Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

StartupCheckLibrary.dll missing

startupchecklibrary

  • Please log in to reply

#1
Matt54

Matt54

    Member

  • Member
  • PipPip
  • 10 posts

Hi awesome community.

 

I have recently run into an issue when I start my laptop a dialog box pops up telling a the StartupCheckLibrary.dll module could not be found. Any advice on this?

 

Logs to follow.

 

Matthew

 


  • 0

Advertisements


#2
Matt54

Matt54

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts
FRST.txt
 
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-12-2019
Ran by 174ma (administrator) on DESKTOP-I1QB4EP (HP HP ZBook 14u G4) (08-12-2019 11:34:42)
Running from C:\Users\174ma\Desktop
Loaded Profiles: 174ma (Available Profiles: 174ca & 174ma)
Platform: Windows 10 Pro Version 1809 17763.864 (X64) Language: English (United Kingdom)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices Inc.) [File not signed] C:\Program Files (x86)\AMD\CNext\CCCSlim\CCC.exe
(Advanced Micro Devices Inc.) [File not signed] C:\Program Files (x86)\AMD\CNext\CCCSlim\MOM.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0346031.inf_amd64_d20aa8d84a15c158\B344651\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0346031.inf_amd64_d20aa8d84a15c158\B344651\atiesrxx.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Conexant Systems LLC -> Conexant Systems LLC.) C:\Program Files\Conexant\SA3\HP-NB-AIO\SmartAudio3.exe
(Conexant Systems LLC -> Conexant Systems, Inc) C:\Program Files\Conexant\Flow\Flow.exe
(Conexant Systems LLC -> Conexant) C:\Windows\System32\MicTray64.exe
(Conexant Systems LLC.) [File not signed] C:\Windows\CxSvc\CxAudioSvc.exe
(Conexant Systems, Inc.) [File not signed] C:\Windows\CxSvc\CxUtilSvc.exe
(DigitalPersona, Inc. -> Crossmatch, Inc.) C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\DPAgent.exe
(DigitalPersona, Inc. -> Crossmatch, Inc.) C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpCardEngine.exe
(DigitalPersona, Inc. -> Crossmatch, Inc.) C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpHostW.exe
(DigitalPersona, Inc. -> DigitalPersona, Inc.) C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
(HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HotKeyServiceUWP.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HPHotkeyNotification.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\LanWlanWwanSwitchingServiceUWP.exe
(HP Inc. -> HP) C:\Program Files (x86)\HP\HP MAC Address Manager\hpMAMSrv.exe
(HP Inc. -> HP) C:\Program Files (x86)\HP\HP Notifications\HPNotifications.exe
(HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki130624.inf_amd64_d85487143eec5e1a\igfxCUIService.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki130624.inf_amd64_d85487143eec5e1a\igfxEM.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki130624.inf_amd64_d85487143eec5e1a\IntelCpHDCPSvc.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki130624.inf_amd64_d85487143eec5e1a\IntelCpHeciSvc.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Intel® Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(LiveQoS Incorporated -> LiveQoS Incorporated) C:\Program Files\HP\HP Velocity\systray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11911.1001.9.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\schtasks.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe
(NANNING FUGUI PRECISION INDUSTRIAL CO.,LTD -> HP) C:\Program Files (x86)\HP lt4120 Snapdragon X5 LTE\Utilities\SIM based Firmware Switching Tool\SIMService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Synaptics Incorporated) [File not signed] C:\Windows\System32\SynaMonApp.exe
 
==================== Registry (Whitelisted) ===================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [321096 2017-06-09] (Intel® Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [HPNotifications] => C:\Program Files (x86)\HP\HP Notifications\HPNotifications.exe [1532968 2018-06-20] (HP Inc. -> HP)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6260544 2019-12-05] (Dropbox, Inc -> Dropbox, Inc.)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\DPAgent.exe, <==== ATTENTION
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\Run: [Gaijin.Net Agent] => C:\Users\174ma\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2125384 2018-09-25] (Gaijin Network LTD -> Gaijin Entertainment)
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [53540200 2019-03-26] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\Run: [Discord] => C:\Users\174ma\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\MountPoints2: {0b66e580-0e7e-11e9-881f-b4b6861f77d0} - "E:\OnePlus_USB_Drivers_Setup.exe" 
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-22] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{733d146c-3c7f-4afc-8381-83348bf326bb}] -> C:\WINDOWS\system32\HPCredentialProvider.dll [2018-10-02] (HP Inc. -> HP)
HKLM\Software\...\Authentication\Credential Providers: [{77B7ED10-A641-4766-A428-8B9EE42E830A}] -> C:\windows\system32\DPCrProv2.dll [2018-12-12] (DigitalPersona, Inc. -> Crossmatch, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{E85E7D14-653B-4E51-9BC5-E5F9EC9BC51D}] -> C:\windows\system32\DPCrProv2.dll [2018-12-12] (DigitalPersona, Inc. -> Crossmatch, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{F0C31759-99A6-493E-AD7D-7F69126CDFBC}] -> C:\windows\system32\DPCrProv2.dll [2018-12-12] (DigitalPersona, Inc. -> Crossmatch, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{F731030D-3272-4D8B-A21A-3940EF268453}] -> C:\windows\system32\DPCrProv2.dll [2018-12-12] (DigitalPersona, Inc. -> Crossmatch, Inc.)
HKLM\Software\...\Authentication\Credential Provider Filters: [{DCFB2A33-814B-4236-BFBD-FFEA3F528385}] -> C:\windows\system32\DPCrProv2.dll [2018-12-12] (DigitalPersona, Inc. -> Crossmatch, Inc.)
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa
Lsa: [Notification Packages] DPPassFilter HPPwdFilter scecli
Startup: C:\Users\174ma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2019-12-03]
ShortcutTarget: Twitch.lnk -> C:\Users\174ma\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Velocity.lnk [2019-11-19]
ShortcutTarget: HP Velocity.lnk -> C:\Program Files\HP\HP Velocity\systray.exe (LiveQoS Incorporated -> LiveQoS Incorporated)
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
 
==================== Scheduled Tasks (Whitelisted) ============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {01E5700F-EFC2-4C8B-B307-2032CE12EC26} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-21] (Google Inc -> Google Inc.)
Task: {03355A09-D666-4800-B78F-ABF9B4987904} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1373800 2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {065CA6B6-7FC5-42E6-A4FC-1A074231287C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {0E25EC2E-3557-4AB7-B02E-8D6E0069A0BA} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [468992 2019-11-15] (Advanced Micro Devices, Inc.) [File not signed]
Task: {16F9F7C9-603E-4FC1-97B6-CC07A95FAE3B} - System32\Tasks\Microsoft\Windows\Conexant\MicTray => C:\Windows\System32\MicTray64.exe [2933328 2018-09-17] (Conexant Systems LLC -> Conexant)
Task: {1A0E28DD-2987-47A9-B388-52C22AE5E764} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {3577B108-BFF7-465E-A460-FCA10ADEE8D1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {4072C715-B932-48C4-8B71-480C2E6BDF13} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-09-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {45BB7959-BD36-46D4-85A2-E09F71FCF456} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [68280 2019-07-15] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {4684EB79-DE21-4097-948E-9FEF8D36B6EC} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [112984 2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {46DAC701-AC13-47AB-9713-03264E3382A4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5151673E-1A41-46D1-B042-2AC377CD4077} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1373800 2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {61807AA3-65EE-4B86-A59A-BFA47491CEE2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [277880 2019-11-22] (HP Inc. -> HP Inc.)
Task: {6244F634-01FB-4D7C-A382-8E1E92D6FBD5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-21] (Google Inc -> Google Inc.)
Task: {78B057E8-99EE-47FC-A9CB-1222E49F216B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {79632D3F-363F-45EB-87D4-BC2C7A32C465} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8DD7AB60-57A7-4BE0-A490-9021E1E288DE} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [468992 2019-11-15] (Advanced Micro Devices, Inc.) [File not signed]
Task: {9C35A537-CFBC-4870-9335-1776FA1108E4} - System32\Tasks\HPCeeScheduleFor174ma => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [97656 2018-09-11] (HP Inc. -> HP Inc.)
Task: {ACE7258A-2CCF-448B-8D7F-E3D2F0A58E1E} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2017-04-07] (HP Inc. -> HP Inc.)
Task: {AE1AFE2D-7E3B-4E4F-AFA0-16B1CEB3EA49} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671304 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {B480E6B2-21CD-402E-B50C-AAC0CFAD9B93} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {B68D2553-13E3-4CEE-93B7-9FB3142A1490} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [64920 2019-11-26] (Microsoft Corporation -> Microsoft)
Task: {BE4474A4-ADDC-4013-B58F-EBFB6241D436} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe [461824 2017-10-06] (HP Inc. -> HP Inc.)
Task: {C3D65C5B-3A70-4AC9-A948-02024384AEF4} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60088 2019-07-15] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {C53DB872-1FA7-4833-B69F-F6ED5F89790C} - System32\Tasks\Microsoft\Windows\Conexant\SynaMonApp => C:\Windows\System32\SynaMonApp.exe [170496 2018-10-30] (Synaptics Incorporated) [File not signed]
Task: {C5E3B3CC-66C9-4A02-A3ED-475CB9860E6C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {C79F68C3-71D3-4B5E-A09A-CC86962C5C28} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-03-29] (Dropbox, Inc -> Dropbox, Inc.)
Task: {CBE4C48B-E521-4972-8578-8F8CAB211A04} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24671304 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {D28EDBE0-168B-40B4-92E6-8E55C4063C83} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {D9028F7C-CE9F-4EBB-ADD3-4AE9480F5B2A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E207CC62-4B33-4EEF-86F6-18B4F2006A38} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
Task: {E6F28FDE-20C4-40BB-AD2D-81E6BCA26F40} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-03-29] (Dropbox, Inc -> Dropbox, Inc.)
Task: {EA605B5F-D5A0-4EE4-BF15-7123AED28759} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1444168 2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {EE151EE2-67B4-4BDF-88D4-EEADC08FD509} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [112984 2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {F491010B-918D-4D1C-AB68-0934730D7060} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [145272 2019-10-31] (HP Inc. -> HP Inc.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleFor174ma.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.101.1
Tcpip\..\Interfaces\{2481acdf-4072-4b5a-a81b-af5d27380540}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{b5ef3d0d-f8e4-47c1-ad47-323fa6403f0f}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{b5ef3d0d-f8e4-47c1-ad47-323fa6403f0f}: [DhcpNameServer] 192.168.101.1
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.facebook.com/
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll => No File
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -> HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -> HP Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
 
FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - c:\Program Files\HP\Sure Click\4.0.4.511\servers\FakeDir => not found
FF HKLM-x32\...\Firefox\Extensions: [dpmaxz_ng@jetpack] - C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome => not found
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-16] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-4232068156-1879872238-896831279-1023: @zoom.us/ZoomVideoPlugin -> C:\Users\174ma\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2019-08-21] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.searchnu.com/406?appid=477","hxxp://d2ucfwpxlh3zh3.cloudfront.net/?ts=AHEqBX8kA38kBk..&v=20160615&uid=6AB2778023D61FCF685AC41C7EDCC947&ptid=amz&mode=loadm","hxxp://d2ucfwpxlh3zh3.cloudfront.net/?ts=AHEqBX8kA3MkA0..&v=20160615&uid=6AB2778023D61FCF685AC41C7EDCC947&ptid=ftp&mode=loadm"
CHR DefaultSearchKeyword: Default -> lp
CHR Profile: C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default [2019-12-08]
CHR DownloadDir: C:\Users\174ma\Desktop
CHR Extension: (Slides) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-09-26]
CHR Extension: (Video Volume Sync) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\anajobmkmeloldjnafmhbkpbfikmoeab [2019-10-25]
CHR Extension: (Docs) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-09-26]
CHR Extension: (Google Drive) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-18]
CHR Extension: (AdGuard AdBlocker) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2019-11-20]
CHR Extension: (YouTube) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-09-26]
CHR Extension: (Honey) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2019-11-22]
CHR Extension: (Nimbus Screenshot & Screen Video Recorder) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpconcjcammlapcogcnnelfmaeghhagj [2019-11-05]
CHR Extension: (Sheets) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-09-26]
CHR Extension: (Google Docs Offline) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-26]
CHR Extension: (Avast Online Security) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-07-16]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2019-11-27]
CHR Extension: (Arcane Legends) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibmlkgieigeddcedpbijnpojheoddido [2018-09-26]
CHR Extension: (Video Blocker) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\jknkjnpcbbgcbdbaampbjlhkcghmgfhk [2018-09-26]
CHR Extension: (Momentum) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\laookkfknpbbblfpciffpaejjkokdgca [2019-12-07]
CHR Extension: (Your Quality for YouTube™) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfcilgimggemnogfigihdkmapdhhlbph [2018-09-26]
CHR Extension: (Chrome Web Store Payments) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Modern Flat) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdcjjgefkpoemmlcjfcfkeminneboaob [2019-05-03]
CHR Extension: (Gmail) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-29]
CHR Extension: (Chrome Media Router) - C:\Users\174ma\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-24]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo]
 
==================== Services (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\c0346031.inf_amd64_d20aa8d84a15c158\B344651\atiesrxx.exe [516616 2019-11-15] (Advanced Micro Devices, Inc. -> AMD)
R2 AmstelSIMSVC; C:\Program Files (x86)\HP lt4120 Snapdragon X5 LTE\Utilities\SIM based Firmware Switching Tool\SIMService.exe [2161136 2017-12-08] (NANNING FUGUI PRECISION INDUSTRIAL CO.,LTD -> HP)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-11-19] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-04-02] (BattlEye Innovations e.K. -> )
S3 brlapi; C:\WINDOWS\brltty\bin\brltty.exe [839694 2019-11-19] (Microsoft Windows -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11345992 2019-11-28] (Microsoft Corporation -> Microsoft Corporation)
R2 CxAudioSvc; C:\WINDOWS\CxSvc\CxAudioSvc.exe [67072 2019-05-21] (Conexant Systems LLC.) [File not signed]
R2 CxUtilSvc; C:\WINDOWS\CxSvc\CxUtilSvc.exe [165888 2019-02-21] (Conexant Systems, Inc.) [File not signed]
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-03-29] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-03-29] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [51024 2019-12-05] (Dropbox, Inc -> Dropbox, Inc.)
R2 DpHost; C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DpHostW.exe [529072 2018-12-12] (DigitalPersona, Inc. -> Crossmatch, Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [779392 2018-07-09] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 FLCDLOCK; c:\windows\SysWOW64\flcdlock.exe [589392 2017-07-19] (Hewlett Packard Enterprise Company -> Hewlett-Packard Company)
R2 HotKeyServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HotKeyServiceUWP.exe [819856 2019-05-14] (HP Inc. -> HP Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1318184 2017-05-15] (HP Inc. -> HP Inc.)
R2 HPJumpStartBridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [477184 2017-10-06] (HP Inc. -> HP Inc.)
R2 HPMAMSrv; C:\Program Files (x86)\HP\HP MAC Address Manager\hpMAMSrv.exe [542248 2019-04-22] (HP Inc. -> HP)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1128992 2017-12-12] (HP Inc. -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [360312 2019-10-14] (HP Inc. -> HP Inc.)
S3 HPWorkWise; C:\Program Files (x86)\HP\HP WorkWise\HPWorkWiseService.exe [922456 2018-10-02] (HP Inc. -> HP)
S3 iaStorAfsService; C:\windows\IAStorAfsService\iaStorAfsService.exe [2413720 2017-06-10] (Intel® Rapid Storage Technology -> Intel Corporation)
R2 ibtsiva; C:\WINDOWS\System32\ibtsiva.exe [529912 2018-12-21] (Intel® Wireless Connectivity Solutions -> Intel Corporation)
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel® Management Engine Components\iCLS\SocketHeciServer.exe [870760 2019-02-13] (Intel® Trust Services -> Intel® Corporation)
S2 Intel® TPM Provisioning Service; C:\Program Files\Intel\Intel® Management Engine Components\iCLS\TPMProvisioningService.exe [783208 2019-02-13] (Intel® Trust Services -> Intel® Corporation)
S2 IntelAudioService; C:\WINDOWS\system32\cAVS\Intel® Audio Service\IntelAudioService.exe [348224 2019-05-14] (Smart Sound Technology -> Intel)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [290392 2019-04-18] (Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 LanWlanWwanSwitchingServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\LanWlanWwanSwitchingServiceUWP.exe [731072 2019-05-14] (HP Inc. -> HP Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [310880 2018-09-05] (Intel Corporation -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5378320 2019-11-20] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 sshd; C:\WINDOWS\System32\OpenSSH\sshd.exe [974848 2019-11-20] (Microsoft Windows -> )
S3 SshdBroker; C:\WINDOWS\System32\SshdBroker.dll [288768 2019-11-20] (Microsoft Windows -> Microsoft Corporation)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [272536 2019-05-23] (Synaptics Incorporated -> Synaptics Incorporated)
S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [4059744 2018-09-05] (Intel Corporation -> Intel® Corporation)
 
===================== Drivers (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 Accelerometer; C:\WINDOWS\System32\drivers\Accelerometer.sys [53904 2019-07-22] (HP Inc. -> HP)
S3 AmdAS4; C:\WINDOWS\System32\drivers\AmdAS4.sys [27016 2017-04-02] (Advanced Micro Devices Inc. -> Advanced Micro Devices, INC.)
S3 amdkmcsp; C:\WINDOWS\System32\drivers\amdkmcsp.sys [101232 2017-06-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0346031.inf_amd64_d20aa8d84a15c158\B344651\atikmdag.sys [53526024 2019-11-15] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0346031.inf_amd64_d20aa8d84a15c158\B344651\atikmpag.sys [601608 2019-11-15] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 amdpsp; C:\WINDOWS\System32\drivers\amdpsp.sys [243048 2017-06-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37616 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-10-03] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [276952 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [161544 2019-11-02] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
R3 CnxtHdAudService; C:\WINDOWS\system32\drivers\CHDRT64ISST.sys [2406184 2019-06-20] (Synaptics Incorporated -> Conexant Systems Inc.)
R3 cxwmbclass; C:\WINDOWS\System32\drivers\cxwmbclass.sys [124416 2019-11-20] (Microsoft Windows -> Microsoft Corporation)
R2 DAMDrv; C:\WINDOWS\system32\DRIVERS\DAMDrv64.sys [74768 2017-07-04] (Hewlett Packard Enterprise Company -> Hewlett-Packard Enterpise Company)
R0 hpdskflt; C:\WINDOWS\System32\drivers\hpdskflt.sys [41104 2019-07-22] (HP Inc. -> HP)
R3 HpqKbFiltr; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [50752 2019-05-14] (HP Inc. -> HP Inc.)
S3 iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [70632 2017-06-10] (Intel® Rapid Storage Technology -> Intel Corporation)
R3 ibtusb; C:\WINDOWS\System32\drivers\ibtusb.sys [199192 2018-05-11] (Intel® Wireless Connectivity Solutions -> Intel Corporation)
R3 IntcAudioBus; C:\WINDOWS\System32\drivers\IntcAudioBus.sys [268872 2019-05-14] (Smart Sound Technology -> Intel® Corporation)
R3 IntcOED; C:\WINDOWS\System32\drivers\IntcOED.sys [841176 2019-05-14] (Smart Sound Technology -> Intel® Corporation)
R1 IPeakLWF; C:\WINDOWS\system32\DRIVERS\ipeaklwf.sys [525144 2017-05-29] (LiveQoS Incorporated -> LiveQoS Incorporated)
R3 MEIx64; C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys [266128 2019-04-18] (Intel® Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 Netwtw06; C:\WINDOWS\System32\drivers\Netwtw06.sys [8831480 2019-08-27] (Intel® Wireless Connectivity Solutions -> Intel Corporation)
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [783808 2017-07-12] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
S3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [420832 2017-07-12] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [54720 2019-05-23] (Synaptics Incorporated -> Synaptics Incorporated)
R3 SPUVCbv; C:\WINDOWS\System32\Drivers\SPUVCbv64.sys [737192 2017-11-27] (Sunplus Innovation Technology Inc. -> Sunplus Innovation Technology Inc.)
S3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [44976 2018-06-01] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45664 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [355760 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R1 WindroyeBoxDrv; C:\Program Files\WindroyeBox\WindroyeBoxDrv.sys [252672 2015-03-03] (北京文安卓立科技有限公司 -> Windroy Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2019-08-06] (HP Inc. -> HP)
R3 XtuAcpiDriver; C:\WINDOWS\System32\drivers\XtuAcpiDriver.sys [63840 2015-06-06] (Intel® Software -> Intel Corporation)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) ===================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-12-08 11:34 - 2019-12-08 11:35 - 000041847 ____C C:\Users\174ma\Desktop\FRST.txt
2019-12-08 11:33 - 2019-12-08 11:35 - 000000000 ____D C:\FRST
2019-12-08 11:33 - 2019-12-08 11:33 - 002263552 ____C (Farbar) C:\Users\174ma\Desktop\FRST64.exe
2019-12-08 11:31 - 2019-12-08 11:31 - 002263552 _____ (Farbar) C:\Users\174ma\Downloads\FRST64.exe
2019-12-08 10:38 - 2019-12-08 10:38 - 000101052 _____ C:\Users\174ma\Downloads\IN22887449.pdf
2019-12-06 23:32 - 2019-12-06 23:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2019-12-05 22:09 - 2019-12-05 22:09 - 000042507 _____ C:\Users\174ma\Downloads\South.Park.S23E08.Turd.Burglars.UNCENSORED.WEB-DL.AAC2.0.H.264-LAZY[eztv].mkv.torrent
2019-12-05 10:25 - 2019-12-05 10:25 - 000033542 _____ C:\Users\174ma\Downloads\Vikings.S06E02.480p.x264-mSD[eztv].mkv.torrent
2019-12-05 10:21 - 2019-12-05 10:21 - 000043682 _____ C:\Users\174ma\Downloads\Vikings.S06E01.480p.x264-mSD[eztv].mkv.torrent
2019-12-05 10:15 - 2019-12-06 07:30 - 000000000 ___DC C:\Users\174ma\AppData\LocalLow\uTorrent
2019-12-05 09:53 - 2019-12-05 09:53 - 000045527 _____ C:\Users\174ma\Downloads\Modern.Family.S11E08.480p.x264-mSD[eztv].mkv.torrent
2019-12-05 03:23 - 2019-12-05 03:23 - 000051024 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2019-12-05 03:23 - 2019-12-05 03:23 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
2019-12-05 03:23 - 2019-12-05 03:23 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
2019-12-05 03:23 - 2019-12-05 03:23 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
2019-12-03 09:46 - 2019-12-03 10:26 - 000000000 ____D C:\Users\174ma\AppData\Roaming\Twitch
2019-12-03 09:46 - 2019-12-03 09:47 - 000001162 ____C C:\Users\174ma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk
2019-12-02 12:36 - 2019-12-02 12:36 - 000057877 _____ C:\Users\174ma\Downloads\Once Upon a Time ... in Hollywood (2019) [BluRay] [720p] [YTS.LT].torrent
2019-12-02 09:42 - 2019-12-02 09:42 - 000047021 _____ C:\Users\174ma\Downloads\Fresh.Off.the.Boat.S06E09.iNTERNAL.480p.x264-mSD[eztv].mkv.torrent
2019-12-02 09:41 - 2019-12-02 09:41 - 000029076 _____ C:\Users\174ma\Downloads\Silicon.Valley.S06E06.REPACK.480p.x264-mSD[eztv].mkv.torrent
2019-12-02 09:40 - 2019-12-02 09:40 - 000023925 _____ C:\Users\174ma\Downloads\The.Simpsons.S31E09.480p.x264-mSD[eztv].mkv.torrent
2019-12-01 14:19 - 2019-12-01 14:34 - 000224283 _____ C:\Users\174ma\Downloads\WhatsApp Image 2019-12-01 at 14.18.33.jpeg
2019-11-30 21:34 - 2019-11-30 21:34 - 000061119 _____ C:\Users\174ma\Downloads\It Chapter Two (2019) [BluRay] [720p] [YTS.LT].torrent
2019-11-30 21:32 - 2019-11-30 21:32 - 000043597 _____ C:\Users\174ma\Downloads\Downton Abbey (2019) [WEBRip] [720p] [YTS.LT].torrent
2019-11-27 16:00 - 2019-11-27 16:00 - 000028995 _____ C:\Users\174ma\Downloads\Resignation-converted.pdf
2019-11-27 15:06 - 2019-11-27 15:06 - 000000000 ____D C:\Users\174ma\AppData\Roaming\NuGet
2019-11-27 15:06 - 2019-11-27 15:06 - 000000000 ____D C:\Users\174ma\.templateengine
2019-11-27 15:04 - 2019-11-27 15:05 - 000000000 ____D C:\Users\174ma\Programming
2019-11-27 15:00 - 2019-11-27 15:00 - 000000000 ____D C:\Users\174ma\source
2019-11-27 09:50 - 2019-11-27 09:50 - 000046593 _____ C:\Users\174ma\Downloads\The.Purge.S02E07.WEB.x264-PHOENiX[eztv].mkv.torrent
2019-11-27 09:47 - 2019-11-27 15:00 - 000000000 ___DC C:\Users\174ma\Documents\Visual Studio 2019
2019-11-27 09:46 - 2019-12-01 10:47 - 000000000 ____D C:\Users\174ma\AppData\Local\.IdentityService
2019-11-27 09:43 - 2019-11-27 09:43 - 000001803 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blend for Visual Studio 2019.lnk
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\3082
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\2052
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1055
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1049
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1046
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1045
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1042
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1041
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1040
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1036
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1031
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1029
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1028
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\3082
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\2052
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1055
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1049
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1046
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1045
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1042
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1041
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1040
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1036
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1031
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1029
2019-11-27 09:43 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1028
2019-11-27 09:42 - 2019-11-27 09:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 3.7
2019-11-27 09:41 - 2019-11-27 09:41 - 000000000 ____D C:\ProgramData\Windows App Certification Kit
2019-11-27 09:40 - 2019-11-27 09:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2019-11-27 09:40 - 2019-11-27 09:40 - 000000000 ____D C:\Program Files\Application Verifier
2019-11-27 09:40 - 2019-11-27 09:40 - 000000000 ____D C:\Program Files (x86)\Application Verifier
2019-11-27 09:07 - 2019-11-27 09:07 - 000000000 ____D C:\Program Files (x86)\NuGet
2019-11-27 09:04 - 2019-11-27 09:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Azure
2019-11-27 09:04 - 2019-11-27 09:04 - 000000000 ____D C:\ProgramData\dftmp
2019-11-27 09:04 - 2019-11-27 09:04 - 000000000 ____D C:\Program Files\VS2012Schemas
2019-11-27 09:04 - 2019-11-27 09:04 - 000000000 ____D C:\Program Files\VS2010Schemas
2019-11-27 09:04 - 2019-11-27 09:04 - 000000000 ____D C:\Program Files\Microsoft SDKs
2019-11-27 09:04 - 2019-11-27 09:04 - 000000000 ____D C:\Program Files\IIS
2019-11-27 09:04 - 2019-11-27 09:04 - 000000000 ____D C:\Program Files (x86)\IIS
2019-11-27 08:59 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\SysWOW64\1033
2019-11-27 08:59 - 2019-11-27 09:43 - 000000000 ____D C:\WINDOWS\system32\1033
2019-11-27 08:59 - 2019-11-27 08:59 - 000000000 ___DC C:\Users\174ma\Documents\My Web Sites
2019-11-27 08:59 - 2019-11-27 08:59 - 000000000 ___DC C:\Users\174ma\Documents\IISExpress
2019-11-27 08:58 - 2019-11-27 08:59 - 000000000 ____D C:\Program Files\IIS Express
2019-11-27 08:58 - 2019-11-27 08:59 - 000000000 ____D C:\Program Files (x86)\IIS Express
2019-11-27 08:49 - 2019-11-27 08:49 - 000000000 ____D C:\Program Files (x86)\Microsoft Web Tools
2019-11-27 08:45 - 2019-11-27 08:59 - 000000000 ____D C:\Program Files\Microsoft SQL Server
2019-11-27 08:45 - 2019-11-27 08:59 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2019-11-27 08:41 - 2019-11-27 09:44 - 000000000 ____D C:\Program Files (x86)\Microsoft SDKs
2019-11-27 08:41 - 2019-11-27 09:40 - 000000000 ____D C:\Program Files (x86)\Windows Kits
2019-11-27 08:41 - 2019-11-27 08:41 - 000000000 ____D C:\Users\174ma\.dotnet
2019-11-27 08:38 - 2019-11-27 08:40 - 000000000 ____D C:\Program Files\dotnet
2019-11-27 08:38 - 2019-11-27 08:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2019
2019-11-27 08:38 - 2019-11-27 08:38 - 000000000 ____D C:\Program Files (x86)\dotnet
2019-11-27 08:36 - 2019-11-27 08:36 - 000001495 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2019.lnk
2019-11-27 08:33 - 2019-11-27 08:33 - 000018850 _____ C:\Users\174ma\Downloads\Get-Visual-Studio.pdf
2019-11-26 08:52 - 2019-11-27 15:21 - 000000000 ____D C:\Users\174ma\AppData\Roaming\Visual Studio Setup
2019-11-26 08:52 - 2019-11-27 08:35 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio
2019-11-26 08:52 - 2019-11-26 08:52 - 000001362 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Installer.lnk
2019-11-26 08:52 - 2019-11-26 08:52 - 000000000 ____D C:\Users\174ma\AppData\Roaming\vstelemetry
2019-11-26 08:52 - 2019-11-26 08:52 - 000000000 ____D C:\Users\174ma\AppData\Roaming\vs_installershell
2019-11-26 08:52 - 2019-11-26 08:52 - 000000000 ____D C:\Users\174ma\AppData\Local\ServiceHub
2019-11-26 08:51 - 2019-11-26 08:51 - 000000000 ____D C:\ProgramData\Microsoft Visual Studio
2019-11-26 08:50 - 2019-11-26 08:51 - 001384944 _____ (Microsoft Corporation) C:\Users\174ma\Downloads\vs_community__1268557184.1571728013.exe
2019-11-25 18:39 - 2019-11-25 18:39 - 000041356 _____ C:\Users\174ma\Downloads\the.walking.dead.s10e08.720p.web.h264-xlf[eztv].mkv.torrent
2019-11-25 18:38 - 2019-11-25 18:38 - 000038051 _____ C:\Users\174ma\Downloads\the.simpsons.s31e08.720p.web.x264-xlf[eztv].mkv.torrent
2019-11-25 18:38 - 2019-11-25 18:38 - 000025393 _____ C:\Users\174ma\Downloads\Fresh.Off.the.Boat.S06E08.HDTV.x264-SVA[eztv].mkv.torrent
2019-11-25 18:37 - 2019-11-25 18:37 - 000039829 _____ C:\Users\174ma\Downloads\Silicon.Valley.S06E05.480p.x264-mSD[eztv].mkv.torrent
2019-11-22 12:56 - 2019-11-22 12:56 - 000000000 ____D C:\ProgramData\Conexant
2019-11-22 12:55 - 2019-11-22 12:55 - 000000000 ____D C:\Program Files\Common Files\Intel
2019-11-22 12:40 - 2019-11-22 12:40 - 000027987 _____ C:\Users\174ma\Downloads\Its.Always.Sunny.in.Philadelphia.S14E10.480p.x264-mSD[eztv].mkv.torrent
2019-11-22 12:38 - 2019-11-22 12:38 - 000052637 _____ C:\Users\174ma\Downloads\Greys.Anatomy.S16E09.iNTERNAL.480p.x264-mSD[eztv].mkv.torrent
2019-11-22 12:38 - 2019-11-22 12:38 - 000037168 _____ C:\Users\174ma\Downloads\The.Good.Place.S04E09.480p.x264-mSD[eztv].mkv.torrent
2019-11-22 12:37 - 2019-11-22 12:37 - 000045724 _____ C:\Users\174ma\Downloads\Superstore.S05E09.480p.x264-mSD[eztv].mkv.torrent
2019-11-22 12:37 - 2019-11-22 12:37 - 000040727 _____ C:\Users\174ma\Downloads\young.sheldon.s03e08.internal.720p.web.x264-bamboozle[eztv].mkv.torrent
2019-11-22 12:37 - 2019-11-22 12:37 - 000037996 _____ C:\Users\174ma\Downloads\Young.Sheldon.S03E08.iNTERNAL.480p.x264-mSD[eztv].mkv.torrent
2019-11-21 18:06 - 2019-11-21 18:07 - 000068912 _____ C:\Users\174ma\Downloads\Matthew Proof of ID.pdf
2019-11-20 15:38 - 2019-11-20 15:38 - 017761792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCaptureReplay.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 013942784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCaptureReplay.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 011724288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 009941504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 007727336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 005732352 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 005436696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 005115384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 004920832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 004850688 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 004520960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsDesktopEngine.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 004488192 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 003631616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsRemoteEngine.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 003624448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 003566080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 003550384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 003442176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 003179008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d12SDKLayers.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 002752360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 002476544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d12SDKLayers.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 002469440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 002429768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-11-20 15:38 - 2019-11-20 15:38 - 002323696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 002278240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 002160160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-11-20 15:38 - 2019-11-20 15:38 - 002099752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 002006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001969152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001604760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001459080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001419776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsOfflineAnalysis.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001297120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001297120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001289192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001282640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001267240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-11-20 15:38 - 2019-11-20 15:38 - 001254400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2019-11-20 15:38 - 2019-11-20 15:38 - 001200920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001176064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCap.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 001155584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shellstyle.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001155584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shellstyle.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001077912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001075832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001057976 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 001024712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCap.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdp.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000866152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000854784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2adec.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000808960 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000798736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2019-11-20 15:38 - 2019-11-20 15:38 - 000762272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000747568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2019-11-20 15:38 - 2019-11-20 15:38 - 000743216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2019-11-20 15:38 - 2019-11-20 15:38 - 000740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000732160 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCacheProvider.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000687896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2019-11-20 15:38 - 2019-11-20 15:38 - 000673520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2019-11-20 15:38 - 2019-11-20 15:38 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdp.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2019-11-20 15:38 - 2019-11-20 15:38 - 000573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfh264enc.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfh264enc.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000421688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSh.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DavSyncProvider.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdechangepin.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinit.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PeerDistSh.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DavSyncProvider.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000302592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2019-11-20 15:38 - 2019-11-20 15:38 - 000301096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscobj.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshdBroker.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsExperiment.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000263360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000241976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2019-11-20 15:38 - 2019-11-20 15:38 - 000241680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCleaner.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDist.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsExperiment.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscobj.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsMonitor.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PeerDist.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistWSDDiscoProv.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsReporting.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssrvlic.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpdxm.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsCapture.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsMonitor.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsCapture.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshdPinAuthLsa.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000092832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2019-11-20 15:38 - 2019-11-20 15:38 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
2019-11-20 15:38 - 2019-11-20 15:38 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LSCSHostPolicy.dll
2019-11-20 15:38 - 2019-11-20 15:38 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 026806784 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 024616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 023455232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 020816384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 019284992 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 019014144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 012960256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 012258816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 008903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 007921664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 007872000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 006065152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 005608336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 004873216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 004661760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 004527624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 004344832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 003952952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 003906560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 003690496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 003656704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 003421696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 003406848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002986352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002942976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002714624 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002393600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002298880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002279304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002205184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002177336 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002096640 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-11-20 15:37 - 2019-11-20 15:37 - 002086400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 002018304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-11-20 15:37 - 2019-11-20 15:37 - 002013696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001924976 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplaySwitch.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 001782272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001750528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001370624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001332224 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001247560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 001224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001182720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2019-11-20 15:37 - 2019-11-20 15:37 - 001166336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2019-11-20 15:37 - 2019-11-20 15:37 - 001132032 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001110528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 001062400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001022464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 001019392 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000993280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000964608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\assignedaccessmanagersvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000901632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000883200 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000870400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000829440 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000828728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000805296 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000773632 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000763392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2019-11-20 15:37 - 2019-11-20 15:37 - 000690688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000662528 ____R (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Pipeline.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000658944 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessManager.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2019-11-20 15:37 - 2019-11-20 15:37 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000528384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000522104 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000486400 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000482816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2PGraph.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000428032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000409256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000398848 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000386048 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\SysWOW64\curl.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageHandlers.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2PGraph.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\regedit.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000349144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000345600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2019-11-20 15:37 - 2019-11-20 15:37 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esentutl.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regedit.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-11-20 15:37 - 2019-11-20 15:37 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000287912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasppp.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\FileHistory.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000242176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-11-20 15:37 - 2019-11-20 15:37 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2pnetsh.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000195224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityCenterBroker.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsutil.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000180736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000180736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-11-20 15:37 - 2019-11-20 15:37 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\p2pnetsh.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2P.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys
2019-11-20 15:37 - 2019-11-20 15:37 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-11-20 15:37 - 2019-11-20 15:37 - 000156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasman.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastingShellExt.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fsutil.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowService.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnscmmc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CastingShellExt.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageLiveTileTask.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2019-11-20 15:37 - 2019-11-20 15:37 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000109568 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupcln.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
2019-11-20 15:37 - 2019-11-20 15:37 - 000098816 ____R (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Broker.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\EduPrintProv.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlahc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\PktMon.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompMgmtLauncher.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhuxgraphics.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Groupinghc.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComputerDefaults.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000058882 _____ C:\WINDOWS\system32\srms.dat
2019-11-20 15:37 - 2019-11-20 15:37 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSTheme.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NAPCRYPT.DLL
2019-11-20 15:37 - 2019-11-20 15:37 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscapi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfts.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
2019-11-20 15:37 - 2019-11-20 15:37 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureBioSysprep.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfts.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000030720 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscdll.dll
2019-11-20 15:37 - 2019-11-20 15:37 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shunimpl.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 015220224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 007251456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 006934016 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 006547896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 006444544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 006318328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 005915936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 005770240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 005309080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 005210904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 005086208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 004628992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 003978240 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 003872336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 003761664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 003656792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 003496448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 003490816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 003428864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 003096576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 002982400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 002918200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 002871824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 002779784 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 002699976 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 002698752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 002628112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 002447360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 002348544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 002072176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 002001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001994976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001966096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 001918792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001864704 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001837136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001720936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001702600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-11-20 15:36 - 2019-11-20 15:36 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001677808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001674480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001668752 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001655976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001618944 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuin.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001590072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001573240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001486472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001485312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001477432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001473296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 001465472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001458056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001446400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001427592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001415680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001390888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 001382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001360184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 001346216 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-11-20 15:36 - 2019-11-20 15:36 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001294848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001280000 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001278808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 001272560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001272120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001223168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001222160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001183504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 001180248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001168384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001162320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001159168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001155072 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuuc.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001125416 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001098136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001075712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001026792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001011200 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 001006392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2019-11-20 15:36 - 2019-11-20 15:36 - 001000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000981816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000976896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000968192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000964976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000917816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000909840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000908800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2019-11-20 15:36 - 2019-11-20 15:36 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000877568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000845824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000821048 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000811536 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000808272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000803328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000791864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000782968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000780632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000775168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000774968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000773208 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000767800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000764216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000747536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000736056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000730112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000730112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000725696 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000711168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000682496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000661264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000661096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000658432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000655160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000652832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000649064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000638480 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000638376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000624640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000622392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000615936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000598328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000591832 _____ C:\WINDOWS\SysWOW64\InputHost.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000588816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000553984 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000553784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000553664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000549376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000548864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000548864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000542320 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000540720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000540240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000519992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000515448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000515440 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsound.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000481280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000474936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-11-20 15:36 - 2019-11-20 15:36 - 000473832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000465416 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000453432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000452992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000439808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000435512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000434952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000431416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000427832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2019-11-20 15:36 - 2019-11-20 15:36 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000408528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000398928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000384272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000383288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000373768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coml2.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000341392 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingDiagSpp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000333128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2019-11-20 15:36 - 2019-11-20 15:36 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000312632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000297984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RADCUI.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000290616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000279416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000279376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000272648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000262152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000256704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShellCommonCommonProxyStub.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000252536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000231224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.SystemManagement.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wisp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000224568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000219448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000177176 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaSvc.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPTaskScheduler.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000173216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xmllite.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000168248 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.OneCore.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000155968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000152576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000149232 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000146888 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000144080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000143880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000140088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spopk.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000137864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcl.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000122680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000121656 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000115120 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000114128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000112168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000098080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000094224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fileinfo.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2019-11-20 15:36 - 2019-11-20 15:36 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000091424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvsetup.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000087864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000086744 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\nslookup.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nslookup.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000071696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBth.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000065608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdBth.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntlanman.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\compact.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000044912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordOnWakeSettingFlyout.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compact.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000038184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PasswordOnWakeSettingFlyout.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfproc.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credui.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcPing.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RpcPing.exe
2019-11-20 15:36 - 2019-11-20 15:36 - 000023768 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000020144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2019-11-20 15:36 - 2019-11-20 15:36 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 022137120 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 009670656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 009667896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 007886848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 007656072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 007645392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 007556392 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 006058032 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 005575168 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 005573232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 005528064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 005299712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 004737536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 004704272 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 004588544 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 004303872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 004049920 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 004019200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 003637760 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 003630592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 003399168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 003387392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 003363640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 003344896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 003333632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 003082752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 002879488 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 002848768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 002842112 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 002638336 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 002618880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 002437344 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 002421248 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 002233688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 002192384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 002185728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 002118656 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 002050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001918464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001904128 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001844448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001819136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001794048 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001768960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001751432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001715712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001666440 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001644544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001622016 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001563880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001533440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 001479184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001466880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001311232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001287776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001267712 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001262592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001259520 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001176064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001171968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001170432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001133568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001087800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001081656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001059328 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-11-20 15:35 - 2019-11-20 15:35 - 001056056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001054712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 001052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001050112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 001038336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 001035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000998928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000984888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000938296 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000927232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000902144 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000888832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000888120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pidgenx.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-11-20 15:35 - 2019-11-20 15:35 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000864568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000862008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000860160 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-11-20 15:35 - 2019-11-20 15:35 - 000855040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000836096 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000833064 _____ C:\WINDOWS\system32\InputHost.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000820736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000780408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000714240 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000699392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000692736 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000678680 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Devices.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000657408 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000644608 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000605368 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000591160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000566272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000516608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000508208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000505640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000496872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2019-11-20 15:35 - 2019-11-20 15:35 - 000468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\coml2.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000439096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000398848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000386360 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingDiagSpp.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000351432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000330672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000330592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.SystemManagement.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasppp.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000271360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000262336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000254464 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000247608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000246584 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\smbwmiv2.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.CredentialProvider.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngctasks.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000160272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pacer.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000159272 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000157024 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000152080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000148480 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000134456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000130872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000120352 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\negoexts.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsiCx.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000097808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000086840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000074424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WindowsTrustedRT.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnosticsTool.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscapi.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msfs.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpkinstall.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000039736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WppRecorder.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnsruprov.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2019-11-20 15:35 - 2019-11-20 15:35 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscdll.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ws2ifsl.sys
2019-11-20 15:35 - 2019-11-20 15:35 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\shunimpl.dll
2019-11-20 15:35 - 2019-11-20 15:35 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2019-11-20 15:34 - 2019-11-20 15:35 - 017485312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 007700696 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 006132736 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 005130752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 004997096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 004413936 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 003576832 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 003333984 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 003270144 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 003198976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 003000832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002928640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002839040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002767160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002707968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 002645504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002633216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002593032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002415928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002200376 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002149368 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002148864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002109960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 002015400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001933408 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001929728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001893376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001860096 ____R (The ICU Project) C:\WINDOWS\system32\icuin.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001743168 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001720120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001715000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001701176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001674752 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001668784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001662264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001612600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001567232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001538560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 001522488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001496576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001399608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001387512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001331536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001321784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001308672 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001294792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001260560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 001219424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001213752 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001199616 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001191512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001187840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 001183744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001128448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 001098056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 001054224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 001022824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001022464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 001004544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000974352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000901120 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000888560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000871784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000865576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000856424 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000853504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000831288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000828936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000817464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000807424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000806568 _____ C:\WINDOWS\SysWOW64\locale.nls
2019-11-20 15:34 - 2019-11-20 15:34 - 000806568 _____ C:\WINDOWS\system32\locale.nls
2019-11-20 15:34 - 2019-11-20 15:34 - 000799784 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000793824 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000790328 _____ (Microsoft Corporation) C:\WINDOWS\system32\upshared.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000773632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000770096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000758688 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000750592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000745984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000741688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000740864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000732168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000676048 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000675096 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000667152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000652088 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000649528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000646632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000613176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000605496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000604344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000603784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsound.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000580024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2019-11-20 15:34 - 2019-11-20 15:34 - 000536320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000531976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000514600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000509968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000506200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000495624 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000485192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000482104 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000470528 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000462352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000450632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000445752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000423480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000421376 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\system32\curl.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000419368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000419128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\eeprov.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000408800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000405304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000402368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000398208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000396088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000389408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000389120 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingASDS.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000385848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000385024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000376568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000367104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000355360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioCredProv.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000347576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000294512 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000294072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000283032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000282424 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ConfigWrapper.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000278416 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000276488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTF.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BioCredProv.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiCloudStore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000255128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000253256 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000241944 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2019-11-20 15:34 - 2019-11-20 15:34 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000230848 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.OneCore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ptpprov.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000213304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000203064 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureTimeAggregator.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MTF.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000200504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiohlp.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000197832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
2019-11-20 15:34 - 2019-11-20 15:34 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000193704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000193336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000189712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000177976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000174392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AppvVemgr.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000169784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSrv.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000164504 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000163232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winquic.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000157496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000156984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000156984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winquic.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000156512 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000152896 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000147944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000141736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000140600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000135816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000125016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyMATEnc.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000118480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bowser.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000114648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvsetup.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000104464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000101176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\negoexts.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000098664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingFilterDS.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiskSnapshot.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000089336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpr.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcnfs.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\KdsCli.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000079032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Common.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsiwmi.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000066688 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo-overrides.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAppMonitor.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000055792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mmcss.sys
2019-11-20 15:34 - 2019-11-20 15:34 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000047136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsUpdateElevatedInstaller.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSTheme.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000039304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000036368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2019-11-20 15:34 - 2019-11-20 15:34 - 000033056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rfxvmt.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdcpw.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\npmproxy.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-11-20 15:34 - 2019-11-20 15:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-11-20 15:34 - 2019-11-20 15:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-11-20 15:34 - 2019-11-20 15:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-11-20 15:34 - 2019-11-20 15:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-11-20 15:34 - 2019-11-20 15:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-11-20 15:34 - 2019-11-20 15:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-11-20 15:34 - 2019-11-20 15:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-11-20 15:34 - 2019-11-20 15:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-11-20 15:33 - 2019-11-20 15:33 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 001676288 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 001258512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-11-20 15:33 - 2019-11-20 15:33 - 001232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 001049608 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-11-20 15:33 - 2019-11-20 15:33 - 001043968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2019-11-20 15:33 - 2019-11-20 15:33 - 000918304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000848896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2019-11-20 15:33 - 2019-11-20 15:33 - 000791352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000751928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000667664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000662024 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000582240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\objsel.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000520208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000467984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2019-11-20 15:33 - 2019-11-20 15:33 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000421176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000310072 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000300024 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000298296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000292152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000254952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000248120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000234808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000223544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000202768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000198968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000198456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000193032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000164344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiohlp.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000138552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmbus.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000131384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tsusbhub.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cxwmbclass.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pmem.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storqosflt.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000094008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2019-11-20 15:33 - 2019-11-20 15:33 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000090632 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000087080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000083472 _____ (Microsoft Corporation) C:\WINDOWS\system32\vid.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000080400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000080400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Synth3dVsc.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000061480 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll
2019-11-20 15:33 - 2019-11-20 15:33 - 000057656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dmvsc.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000055608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000052536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000032784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhv.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000032568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uefi.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsiAcpiClient.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000018744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msisadrv.sys
2019-11-20 15:33 - 2019-11-20 15:33 - 000000072 _____ C:\WINDOWS\system32\edgehtmlpluginpolicy.bin
2019-11-19 14:47 - 2019-11-19 14:47 - 001366016 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11_3SDKLayers.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 001303040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebManagement.exe
2019-11-19 14:47 - 2019-11-19 14:47 - 001089024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11_3SDKLayers.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000761856 _____ C:\WINDOWS\system32\liblouis.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000705008 _____ C:\WINDOWS\system32\brlapi.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1debug3.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1debug3.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000410624 _____ (Windows ® Win 7 DDK provider) C:\WINDOWS\system32\DXCpl.exe
2019-11-19 14:47 - 2019-11-19 14:47 - 000386560 _____ (Windows ® Win 7 DDK provider) C:\WINDOWS\SysWOW64\DXCpl.exe
2019-11-19 14:47 - 2019-11-19 14:47 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\perf_gputiming.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXGIDebug.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationREST.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf_gputiming.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXGIDebug.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperToolsSvc.exe
2019-11-19 14:47 - 2019-11-19 14:47 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsReporting.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XPSSHHDR.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevToolsLauncher.exe
2019-11-19 14:47 - 2019-11-19 14:47 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DxToolsReportGenerator.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DxToolsReportGenerator.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvc.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsProxyStub.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSD3DWARPDebug.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XPSSHHDR.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml
2019-11-19 14:47 - 2019-11-19 14:47 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml
2019-11-19 14:47 - 2019-11-19 14:47 - 000072405 _____ C:\WINDOWS\system32\Third Party Notices-Braille.txt
2019-11-19 14:47 - 2019-11-19 14:47 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VSD3DWARPDebug.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeployUtil.exe
2019-11-19 14:47 - 2019-11-19 14:47 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsProxyStub.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvcapi.dll
2019-11-19 14:47 - 2019-11-19 14:47 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperTools.ProxyStub.dll
2019-11-19 14:42 - 2019-11-19 14:42 - 001993528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2019-11-19 12:53 - 2019-10-03 11:27 - 000355720 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2019-11-19 12:14 - 2019-11-19 12:14 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-11-19 12:13 - 2019-11-19 12:13 - 000000020 ___SH C:\Users\174ma\ntuser.ini
2019-11-19 12:12 - 2019-12-08 10:02 - 000003112 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2019-11-19 12:12 - 2019-12-08 10:02 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-11-19 12:12 - 2019-12-07 16:20 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2019-11-19 12:12 - 2019-12-07 16:20 - 000003348 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-11-19 12:12 - 2019-12-07 16:20 - 000003124 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-11-19 12:12 - 2019-12-07 16:20 - 000002800 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleFor174ma
2019-11-19 12:12 - 2019-12-07 16:20 - 000002392 _____ C:\WINDOWS\system32\Tasks\ModifyLinkUpdate
2019-11-19 12:12 - 2019-12-07 16:20 - 000002202 _____ C:\WINDOWS\system32\Tasks\StartCN
2019-11-19 12:12 - 2019-12-07 16:20 - 000002122 _____ C:\WINDOWS\system32\Tasks\StartDVR
2019-11-19 12:12 - 2019-12-07 15:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-11-19 12:12 - 2019-12-02 09:12 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2019-11-19 12:12 - 2019-11-19 12:12 - 000011433 _____ C:\WINDOWS\diagwrn.xml
2019-11-19 12:12 - 2019-11-19 12:12 - 000011433 _____ C:\WINDOWS\diagerr.xml
2019-11-19 12:12 - 2019-11-19 12:12 - 000003512 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA
2019-11-19 12:12 - 2019-11-19 12:12 - 000003368 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{89461584-1371-415A-98F2-0DD7D09F7A16}
2019-11-19 12:12 - 2019-11-19 12:12 - 000003288 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore
2019-11-19 12:12 - 2019-11-19 12:12 - 000002918 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4232068156-1879872238-896831279-1023
2019-11-19 12:12 - 2019-11-19 12:12 - 000002916 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4232068156-1879872238-896831279-1002
2019-11-19 12:12 - 2019-11-19 12:12 - 000002916 _____ C:\WINDOWS\system32\Tasks\HPJumpStartLaunch
2019-11-19 12:12 - 2019-11-19 12:12 - 000000000 _SHDL C:\Documents and Settings
2019-11-19 12:12 - 2019-11-19 12:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\Intel
2019-11-19 12:12 - 2019-11-19 12:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2019-11-19 12:12 - 2019-11-19 12:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard
2019-11-19 12:08 - 2019-11-19 12:08 - 000001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2019-11-19 12:07 - 2019-12-08 00:05 - 000000000 ____D C:\Users\174ma
2019-11-19 12:07 - 2019-11-20 15:33 - 002865152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-11-19 12:07 - 2019-11-19 12:10 - 000000000 ____D C:\Users\174ca
2019-11-19 12:07 - 2019-11-19 12:07 - 000000000 ____D C:\ProgramData\USOShared
2019-11-19 12:07 - 2018-09-15 09:29 - 000001105 _____ C:\Users\174ma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-11-19 12:07 - 2018-09-15 09:29 - 000001105 _____ C:\Users\174ca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-11-19 12:06 - 2019-12-08 10:11 - 000937060 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-11-19 12:06 - 2019-11-19 12:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2019-11-19 12:04 - 2019-12-07 22:25 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-11-19 12:04 - 2019-11-20 17:38 - 000734184 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-11-19 11:40 - 2019-11-19 14:04 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-11-19 11:37 - 2019-11-19 11:40 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-11-19 11:34 - 2019-11-27 08:38 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-11-19 11:34 - 2019-11-19 11:34 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-11-19 11:34 - 2019-11-19 11:34 - 000000000 ____D C:\Program Files\MSBuild
2019-11-19 11:34 - 2019-11-19 11:34 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2019-11-19 11:34 - 2019-11-19 11:34 - 000000000 ____D C:\inetpub
2019-11-19 11:32 - 2018-09-09 17:17 - 001167960 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-11-19 11:32 - 2018-09-09 17:16 - 000126064 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-11-19 11:32 - 2018-09-09 17:16 - 000035440 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-11-19 11:32 - 2018-08-29 17:56 - 000780376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-11-19 11:32 - 2018-08-29 17:56 - 000104560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-11-19 11:32 - 2018-08-29 17:56 - 000036896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-11-19 11:22 - 2019-11-19 11:22 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-11-19 11:09 - 2019-11-19 12:13 - 000000000 ___DC C:\WINDOWS\Panther
2019-11-19 11:07 - 2019-11-19 11:09 - 000000036 _____ C:\WINDOWS\progress.ini
2019-11-19 01:00 - 2019-11-19 11:07 - 000000000 ___HD C:\$GetCurrent
2019-11-19 01:00 - 2019-11-19 11:07 - 000000000 ____D C:\Windows10Upgrade
2019-11-19 01:00 - 2019-11-19 01:00 - 000000738 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Update Assistant.lnk
2019-11-18 13:04 - 2019-11-18 13:04 - 000033795 _____ C:\Users\174ma\Downloads\the.walking.dead.s10e07.720p.web.h264-xlf[eztv].mkv.torrent
2019-11-18 13:03 - 2019-11-18 13:03 - 000035871 _____ C:\Users\174ma\Downloads\the.simpsons.s31e07.720p.web.x264-xlf[eztv].mkv.torrent
2019-11-18 13:03 - 2019-11-18 13:03 - 000026038 _____ C:\Users\174ma\Downloads\Fresh.Off.the.Boat.S06E07.720p.HDTV.x264-AVS[eztv].mkv.torrent
2019-11-18 13:02 - 2019-11-18 13:02 - 000021873 _____ C:\Users\174ma\Downloads\Young.Sheldon.S03E07.720p.HDTV.x264-AVS[eztv].mkv.torrent
2019-11-18 13:01 - 2019-11-18 13:01 - 000043448 _____ C:\Users\174ma\Downloads\Silicon.Valley.S06E04.480p.x264-mSD[eztv].mkv.torrent
2019-11-15 14:54 - 2019-11-15 14:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Pro Settings
2019-11-15 14:52 - 2019-11-15 14:52 - 003753992 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 003471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2019-11-15 14:52 - 2019-11-15 14:52 - 003437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2019-11-15 14:52 - 2019-11-15 14:52 - 003380744 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 001714184 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 001597968 _____ (AMD) C:\WINDOWS\system32\coinst_19.10.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 001245704 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 001245704 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 001019320 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 001019320 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000917248 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2019-11-15 14:52 - 2019-11-15 14:52 - 000917248 _____ C:\WINDOWS\system32\atiapfxx.blb
2019-11-15 14:52 - 2019-11-15 14:52 - 000882264 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000882264 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000770056 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2019-11-15 14:52 - 2019-11-15 14:52 - 000582672 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000567576 _____ C:\WINDOWS\system32\amdmiracast.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000562184 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmcl64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000501776 _____ C:\WINDOWS\system32\dgtrayicon.exe
2019-11-15 14:52 - 2019-11-15 14:52 - 000493584 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000488976 _____ C:\WINDOWS\system32\GameManager64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000477192 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000448520 _____ C:\WINDOWS\system32\atieah64.exe
2019-11-15 14:52 - 2019-11-15 14:52 - 000392200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmcl32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000390160 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000360968 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2019-11-15 14:52 - 2019-11-15 14:52 - 000357392 _____ C:\WINDOWS\system32\clinfo.exe
2019-11-15 14:52 - 2019-11-15 14:52 - 000312848 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-11-15 14:52 - 2019-11-15 14:52 - 000312848 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-11-15 14:52 - 2019-11-15 14:52 - 000284688 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-11-15 14:52 - 2019-11-15 14:52 - 000284688 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-11-15 14:52 - 2019-11-15 14:52 - 000249352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000220680 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000204952 _____ C:\WINDOWS\SysWOW64\ativvsvl.dat
2019-11-15 14:52 - 2019-11-15 14:52 - 000204952 _____ C:\WINDOWS\system32\ativvsvl.dat
2019-11-15 14:52 - 2019-11-15 14:52 - 000192528 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000186856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000171536 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000167440 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000166208 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000161296 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000157144 _____ C:\WINDOWS\SysWOW64\ativvsva.dat
2019-11-15 14:52 - 2019-11-15 14:52 - 000157144 _____ C:\WINDOWS\system32\ativvsva.dat
2019-11-15 14:52 - 2019-11-15 14:52 - 000154384 _____ C:\WINDOWS\system32\samu_krnl_ci.sbin
2019-11-15 14:52 - 2019-11-15 14:52 - 000146960 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000144400 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000143368 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000138832 _____ C:\WINDOWS\system32\samu_krnl_isv_ci.sbin
2019-11-15 14:52 - 2019-11-15 14:52 - 000137944 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000137944 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000134152 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000132616 _____ C:\WINDOWS\system32\atidxx64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000129544 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000129544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000125488 _____ C:\WINDOWS\system32\kapp_ci.sbin
2019-11-15 14:52 - 2019-11-15 14:52 - 000121168 _____ C:\WINDOWS\system32\kapp_si.sbin
2019-11-15 14:52 - 2019-11-15 14:52 - 000117304 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000117304 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000115720 _____ C:\WINDOWS\SysWOW64\atidxx32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000114184 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000078856 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000055312 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000052240 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000028392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2019-11-15 14:52 - 2019-11-15 14:52 - 000028392 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2019-11-15 14:52 - 2019-11-15 14:51 - 000949768 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2019-11-15 14:52 - 2019-11-15 14:51 - 000777224 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2019-11-15 14:52 - 2019-11-15 14:51 - 000481288 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2019-11-15 14:52 - 2019-11-15 14:51 - 000390152 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2019-11-15 14:52 - 2019-11-15 14:51 - 000200824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2019-11-15 14:52 - 2019-11-15 14:51 - 000178232 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2019-11-15 14:52 - 2019-11-15 14:51 - 000144696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2019-11-15 14:52 - 2019-11-15 14:51 - 000128952 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2019-11-15 14:52 - 2019-11-15 14:51 - 000034488 _____ C:\WINDOWS\system32\AMDKernelEvents.man
2019-11-15 12:47 - 2019-11-15 12:47 - 000030731 _____ C:\Users\174ma\Downloads\the.grand.tour.s03e11.web.h264-strife[eztv].mkv.torrent
2019-11-15 12:46 - 2019-11-15 12:46 - 000037897 _____ C:\Users\174ma\Downloads\The.Grand.Tour.S03E13.WEB.h264-STRiFE[eztv].mkv.torrent
2019-11-15 12:46 - 2019-11-15 12:46 - 000024917 _____ C:\Users\174ma\Downloads\The.Grand.Tour.S03E14.WEB.h264-STRiFE[eztv].mkv.torrent
2019-11-15 12:46 - 2019-11-15 12:46 - 000023437 _____ C:\Users\174ma\Downloads\The.Grand.Tour.S03E12.WEB.h264-STRiFE[eztv].mkv.torrent
2019-11-15 12:45 - 2019-11-15 12:45 - 000026838 _____ C:\Users\174ma\Downloads\The.Good.Place.S04E08.iNTERNAL.480p.x264-mSD[eztv].mkv.torrent
2019-11-15 12:44 - 2019-11-15 12:44 - 000028954 _____ C:\Users\174ma\Downloads\Superstore.S05E08.iNTERNAL.480p.x264-mSD[eztv].mkv.torrent
2019-11-15 12:41 - 2019-11-15 12:41 - 000046257 _____ C:\Users\174ma\Downloads\Greys.Anatomy.S16E08.iNTERNAL.480p.x264-mSD[eztv].mkv.torrent
2019-11-14 12:19 - 2019-11-14 12:19 - 000041080 _____ C:\Users\174ma\Downloads\south.park.s23e07.internal.720p.web.h264-trump[eztv].mkv.torrent
2019-11-14 12:19 - 2019-11-14 12:19 - 000031096 _____ C:\Users\174ma\Downloads\Its.Always.Sunny.in.Philadelphia.S14E08.WEB.x264-PHOENiX[eztv].mkv.torrent
2019-11-13 09:46 - 2019-11-13 09:46 - 000027899 _____ C:\Users\174ma\Downloads\the.purge.s02e05.internal.720p.web.h264-trump[eztv].mkv.torrent
2019-11-11 22:45 - 2019-11-11 22:45 - 000468776 _____ C:\Users\174ma\Downloads\Income Protector Declaration signed.pdf
2019-11-11 22:42 - 2019-11-11 22:42 - 000446635 _____ C:\Users\174ma\Downloads\Addendum 2020.pdf
2019-11-11 08:59 - 2019-11-11 08:59 - 000034655 _____ C:\Users\174ma\Downloads\the.walking.dead.s10e06.720p.web.h264-xlf[eztv].mkv.torrent
2019-11-11 08:58 - 2019-11-11 08:58 - 000049326 _____ C:\Users\174ma\Downloads\the.simpsons.s31e06.web.x264-xlf[eztv].mkv.torrent
2019-11-11 08:58 - 2019-11-11 08:58 - 000035836 _____ C:\Users\174ma\Downloads\Its.Always.Sunny.in.Philadelphia.S14E07.WEB.x264-PHOENiX[eztv].mkv.torrent
2019-11-11 08:57 - 2019-11-11 08:57 - 000050157 _____ C:\Users\174ma\Downloads\Greys.Anatomy.S16E07.iNTERNAL.480p.x264-mSD[eztv].mkv.torrent
2019-11-11 08:57 - 2019-11-11 08:57 - 000024929 _____ C:\Users\174ma\Downloads\Silicon.Valley.S06E03.480p.x264-mSD[eztv].mkv.torrent
2019-11-11 08:56 - 2019-11-11 08:56 - 000029534 _____ C:\Users\174ma\Downloads\Superstore.S05E07.iNTERNAL.480p.x264-mSD[eztv].mkv.torrent
2019-11-11 08:54 - 2019-11-11 08:54 - 000026758 _____ C:\Users\174ma\Downloads\The.Good.Place.S04E07.iNTERNAL.480p.x264-mSD[eztv].mkv.torrent
2019-11-08 17:25 - 2019-11-08 17:25 - 000134660 _____ C:\Users\174ma\Downloads\Matthew Smith CV.pdf
 
==================== One month (modified) ==================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-12-08 11:32 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-12-08 11:24 - 2018-09-26 11:05 - 000000000 ___DC C:\Users\174ma\Documents\Stellenbosch
2019-12-08 10:11 - 2018-09-15 09:31 - 000000000 ____D C:\WINDOWS\INF
2019-12-08 10:06 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-12-08 10:02 - 2018-09-26 10:18 - 000000000 __SHD C:\Users\174ma\IntelGraphicsProfiles
2019-12-08 00:05 - 2018-09-15 08:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-12-08 00:05 - 2018-03-17 13:48 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2019-12-07 22:32 - 2018-06-21 15:22 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-12-07 22:25 - 2019-06-28 14:08 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleFor174ma.job
2019-12-07 17:22 - 2019-08-29 14:39 - 000000000 ___DC C:\Users\174ma\AppData\Local\Battle.net
2019-12-07 14:42 - 2019-08-29 15:01 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2019-12-07 14:42 - 2019-08-29 14:32 - 000000000 ____D C:\Program Files (x86)\Battle.net
2019-12-07 13:05 - 2018-09-26 10:18 - 000000000 ___DC C:\Users\174ma\AppData\Local\Packages
2019-12-07 00:16 - 2018-09-26 12:59 - 000000000 ___DC C:\Users\174ma\AppData\Roaming\vlc
2019-12-06 23:47 - 2017-11-21 16:24 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2019-12-06 23:45 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-12-06 23:32 - 2019-03-29 11:19 - 000000000 ____D C:\Program Files (x86)\Dropbox
2019-12-06 09:25 - 2018-09-26 12:00 - 000000000 ___DC C:\Users\174ma\AppData\Roaming\uTorrent
2019-12-06 07:40 - 2019-03-25 08:01 - 000000000 ___DC C:\Users\174ma\AppData\Local\BitTorrentHelper
2019-12-05 09:49 - 2018-09-15 08:09 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-12-03 10:17 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-12-03 10:12 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
2019-11-28 12:53 - 2019-08-30 13:26 - 000000000 ___DC C:\Users\174ma\AppData\Roaming\Discord
2019-11-27 16:36 - 2018-09-15 09:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-11-27 16:32 - 2018-09-15 08:09 - 000000000 ____D C:\WINDOWS\servicing
2019-11-27 10:04 - 2019-01-01 09:49 - 000000000 ___DC C:\Users\174ma\AppData\Local\Nox
2019-11-27 09:42 - 2019-04-07 10:04 - 000000000 ___DC C:\Users\174ma\AppData\Local\Package Cache
2019-11-27 09:42 - 2017-11-21 16:23 - 000000000 ____D C:\ProgramData\Package Cache
2019-11-27 08:59 - 2018-09-15 09:33 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-11-24 01:34 - 2018-11-13 15:23 - 000000000 ___DC C:\Users\174ma\AppData\Local\ElevatedDiagnostics
2019-11-22 13:20 - 2018-11-16 20:43 - 000000000 ____D C:\Users\Default\AppData\Roaming\hpqLog
2019-11-22 13:20 - 2018-11-16 20:43 - 000000000 ____D C:\Users\Default User\AppData\Roaming\hpqLog
2019-11-22 13:20 - 2018-02-02 14:16 - 000000000 ____D C:\Program Files (x86)\HP
2019-11-22 13:20 - 2017-11-21 16:31 - 000000000 ____D C:\SWSETUP
2019-11-22 12:56 - 2018-03-17 13:55 - 000000000 ____D C:\WINDOWS\CxSvc
2019-11-22 12:56 - 2018-03-17 13:54 - 001705080 _____ (TODO: <Company name>) C:\WINDOWS\SysWOW64\RebootPrompt.exe
2019-11-22 12:56 - 2018-03-17 13:53 - 000000000 ____D C:\Program Files\Conexant
2019-11-22 12:55 - 2018-03-17 13:52 - 000000000 ____D C:\Program Files (x86)\Intel
2019-11-22 12:55 - 2018-03-17 13:51 - 000000000 ____D C:\ProgramData\Intel
2019-11-22 12:54 - 2018-03-17 13:56 - 000000000 ___DC C:\Intel
2019-11-22 12:54 - 2018-03-17 13:53 - 000000000 ____D C:\WINDOWS\system32\Intel
2019-11-22 12:54 - 2018-03-17 13:51 - 000000000 ____D C:\Program Files\Intel
2019-11-22 12:28 - 2018-06-21 08:41 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-11-21 13:43 - 2018-10-01 15:29 - 000000000 ___DC C:\Users\174ma\AppData\Local\D3DSCache
2019-11-20 17:39 - 2018-09-26 10:18 - 000000000 ___RD C:\Users\174ma\3D Objects
2019-11-20 17:39 - 2017-11-21 16:21 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-11-20 16:52 - 2018-09-15 19:41 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2019-11-20 16:52 - 2018-09-15 19:41 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-11-20 16:52 - 2018-09-15 19:41 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2019-11-20 16:52 - 2018-09-15 19:39 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2019-11-20 16:52 - 2018-09-15 19:38 - 000000000 ____D C:\WINDOWS\system32\Drivers\en-GB
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ___SD C:\WINDOWS\system32\UNP
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ___RD C:\Program Files\Windows Defender
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\TextInput
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\ShellComponents
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Provisioning
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-11-20 16:52 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-11-20 16:52 - 2018-09-15 08:09 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-11-20 15:40 - 2018-09-15 19:41 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2019-11-20 15:40 - 2018-09-15 19:41 - 000018002 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2019-11-20 15:26 - 2019-06-19 10:28 - 000000000 ____D C:\Program Files\UNP
2019-11-20 15:26 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\appcompat
2019-11-19 16:54 - 2019-01-21 09:08 - 000000000 ____D C:\Games
2019-11-19 15:47 - 2018-09-28 21:37 - 000000000 ____D C:\WINDOWS\brltty
2019-11-19 15:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2019-11-19 15:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2019-11-19 15:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2019-11-19 15:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2019-11-19 15:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SystemApps
2019-11-19 15:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2019-11-19 15:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2019-11-19 15:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\et-EE
2019-11-19 15:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\es-MX
2019-11-19 14:46 - 2018-06-21 14:08 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-11-19 14:43 - 2018-06-21 14:08 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-11-19 14:42 - 2018-09-15 09:36 - 000835480 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2019-11-19 14:42 - 2018-09-15 09:36 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2019-11-19 14:23 - 2018-06-21 14:16 - 000748816 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2019-11-19 14:04 - 2019-10-14 08:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2019-11-19 14:04 - 2019-09-17 09:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2019-11-19 14:04 - 2019-08-30 08:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft Classic
2019-11-19 14:04 - 2019-08-29 15:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft
2019-11-19 14:04 - 2019-08-29 14:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\zh-hant
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\zh-hans
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\WinBioPlugins
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\tr
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\th
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\sv
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\sr
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\sl
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\sk
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\ru
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\ro
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\pl
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\no
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\nl
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\lv
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\lt
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\ko
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\ja
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\it
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\hu
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\hr
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\he
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\fr
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\fi
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\et
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\es
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\el
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\de
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\da
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\bg
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\SysWOW64\ar
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\zh-hant
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\zh-hans
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\tr
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\th
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\sv
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\sr
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\sl
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\sk
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\ru
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\ro
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\pl
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\no
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\nl
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\lv
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\lt
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\ko
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\ja
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\it
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\hu
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\hr
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\he
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\fr
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\fi
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\et
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\es
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\el
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\de
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\da
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\cs
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\bg
2019-11-19 14:04 - 2019-06-21 08:09 - 000000000 ____D C:\WINDOWS\system32\ar
2019-11-19 14:04 - 2019-05-15 19:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetBrains
2019-11-19 14:04 - 2019-04-08 20:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2019-11-19 14:04 - 2019-01-24 08:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Problem Report Wizard
2019-11-19 14:04 - 2018-10-11 16:04 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2019-11-19 14:04 - 2018-09-28 21:38 - 000000000 __RSD C:\WINDOWS\SysWOW64\WindowsDevicePortal
2019-11-19 14:04 - 2018-09-28 21:38 - 000000000 __RSD C:\WINDOWS\system32\WindowsDevicePortal
2019-11-19 14:04 - 2018-09-28 21:38 - 000000000 ___RD C:\WINDOWS\WebManagement
2019-11-19 14:04 - 2018-09-28 21:37 - 000000000 ____D C:\WINDOWS\system32\braille-tables
2019-11-19 14:04 - 2018-09-26 10:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2019-11-19 14:04 - 2018-09-15 09:33 - 000000000 __RHD C:\Users\Public\Libraries
2019-11-19 14:04 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2019-11-19 14:04 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-11-19 14:04 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\spool
2019-11-19 14:04 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2019-11-19 14:04 - 2018-09-15 09:31 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-11-19 14:04 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-11-19 14:04 - 2018-03-17 14:05 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
2019-11-19 14:04 - 2018-03-17 14:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2019-11-19 14:04 - 2018-03-17 14:03 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2019-11-19 14:04 - 2018-03-17 13:55 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
2019-11-19 14:04 - 2018-03-17 13:53 - 000000000 ___HD C:\WINDOWS\system32\WLANProfiles
2019-11-19 14:04 - 2018-03-17 13:52 - 000000000 ____D C:\ProgramData\Synaptics
2019-11-19 14:04 - 2018-03-17 13:52 - 000000000 ____D C:\Program Files\Synaptics
2019-11-19 14:04 - 2018-02-02 14:17 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2019-11-19 14:04 - 2017-09-29 15:46 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2019-11-19 12:54 - 2019-03-19 09:15 - 000002095 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2019-11-19 12:53 - 2018-09-15 09:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-11-19 12:42 - 2018-09-28 20:02 - 000000000 ____D C:\ProgramData\Packages
2019-11-19 12:17 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\ServiceState
2019-11-19 12:13 - 2018-09-26 10:18 - 000000000 ___DC C:\Users\174ma\AppData\Local\ConnectedDevicesPlatform
2019-11-19 12:12 - 2019-03-19 08:18 - 000000410 __RSH C:\ProgramData\ntuser.pol
2019-11-19 12:11 - 2017-11-21 16:23 - 000935140 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2019-11-19 12:10 - 2018-09-28 19:53 - 000022840 _____ C:\WINDOWS\system32\emptyregdb.dat
2019-11-19 12:10 - 2018-09-15 09:33 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-11-19 12:10 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Registration
2019-11-19 12:08 - 2019-08-21 18:03 - 000000000 ___DC C:\Users\174ma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2019-11-19 12:08 - 2019-04-07 10:04 - 000000000 ___DC C:\Users\174ma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.7
2019-11-19 12:07 - 2019-08-30 13:26 - 000000000 ___DC C:\Users\174ma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2019-11-19 12:07 - 2019-04-23 12:34 - 000000000 ___DC C:\Users\174ma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2019-11-19 12:07 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\USOPrivate
2019-11-19 12:07 - 2018-06-21 08:26 - 000000000 ___DC C:\Users\174ca\AppData\Local\Packages
2019-11-19 12:06 - 2018-03-17 13:48 - 000000000 ____D C:\Program Files\AMD
2019-11-19 12:05 - 2018-02-02 14:17 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2019-11-19 12:02 - 2018-09-15 09:36 - 000000000 ____D C:\WINDOWS\Setup
2019-11-19 11:52 - 2019-03-19 17:32 - 000000000 ___DC C:\Users\174ma\AppData\Local\CrashDumps
2019-11-19 11:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\InfusedApps
2019-11-19 11:41 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Resources
2019-11-19 11:41 - 2018-03-17 13:53 - 000000000 ____D C:\WINDOWS\system32\cAVS
2019-11-19 11:40 - 2019-07-21 22:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Polar
2019-11-19 11:40 - 2018-10-22 08:32 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2019-11-19 11:40 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Help
2019-11-19 11:34 - 2018-09-15 09:40 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2019-11-19 11:34 - 2018-09-15 09:40 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2019-11-19 11:34 - 2018-09-15 09:40 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2019-11-19 11:34 - 2018-09-15 09:40 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2019-11-19 11:34 - 2018-09-15 09:40 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2019-11-19 11:34 - 2018-09-15 09:40 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll
2019-11-19 11:34 - 2018-09-15 09:40 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2019-11-19 11:34 - 2018-09-15 09:38 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2019-11-19 11:34 - 2018-09-15 09:38 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2019-11-19 11:34 - 2018-09-15 09:38 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2019-11-19 11:34 - 2018-09-15 09:38 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2019-11-19 11:34 - 2018-09-15 09:38 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2019-11-19 11:34 - 2018-09-15 09:38 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll
2019-11-19 11:34 - 2018-09-15 09:38 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2019-11-19 11:34 - 2018-09-15 09:37 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2019-11-17 15:27 - 2019-08-13 23:07 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-11-15 15:00 - 2018-09-26 10:18 - 000000000 ___DC C:\Users\174ma\AppData\Local\AMD
 
==================== SigCheck ============================
 
(There is no automatic fix for files that do not pass verification.)
 
==================== End of FRST.txt ========================

  • 0

#3
Matt54

Matt54

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts
Addition.txt
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-12-2019
Ran by 174ma (08-12-2019 11:36:01)
Running from C:\Users\174ma\Desktop
Windows 10 Pro Version 1809 17763.864 (X64) (2019-11-19 10:12:53)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
174ca (S-1-5-21-4232068156-1879872238-896831279-1002 - Administrator - Enabled) => C:\Users\174ca
174ma (S-1-5-21-4232068156-1879872238-896831279-1023 - Administrator - Enabled) => C:\Users\174ma
Administrator (S-1-5-21-4232068156-1879872238-896831279-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4232068156-1879872238-896831279-503 - Limited - Disabled)
Guest (S-1-5-21-4232068156-1879872238-896831279-501 - Limited - Disabled)
joshu (S-1-5-21-4232068156-1879872238-896831279-1022 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-4232068156-1879872238-896831279-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
µTorrent (HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\uTorrent) (Version: 3.5.5.45395 - BitTorrent Inc.)
7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Active Directory Authentication Library for SQL Server (HKLM\...\{6BF11ECE-3CE8-4FBA-991A-1F55AA6BE5BF}) (Version: 15.0.1300.359 - Microsoft Corporation) Hidden
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 19.021.20056 - Adobe Systems Incorporated)
Alcor Micro Smart Card Reader Driver (HKLM-x32\...\{F24F876B-7D71-4BD6-88E9-614D3B001645}) (Version: 1.7.45.16 - Alcor Micro Corp.) Hidden
Alcor Micro Smart Card Reader Driver (HKLM-x32\...\SZCCID) (Version: 1.7.45.16 - Alcor Micro Corp.)
AMD Settings (HKLM\...\WUCCCApp) (Version: 2019.0715.1006.18179 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 19.10.24.04 - Advanced Micro Devices, Inc.)
Application Verifier x64 External Package (HKLM\...\{10CA1677-8F02-3131-F25C-780BAB52E468}) (Version: 10.1.18362.1 - Microsoft) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
Bang & Olufsen Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 9.0.229.0 - Conexant)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Branding64 (HKLM\...\{E4AA95E4-40DC-4B8C-AEF4-3796541CD164}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
ClickOnce Bootstrapper Package for Microsoft .NET Framework (HKLM-x32\...\{5FD1DF50-FBB1-4888-8F8F-4ECDC78909C4}) (Version: 4.8.03928 - Microsoft Corporation) Hidden
DiagnosticsHub_CollectionService (HKLM\...\{1F3C3AAC-9F7A-47DA-A082-0ACE770041BE}) (Version: 16.1.28901 - Microsoft Corporation) Hidden
Discord (HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\Discord) (Version: 0.0.305 - Discord Inc.)
Dropbox (HKLM-x32\...\Dropbox) (Version: 86.4.146 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.241.1 - Dropbox, Inc.) Hidden
Entity Framework 6.2.0 Tools  for Visual Studio 2019 (HKLM-x32\...\{C4105EB5-5C16-40C4-93DF-66DE6584D26E}) (Version: 6.2.0.0 - Microsoft Corporation) Hidden
Epic Games Launcher (HKLM-x32\...\{93BFE5DF-776E-436F-8693-DF1F72C0E3C1}) (Version: 1.1.151.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.108 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 9.3.20.2747 - HP Inc.)
HP Device Access Manager (HKLM\...\{391C7599-9B57-49A0-A8ED-091612082C6A}) (Version: 8.4.11.0 - HP Inc.)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP ePrint SW (HKLM-x32\...\{54da9769-2364-4bd3-8139-6400500778b3}) (Version: 5.3.22034 - HP Inc.)
HP ESU for Microsoft Windows 10 (HKLM-x32\...\{94D0EB60-8B2F-4A80-BA74-3D312434415F}) (Version: 11.3.1 - HP)
HP JumpStart Bridge (HKLM-x32\...\{3FC961DB-BD36-4D8D-B276-0C456A2BB638}) (Version: 1.4.0.441 - HP Inc.)
HP JumpStart Launch (HKLM-x32\...\{F213102E-FD30-4E22-AF73-4C682D65FFEE}) (Version: 1.4.441.0 - HP Inc.)
HP lt4120 Snapdragon X5 LTE (HKLM-x32\...\{A837AF21-F7A3-483C-91BD-C1106FB84AD8}) (Version: 1.0.1.76 - HP Inc.)
HP MAC Address Manager (HKLM-x32\...\{21FA165F-905C-4DDA-B00A-00C3A5D17BBA}) (Version: 1.1.19.1 - HP Inc.)
HP Notifications (HKLM-x32\...\{99F86665-F4F0-40DE-A982-D0ADB4E102E6}) (Version: 1.1.11.1 - HP)
HP Performance Advisor (HKLM-x32\...\{1B48E9C7-D145-47D6-A0D9-273DE3F05A82}) (Version: 2.1.2309 - HP Inc.)
HP SoftPaq Download Manager (HKLM-x32\...\{fc153673-e23b-4908-93b9-164cc056a3c4}) (Version: 4.3.19.0 - HP)
HP Support Assistant (HKLM-x32\...\{05F81C27-62A5-4A0C-8519-60CB66CF87C6}) (Version: 8.8.24.33 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{183BD477-774B-4700-B40B-EE43886E74D2}) (Version: 12.13.42.1 - HP Inc.)
HP Sure Connect (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 1.0.0.31 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{9FA4819F-C0D6-4184-950A-5F3859EB1168}) (Version: 1.2.13.1 - HP Inc.)
HP Universal Camera Driver (HKLM-x32\...\{8B204728-0D90-48BE-97C0-BBEDDFDFA83C}) (Version: 3.7.8.2A - SunplusIT)
HP Velocity (HKLM\...\IPQ_NSIS) (Version: 3.2.0.24879 - HP Inc.)
HP WorkWise Service (HKLM-x32\...\{2EDE0C89-892C-4C3C-A922-C4DDE7C68EAE}) (Version: 2.2.32.1 - HP Inc.)
HPWorkWise64 (HKLM\...\{8BD52DCC-C02C-4435-8AC8-1FAA0846C393}) (Version: 2.2.32.1 - HP Company) Hidden
icecap_collection_neutral (HKLM-x32\...\{7BB0BF1D-3021-45DC-912E-9DAB74F486C0}) (Version: 16.3.29110 - Microsoft Corporation) Hidden
icecap_collection_x64 (HKLM\...\{0B880F5C-ECD4-4FC6-81A7-46C40ECA0B8C}) (Version: 16.3.29110 - Microsoft Corporation) Hidden
icecap_collectionresources (HKLM-x32\...\{AA259EEE-7819-4440-A995-F5E156BD988C}) (Version: 16.3.29110 - Microsoft Corporation) Hidden
icecap_collectionresourcesx64 (HKLM-x32\...\{112C7251-6110-40E3-8FE7-7D0F53D96995}) (Version: 16.1.28829 - Microsoft Corporation) Hidden
IIS 10.0 Express (HKLM\...\{643F2A3F-960C-4914-BD67-9490B4484108}) (Version: 10.0.03203 - Microsoft Corporation)
IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version:  - ) Hidden
IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version:  - ) Hidden
Intel® Chipset Device Software (HKLM-x32\...\{44ded3eb-1686-46a6-9770-fd79096c29f7}) (Version: 10.1.1.45 - Intel® Corporation) Hidden
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1916.12.0.1263 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6472 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.7.0.1014 - Intel Corporation)
Intel® Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1724.2 - Intel Corporation)
Intel® Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.52.230.1 - Intel Corporation) Hidden
Intel® Trusted Connect Services Client (HKLM-x32\...\{c6de84fd-ece7-4c2a-9f06-8cabe7ab79a0}) (Version: 1.52.230.1 - Intel Corporation) Hidden
Intel® Wireless Bluetooth® (HKLM-x32\...\{00000020-0200-1033-84C8-B8D95FA3C8C3}) (Version: 20.20.0 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{f8c930bd-0a68-425f-8c11-87723d1e2c97}) (Version: 20.90.0 - Intel Corporation)
IntelliTraceProfilerProxy (HKLM-x32\...\{7D94CF67-6666-4111-B027-D7AB7F189F70}) (Version: 15.0.18198.01 - Microsoft Corporation) Hidden
JetBrains PyCharm Community Edition 2019.1.2 (HKLM-x32\...\PyCharm Community Edition 2019.1.2) (Version: 191.7141.48 - JetBrains s.r.o.)
Kits Configuration Installer (HKLM-x32\...\{63AAA877-5536-9481-2385-28A082100D78}) (Version: 10.1.18362.1 - Microsoft) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft .NET Core SDK 3.0.100 (x64) from Visual Studio (HKLM\...\{C52DB3F0-440B-4A83-B795-B1180D70BBFF}) (Version: 3.0.100.014277 - Microsoft Corporation)
Microsoft Azure Authoring Tools - v2.9.6 (HKLM\...\{EDADFA19-7F96-4075-A4AB-2209910626C5}) (Version: 2.9.8899.26 - Microsoft Corporation)
Microsoft Azure Compute Emulator - v2.9.6 (HKLM\...\Microsoft Azure Compute Emulator - v2.9.6) (Version: 2.9.8899.26 - Microsoft Corporation)
Microsoft Azure Libraries for .NET – v2.9 (HKLM\...\{C5C91AA6-3E83-430E-8B7A-6B790083F28D}) (Version: 3.0.0127.060 - Microsoft Corporation)
Microsoft Azure Storage Emulator - v5.10 (HKLM-x32\...\Microsoft Azure Storage Emulator - v5.10) (Version: 5.10.19227.2113 - Microsoft Corporation)
Microsoft ODBC Driver 17 for SQL Server (HKLM\...\{8D98AC2C-FC5C-440D-A2D3-6C9655F957D8}) (Version: 17.2.0.1 - Microsoft Corporation)
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.12228.20332 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\OneDriveSetup.exe) (Version: 19.086.0502.0006 - Microsoft Corporation)
Microsoft SQL Server 2016 LocalDB  (HKLM\...\{9097BF1A-13A0-4A4A-A1F8-473E2A669863}) (Version: 13.1.4001.0 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2019 CTP2.2 (HKLM\...\{8D7CE3B0-5379-46FE-9F4B-A65D9F4CC1F1}) (Version: 15.0.1200.24 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2019 CTP2.2 (HKLM-x32\...\{725CC962-98BD-42C7-87D8-51C680FB1779}) (Version: 15.0.1200.24 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 2.3.2217.1010 - Microsoft Corporation)
Microsoft Web Deploy 4.0 (HKLM\...\{BBCDB523-F5B7-4E53-A911-C85191E3BDF0}) (Version: 10.0.2606 - Microsoft Corporation)
MSI Development Tools (HKLM-x32\...\{DB4DB790-64DD-1902-4BF2-833B3B6DBCA1}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
NXPProximityInstaller (HKLM-x32\...\NXPProximityInstaller) (Version: 3.10060.10442.10 - NXP Semiconductors)
OEM Application Profile (HKLM-x32\...\{12C2AEB0-ED60-4CCF-DD83-C65BC7CCFB50}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.12228.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.12228.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.12228.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.12228.20332 - Microsoft Corporation) Hidden
Polar FlowSync version 3.0.0.1337 (HKLM-x32\...\{A1538F5C-7B65-4DB6-9FFB-FFC0DF2E85D8}_is1) (Version: 3.0.0.1337 - Polar Electro Oy)
Python 3.7.0 (32-bit) (HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\{ece37911-ffeb-4f29-95d6-abcf555d7364}) (Version: 3.7.150.0 - Python Software Foundation)
Python 3.7.0 Core Interpreter (32-bit) (HKLM-x32\...\{13BB06D9-FD38-47E5-946E-C2606C554030}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Development Libraries (32-bit) (HKLM-x32\...\{B424BE74-3C96-4974-8754-9D6442286112}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Documentation (32-bit) (HKLM-x32\...\{ABEE159E-FE5B-4E58-BDD7-1DED2F10AAEB}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Executables (32-bit) (HKLM-x32\...\{4642A126-F999-4407-801B-C1C89BDA58C5}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 pip Bootstrap (32-bit) (HKLM-x32\...\{69CFC76B-3434-4919-8885-BA7960725137}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Standard Library (32-bit) (HKLM-x32\...\{09160A5D-8B99-4A89-9E9D-8A6D8E9C7EC1}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Tcl/Tk Support (32-bit) (HKLM-x32\...\{8A09EA6B-C86C-4ECA-8742-C4C1BCA96845}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Test Suite (32-bit) (HKLM-x32\...\{717DB3B4-C457-447B-A8A6-6921A4D917EF}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.0 Utility Scripts (32-bit) (HKLM-x32\...\{FC756D1E-1252-406E-8414-E11FAF97F3C7}) (Version: 3.7.150.0 - Python Software Foundation) Hidden
Python 3.7.4 (64-bit) (HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\{8ae589dd-de2e-42cd-af56-102374115fee}) (Version: 3.7.4150.0 - Python Software Foundation)
Python 3.7.4 Core Interpreter (64-bit symbols) (HKLM\...\{B2729985-BBF8-45AB-8C22-E0819F1480F0}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Core Interpreter (64-bit) (HKLM\...\{92A73F83-DC16-4316-945A-B66BC12362A7}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Development Libraries (64-bit) (HKLM\...\{B86709C3-962E-4C62-BF25-CF8D06267D72}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Documentation (64-bit) (HKLM\...\{4BC82D3B-BBC7-4BAF-899D-10AF5745E4AB}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Executables (64-bit symbols) (HKLM\...\{F5A718AA-4520-4DDD-922C-9E7D2ED4173A}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Executables (64-bit) (HKLM\...\{6DDB726E-09CE-44B4-A129-B62AD1604A95}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 pip Bootstrap (64-bit) (HKLM\...\{F92D31AF-F447-4A85-B0FD-CE6378F7625A}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Standard Library (64-bit symbols) (HKLM\...\{45019AEA-1097-45E8-A982-EAEC588E7BB9}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Standard Library (64-bit) (HKLM\...\{5BF79310-A787-430F-93DD-CC8A9787679D}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Tcl/Tk Support (64-bit symbols) (HKLM\...\{020CA518-2CFF-4802-9B9A-0D69CA0BA62E}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Tcl/Tk Support (64-bit) (HKLM\...\{E5B772D5-8CCD-461B-BC60-B10DFB5704AB}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Test Suite (64-bit symbols) (HKLM\...\{221A452C-074D-4EDD-ACC1-60EF866E7E4F}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Test Suite (64-bit) (HKLM\...\{794D5EC8-A92F-4969-A318-449C2E71D8C4}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Utility Scripts (64-bit) (HKLM\...\{16F74529-EDE0-4BBD-B2AF-89AF9C696EA8}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{D722DA3A-92F5-454A-BD5D-A48C94D82300}) (Version: 3.7.6762.0 - Python Software Foundation)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.370.159 - Realtek Semiconductor Corp.)
Realtek USB Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{04201224-2B34-4EE7-862B-B7BBF89DB3AB}) (Version: 10.16.321.2017 - Realtek)
SDK ARM Additions (HKLM-x32\...\{73681F86-CD86-4208-572F-959B45430B04}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
SDK ARM Redistributables (HKLM-x32\...\{67EE3804-9642-62BA-EBF1-B1561FB4ECBE}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Skype version 8.42 (HKLM-x32\...\Skype_is1) (Version: 8.42 - Skype Technologies S.A.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.8.32 - Synaptics Incorporated)
Synaptics WBF Fingerprint Reader (HKLM\...\{0CDA14EC-A786-4A8B-9CDC-0B7D93AD9887}) (Version: 4.5.341.0 - Synaptics)
Twitch (HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
TypeScript SDK (HKLM-x32\...\{7C8CE25B-A2FA-4BE3-8543-D8124349C074}) (Version: 3.6.2.0 - Microsoft Corporation) Hidden
Universal CRT Extension SDK (HKLM-x32\...\{13952D7A-B7B3-F4F8-5F29-5CD18E8168B7}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{74CBC330-ED16-31B9-E8BE-0C6A8E67DE32}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{847D4DAF-0182-265B-324F-406462E8A90D}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{9F7B0D96-881D-8850-C303-43F3A08E6902}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (HKLM-x32\...\{6F54BF87-2EE6-FA6D-431D-33A665992D49}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Update for  (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{F814D094-197F-43C8-87FA-3210BB780486}) (Version: 2.53.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{52C1DD03-104E-4AC6-9DC6-21D585721ED1}) (Version: 1.19.0.0 - Microsoft Corporation) Hidden
Uplay (HKLM-x32\...\Uplay) (Version: 85.1 - Ubisoft)
vcpp_crt.redist.clickonce (HKLM-x32\...\{FADF710A-1550-4130-97AB-643CAC8349A4}) (Version: 14.23.28107.10 - Microsoft Corporation) Hidden
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
Visual Studio Community 2019 (HKLM-x32\...\ab4651bf) (Version: 16.3.29519.87 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.8 - VideoLAN)
VS Immersive Activate Helper (HKLM-x32\...\{78500789-0EBE-4490-BE43-F9EF8250BF42}) (Version: 16.0.98.0 - Microsoft Corporation) Hidden
VS JIT Debugger (HKLM\...\{4137D3AB-5B44-4AC9-83A4-5273F2E2547E}) (Version: 16.0.98.0 - Microsoft Corporation) Hidden
VS Script Debugging Common (HKLM\...\{D8B26CBD-15D2-440B-BCBD-5616D74EFC7D}) (Version: 16.0.98.0 - Microsoft Corporation) Hidden
vs_BlendMsi (HKLM-x32\...\{B5E3A3E1-1529-4D5A-9E95-34971FA07825}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_clickoncebootstrappermsi (HKLM-x32\...\{BAF91847-0A64-405E-98EC-A0BA6FB4BC4E}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_clickoncebootstrappermsires (HKLM-x32\...\{271F1F42-B547-4498-825F-590DBB1774F7}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_clickoncesigntoolmsi (HKLM-x32\...\{30D97A69-3C0F-4552-9A72-60E591B210C7}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_communitymsi (HKLM-x32\...\{D19BAD98-BFDD-4C70-B66C-EE75F851B9BC}) (Version: 16.3.29311 - Microsoft Corporation) Hidden
vs_communitymsires (HKLM-x32\...\{95E79BBC-97FD-4FEB-91B5-CC0231324812}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_devenvmsi (HKLM-x32\...\{AD0C92A4-1514-4BC1-A723-A272A8343924}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_filehandler_amd64 (HKLM-x32\...\{DBA97C17-13F0-407B-8BC4-0C2E01A298A5}) (Version: 16.3.29209 - Microsoft Corporation) Hidden
vs_filehandler_x86 (HKLM-x32\...\{AD3B73B9-D5C8-4FF9-AB73-7A1DC39F3E02}) (Version: 16.3.29209 - Microsoft Corporation) Hidden
vs_FileTracker_Singleton (HKLM-x32\...\{692A0FB3-E6A2-4D41-AC03-4136B4312DC0}) (Version: 16.3.29209 - Microsoft Corporation) Hidden
vs_minshellinteropmsi (HKLM-x32\...\{27B16914-BC5D-4018-8074-071262A27F6D}) (Version: 16.2.28917 - Microsoft Corporation) Hidden
vs_minshellmsi (HKLM-x32\...\{6B065DCD-E730-4FCE-905D-2B3F30A91110}) (Version: 16.3.29230 - Microsoft Corporation) Hidden
vs_minshellmsires (HKLM-x32\...\{EC04CD66-C03A-470D-B0D2-4BBC87F6382D}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_SQLClickOnceBootstrappermsi (HKLM-x32\...\{92B3118C-3214-4BFA-89A0-5FF5EDFA2AEA}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_tipsmsi (HKLM-x32\...\{E208E682-50EE-4F2F-9860-C91B906B8A03}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1-2) (Version: 1.0.39.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0-2) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0-3) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0-4) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0-5) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
WinAppDeploy (HKLM-x32\...\{8E3AE0EF-D067-700C-BDB4-10D5552155DC}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Windows 10 Update Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22589 - Microsoft Corporation)
Windows SDK AddOn (HKLM-x32\...\{E6F877A1-2F65-4BF0-87B6-A4071B7663D3}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version:  - )
Windows Software Development Kit - Windows 10.0.18362.1 (HKLM-x32\...\{126dedf0-cc0e-4b48-9ece-806b0e437195}) (Version: 10.1.18362.1 - Microsoft Corporation)
WinRT Intellisense Desktop - en-us (HKLM-x32\...\{E67F1F03-FB4A-3D61-8999-E6A4C4B26F34}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{7EF010FF-7800-28BA-FF49-2D219EC7BA82}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (HKLM-x32\...\{36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{6B03A6A4-643C-57CE-CA6F-4E19BF47497A}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense Mobile - en-us (HKLM-x32\...\{918A448F-59E8-FBF5-B087-D3F07160C7E0}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (HKLM-x32\...\{66483041-F590-EC46-4AF0-EE39C62FB680}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{9C61E6D2-C43E-6746-B519-6185558C4A24}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (HKLM-x32\...\{6B37CC5B-78DF-5050-2215-68479716A587}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{250D5341-0879-4016-399C-BBCD87B80E95}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
World of Warcraft Classic (HKLM-x32\...\World of Warcraft Classic) (Version:  - Blizzard Entertainment)
Zoom (HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\ZoomUMX) (Version: 4.4 - Zoom Video Communications, Inc.)
 
Packages:
=========
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.0.2204.0_x64__rz1tebttyb220 [2019-11-19] (Dolby Laboratories)
EdgeDevtoolsPlugin -> C:\WINDOWS\SystemApps\Microsoft.EdgeDevtoolsPlugin_cw5n1h2txyewy [2019-11-19] (Microsoft Corporation)
HP JumpStart -> C:\Program Files\WindowsApps\AD2F1837.HPJumpStart_1.4.464.0_x86__v10z8vjag6ke6 [2018-03-17] (HP Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_105.1.623.0_x64__v10z8vjag6ke6 [2019-11-19] (HP Inc.)
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_7.0.15.0_x64__v10z8vjag6ke6 [2019-11-25] (HP Inc.)
HP WorkWise -> C:\Program Files\WindowsApps\AD2F1837.HPWorkWise_2.2.36.0_x64__v10z8vjag6ke6 [2018-12-18] (HP Inc.) [Startup Task]
Mail and Calendar -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12228.20276.0_x64__8wekyb3d8bbwe [2019-11-26] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-17] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-17] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.11052.0_x64__8wekyb3d8bbwe [2019-11-19] (Microsoft Studios) [MS Ad]
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.33.13253.0_x64__8wekyb3d8bbwe [2019-11-25] (Microsoft Corporation) [MS Ad]
 
==================== Custom CLSID (Whitelisted): ==============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-4232068156-1879872238-896831279-1023_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\174ma\Dropbox [2019-03-29 11:28]
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll -> No File
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2019-07-15] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-10-15] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\ki130624.inf_amd64_d85487143eec5e1a\igfxDTCM.dll [2019-03-18] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
 
==================== Codecs (Whitelisted) ====================
 
==================== Shortcuts & WMI ========================
 
==================== Loaded Modules (Whitelisted) =============
 
2019-01-08 12:43 - 2019-01-08 12:43 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2019-01-08 12:43 - 2019-01-08 12:43 - 003598336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2019-11-20 19:14 - 2019-11-20 19:14 - 000156672 _____ () [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\BRIDGECommon\2a5b63d7fce8de055dc0e8320d1dd76f\BRIDGECommon.ni.dll
2019-11-20 19:15 - 2019-11-20 19:15 - 000121344 _____ () [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\BridgeExtension\bfc7bd3ec4e24f686f8290346d69c2fb\BridgeExtension.ni.dll
2019-11-20 19:15 - 2019-11-20 19:15 - 000374784 _____ () [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\CleanStartController\984ea53205cd3b74a145c267a9b05b7f\CleanStartController.ni.dll
2019-11-20 19:15 - 2019-11-20 19:15 - 000139776 _____ () [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Registratio4eabc192#\4ab239300a1b1238478a547a7c17e922\RegistrationUtilities.ni.dll
2019-11-22 12:56 - 2019-04-22 15:50 - 001370112 _____ (Conexant Systems LLC.) [File not signed] C:\Program Files\Conexant\SA3\HP-NB-AIO\CxHDAudioAPI.dll
2018-12-12 18:16 - 2018-12-12 18:16 - 000382464 _____ (Crossmatch, Inc.) [File not signed] C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DPCPFelica.dll
2018-12-12 18:14 - 2018-12-12 18:14 - 000338432 _____ (Crossmatch, Inc.) [File not signed] C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DPDevice2.dll
2018-12-12 18:13 - 2018-12-12 18:13 - 000456192 _____ (Crossmatch, Inc.) [File not signed] C:\Program Files\HP\HP ProtectTools Security Manager\Bin\DPDevice5.dll
2019-11-20 19:15 - 2019-11-20 19:15 - 000131584 _____ (HP Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\CommonPortable\2687b54cf28fdc6af0c05450302ee07c\CommonPortable.ni.dll
2018-03-17 13:59 - 2016-07-01 16:56 - 002225664 _____ (HP, Inc.) [File not signed] C:\Program Files (x86)\HP lt4120 Snapdragon X5 LTE\Utilities\SIM based Firmware Switching Tool\GobiConnectionMgmt.dll
2019-09-17 09:50 - 2019-02-21 18:00 - 000078336 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2019-11-20 19:14 - 2019-11-20 19:14 - 002227200 _____ (Newtonsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Newtonsoft.Json\e65ab5092d76cd1221889edf1b4235cd\Newtonsoft.Json.ni.dll
2018-12-12 18:08 - 2018-12-12 18:08 - 000348672 _____ (RFIDeas) [File not signed] C:\Program Files\HP\HP ProtectTools Security Manager\Bin\pcProxAPI.dll
2019-11-22 12:56 - 2017-09-06 12:30 - 001431552 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files\CONEXANT\Flow\x64\SQLite.Interop.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000040960 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000414208 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000516608 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2019-01-08 12:44 - 2019-01-08 12:44 - 001441280 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2019-07-15 10:04 - 2019-07-15 10:04 - 005999104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 006413824 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 001141760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000339968 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 004143104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 003840000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000332800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000349184 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 080959488 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 005622272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 000190464 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2019-01-08 12:43 - 2019-01-08 12:43 - 002825216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2019-01-08 12:44 - 2019-01-08 12:44 - 000053760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2019-01-08 12:44 - 2019-01-08 12:44 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2019-01-08 12:44 - 2019-01-08 12:44 - 000017408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2019-01-08 12:44 - 2019-01-08 12:44 - 000330752 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2019-01-08 12:44 - 2019-01-08 12:44 - 000137216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2019-01-08 12:44 - 2019-01-08 12:44 - 000090112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-01-08 12:44 - 2019-01-08 12:44 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2019-01-08 12:44 - 2019-01-08 12:44 - 000136192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\styles\qwindowsvistastyle.dll
 
==================== Alternate Data Streams (Whitelisted) ========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\Users\174ca\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [108]
AlternateDataStreams: C:\Users\174ma\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [118]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [470]
 
==================== Safe Mode (Whitelisted) ==================
 
==================== Association (Whitelisted) =================
 
==================== Internet Explorer trusted/restricted ==========
 
==================== Hosts content: =========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2017-09-29 15:46 - 2017-09-29 15:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
 
==================== Other Areas ===========================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\Control Panel\Desktop\\Wallpaper -> C:\Users\174ma\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\dsc02940.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
 
Network Binding:
=============
Mobile 4: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Mobile 8: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Mobile: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Mobile 2: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Mobile 3: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Mobile 5: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
WiFi: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Mobile 9: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Mobile 11: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Mobile 10: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Mobile 7: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Ethernet: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
Mobile 6: LiveQoS NDIS 6 Filter Driver -> ipeak_ipeakLWF (enabled) 
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(If an entry is included in the fixlist, it will be removed.)
 
HKLM\...\StartupApproved\Run32: => "Dropbox"
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\StartupApproved\StartupFolder: => "Twitch.lnk"
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\StartupApproved\Run: => "ProtonVPN"
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\StartupApproved\Run: => "TomTom MySports Connect.exe"
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\StartupApproved\Run: => "Gaijin.Net Agent"
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_236386E988AB606509FE1784F192192E"
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\StartupApproved\Run: => "Skype for Desktop"
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\StartupApproved\Run: => "Discord"
 
==================== FirewallRules (Whitelisted) ================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{F1F3015F-E7E4-4830-98FD-F5C03274781C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B7490FA2-1B91-48BC-B3E2-EF4055CF7035}] => (Allow) C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe No File
FirewallRules: [{C1B668E0-4C31-4BDC-A857-75023FD16273}] => (Allow) D:\Program Files\Nox\bin\Nox.exe No File
FirewallRules: [{E4246367-CE5C-45A6-BF28-F76D7F475499}] => (Allow) LPort=6114
FirewallRules: [{2FA085C6-E511-4DBC-9F10-21C479B264C3}] => (Allow) LPort=6012
FirewallRules: [{4B293538-31BC-4605-ADD6-DCE07F84F471}] => (Allow) LPort=3724
FirewallRules: [UDP Query User{AD62D0BC-B28C-4E6C-BED0-59D692E202FA}C:\program files (x86)\world of warcraft\_classic_\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\_classic_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{07DB6F18-ECF1-4A4F-B844-5358819D2068}C:\program files (x86)\world of warcraft\_classic_\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\_classic_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{1B0C93F6-5A6A-42D9-9395-D8877F2AF13D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe No File
FirewallRules: [{957046F5-56A2-44B4-94DF-3D07D96291B1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe No File
FirewallRules: [{4A81D39F-ED4C-4CCD-9B2E-DF31A1B52D39}] => (Allow) C:\Users\174ma\AppData\Roaming\Zoom\bin\airhost.exe No File
FirewallRules: [{FDEB30EC-3D5F-48A9-BD35-442CF773F51A}] => (Allow) C:\Users\174ma\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{8B84F12F-77BA-49DF-B6CF-A3DD4E1DB34C}] => (Allow) LPort=5354
FirewallRules: [{EF80C3A8-8261-46EB-A801-80C7115EC76E}] => (Allow) LPort=5354
FirewallRules: [{FBA69AC9-59F1-4474-AADD-6F52CF73FE1C}] => (Allow) LPort=5354
FirewallRules: [{7C2C0857-5750-41CD-B0DF-9DBAE8C7355A}] => (Allow) LPort=5354
FirewallRules: [{BC5CEB0D-CE8A-4009-AEC5-5E3077354D98}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{46918F5F-BD30-4E32-BD07-8E83A9296C6D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{5247D79D-7E02-46CD-8663-B45CD87459C1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{951C86AF-D354-4418-8DB1-C38B622BA6B5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{1065C2F2-2E7F-450B-A61D-C62F8469CEC5}] => (Allow) C:\Program Files (x86)\Windroye\Windroye.exe No File
FirewallRules: [{28CE0C17-587F-4DBE-9E06-474F0740895B}] => (Allow) C:\Program Files (x86)\Windroye\Windroye.exe No File
FirewallRules: [{269D0980-8002-4A1F-8657-921892E9F46F}] => (Allow) C:\Program Files\WindroyeBox\WindroyeBoxHD.exe (北京文安卓立科技有限公司 -> )
FirewallRules: [{F3599F3E-6551-4BE2-AE33-6E44553D9E07}] => (Allow) C:\Program Files\WindroyeBox\WindroyeBoxHD.exe (北京文安卓立科技有限公司 -> )
FirewallRules: [UDP Query User{994D0DC3-4D84-476A-AB23-9EE2E0593B15}C:\program files\jetbrains\pycharm community edition 2019.1.2\bin\pycharm64.exe] => (Allow) C:\program files\jetbrains\pycharm community edition 2019.1.2\bin\pycharm64.exe (JetBrains s.r.o. -> JetBrains s.r.o.)
FirewallRules: [TCP Query User{D0C92DD3-C3CA-4C10-8457-6CAA4B6D06A8}C:\program files\jetbrains\pycharm community edition 2019.1.2\bin\pycharm64.exe] => (Allow) C:\program files\jetbrains\pycharm community edition 2019.1.2\bin\pycharm64.exe (JetBrains s.r.o. