABD6175DEB}X:\game library\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) X:\game library\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (Bluehole, Inc. -> Bluehole GinnoGames, Inc.)
FirewallRules: [{F5DBBAC8-EBC9-43A9-973B-9D7434187196}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [{A1A03171-79A0-4812-985D-1426973F7B7A}] => (Allow) X:\Game Library\SteamLibrary\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (Bluehole, Inc. -> PUBG Corporation )
FirewallRules: [UDP Query User{B0A5B9D2-5568-405F-B28C-827D61823DE2}X:\game library\origin games\apex\r5apex.exe] => (Allow) X:\game library\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [TCP Query User{6D434BD3-B455-484E-A928-980B458491FC}X:\game library\origin games\apex\r5apex.exe] => (Allow) X:\game library\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [{B8B204EA-2248-48C0-BF42-286A96944D47}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5B5C08E3-4DAC-4291-8201-CE431CD25A7F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{ECC4AB82-1D58-47B5-B8A8-225448D883E4}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{E5EDAE8F-0AE3-491B-8B4A-BA69702562E6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{0142C4F4-15FE-4C7F-9F1C-8F3DC8B23FFC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{C2B77BB5-CD73-40AE-B62B-F387B129B9C8}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{94493634-3AA8-44AB-94FE-9B2DFCE2EB16}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{8FD08268-6A5B-4E87-BAA9-D3399A19D2A1}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FFAD7F16-A98A-4577-904C-18EAC517EBF6}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

21-11-2019 20:43:14 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/21/2019 08:43:52 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (11/21/2019 08:43:52 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (11/21/2019 08:43:52 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (11/21/2019 08:43:52 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (11/21/2019 08:40:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SearchUI.exe, version: 10.0.18362.418, time stamp: 0x5d995690
Faulting module name: edgehtml.dll, version: 11.0.18362.449, time stamp: 0x16d87cfd
Exception code: 0x88985004
Fault offset: 0x00000000006ffb3d
Faulting process id: 0x1af8
Faulting application start time: 0x01d5a0d5e1700a70
Faulting application path: C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
Faulting module path: C:\WINDOWS\SYSTEM32\edgehtml.dll
Report Id: 09ecb2d8-1ffb-4875-b124-df403069f495
Faulting package full name: Microsoft.Windows.Cortana_1.13.0.18362_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: CortanaUI

Error: (11/21/2019 08:40:54 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SearchUI.exe, version: 10.0.18362.418, time stamp: 0x5d995690
Faulting module name: edgehtml.dll, version: 11.0.18362.449, time stamp: 0x16d87cfd
Exception code: 0x88985004
Fault offset: 0x00000000006ffb3d
Faulting process id: 0x12c0
Faulting application start time: 0x01d5a0d5e09fb265
Faulting application path: C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
Faulting module path: C:\WINDOWS\SYSTEM32\edgehtml.dll
Report Id: ea14e1d8-000d-46e7-a0c1-18d0c414db9a
Faulting package full name: Microsoft.Windows.Cortana_1.13.0.18362_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: CortanaUI

Error: (11/21/2019 08:40:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SearchUI.exe, version: 10.0.18362.418, time stamp: 0x5d995690
Faulting module name: edgehtml.dll, version: 11.0.18362.449, time stamp: 0x16d87cfd
Exception code: 0x88985004
Fault offset: 0x00000000006ffb3d
Faulting process id: 0x30e0
Faulting application start time: 0x01d5a0d5df78abe0
Faulting application path: C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
Faulting module path: C:\WINDOWS\SYSTEM32\edgehtml.dll
Report Id: 751da30a-1565-4fec-985b-c9f3d5b9d161
Faulting package full name: Microsoft.Windows.Cortana_1.13.0.18362_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: CortanaUI

Error: (11/21/2019 08:40:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SearchUI.exe, version: 10.0.18362.418, time stamp: 0x5d995690
Faulting module name: edgehtml.dll, version: 11.0.18362.449, time stamp: 0x16d87cfd
Exception code: 0x88985004
Fault offset: 0x00000000006ffb3d
Faulting process id: 0x2e9c
Faulting application start time: 0x01d5a0d5de91dd45
Faulting application path: C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
Faulting module path: C:\WINDOWS\SYSTEM32\edgehtml.dll
Report Id: faf9ee27-4999-4f6b-a315-23af54c5cca7
Faulting package full name: Microsoft.Windows.Cortana_1.13.0.18362_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: CortanaUI


System errors:
=============
Error: (11/21/2019 08:41:01 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x8024001e: Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.2586.0).

Error: (11/21/2019 06:57:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Microsoft Store Install Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (11/21/2019 06:41:01 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80073d02: 9MWPM2CQNLHN-Microsoft.GamingServices.

Error: (11/21/2019 05:47:35 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Network List Service service terminated with the following error:
The device is not ready.

Error: (11/21/2019 05:47:35 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {A47979D2-C419-11D9-A5B4-001185AD2B89} did not register with DCOM within the required timeout.

Error: (11/21/2019 05:46:00 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Sound Blaster Audio Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (11/21/2019 05:45:35 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Network List Service service terminated with the following error:
The device is not ready.

Error: (11/21/2019 05:45:27 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: The Printer Extensions and Notifications service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly.


Windows Defender:
===================================
Date: 2019-11-21 18:41:42.829
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft...48&enterprise=0
Name: Trojan:Win64/CoinMiner.WT
ID: 2147742748
Severity: Severe
Category: Trojan
Path: file:_C:\Windows\System32\winlogui.exe; regkey:_HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\winlogui; runkey:_HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\winlogui
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Windows\explorer.exe
Security intelligence Version: AV: 1.305.2111.0, AS: 1.305.2111.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.16500.1, NIS: 0.0.0.0

Date: 2019-11-21 18:41:23.366
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft...48&enterprise=0
Name: Trojan:Win64/CoinMiner.WT
ID: 2147742748
Severity: Severe
Category: Trojan
Path: file:_C:\Windows\System32\winlogui.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Windows\explorer.exe
Security intelligence Version: AV: 1.305.2111.0, AS: 1.305.2111.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.16500.1, NIS: 0.0.0.0

Date: 2019-11-21 18:39:51.385
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft...26&enterprise=0
Name: Trojan:Win32/Tiggre!plock
ID: 2147723626
Severity: Severe
Category: Trojan
Path: file:_C:\Windows\System32\StartupCheckLibrary.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Windows\System32\rundll32.exe
Security intelligence Version: AV: 1.305.2111.0, AS: 1.305.2111.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.16500.1, NIS: 0.0.0.0

Date: 2019-11-21 18:39:51.068
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft...37&enterprise=0
Name: Trojan:Win32/Bluteal!rfn
ID: 2147724737
Severity: Severe
Category: Trojan
Path: file:_C:\Windows\System32\winscomrssrv.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Windows\System32\rundll32.exe
Security intelligence Version: AV: 1.305.2111.0, AS: 1.305.2111.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.16500.1, NIS: 0.0.0.0

Date: 2019-11-21 20:41:01.531
Description:
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.305.2111.0
Update Source: Microsoft Update Server
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.16500.1
Error code: 0x80240022
Error description: The program can't check for definition updates.

CodeIntegrity:
===================================

Date: 2019-11-22 13:30:00.358
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: Dell Inc. A31 06/05/2019
Motherboard: Dell Inc. 0WR1RF
Processor: Intel® Xeon® CPU E5-2678 v3 @ 2.50GHz
Percentage of memory in use: 16%
Total physical RAM: 49072.67 MB
Available physical RAM: 40739.02 MB
Total Virtual: 56240.67 MB
Available Virtual: 45137.76 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.32 GB) (Free:122.15 GB) NTFS
Drive f: (Seagate2TB) (Fixed) (Total:1863.02 GB) (Free:242.02 GB) NTFS
Drive s: (Side Drive) (Fixed) (Total:238.47 GB) (Free:166.66 GB) NTFS
Drive x: (FireCUDA) (Fixed) (Total:1863 GB) (Free:671.49 GB) NTFS

\\?\Volume{cbde7154-36dd-45dd-991c-3b595b0703c2}\ (Recovery) (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS
\\?\Volume{78676602-2ebf-4720-89c5-5323157ffd5b}\ () (Fixed) (Total:0.55 GB) (Free:0.08 GB) NTFS
\\?\Volume{a7537661-921f-ed59-a758-f2ff8a6db369}\ () (Fixed) (Total:0 GB) (Free:0 GB) NTFS
\\?\Volume{e6cd1cb9-f2cc-fe2b-719d-65ea9c5789a8}\ () (Fixed) (Total:0.01 GB) (Free:0 GB) NTFS
\\?\Volume{1a68038b-a75d-2b67-149d-3ac0436daaa3}\ () (Fixed) (Total:74.61 GB) (Free:0 GB) NTFS
\\?\Volume{4e1bfd98-cd60-4e5a-81ed-be851edb1e63}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: E1DC3C62)

Partition: GPT.

==========================================================
Disk: 1 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 2 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 3 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.
Attempted reading MBR returned 0 bytes.
 Could not read MBR for disk 4.
Attempted reading MBR returned 0 bytes.
 Could not read MBR for disk 5.
Attempted reading MBR returned 0 bytes.
 Could not read MBR for disk 6.

==================== End of Addition.txt =======================

Attached Thumbnails

  • rundlls.PNG

Attached Files


  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,598 posts
  • MVP

Errors are just mistakes by Microsoft and Windows Defender.  Easy to remove:

 

Download the attached fixlist.txt to the same location as FRST



Run FRST and press Fix
A fix log will be generated please post that

Reboot if the fix doesn't reboot it for you

Run FRST again as before.  Make sure Addition.txt is checked and hit Scan.  Post both logs.

 


  • 1

#3
Jon Pry

Jon Pry

    New Member

  • Topic Starter
  • Member
  • Pip
  • 2 posts

Great. I did what you stated. Computer rebooted and errors haven't popped up and I'm able to update my apps and system thus far.

 

I've attracted updated logs. Thanks.

 

 

Attached Files


  • 0

#4
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,598 posts
  • MVP

In Chrome go to:

 

chrome://settings/

 

Click on Search Engine

 

Can you change

Search engine used in the address bar

to Google?

 

Or is it stuck at conduit.com?


  • 0






Similar Topics


Also tagged with one or more of these keywords: malware, virus, rundll

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP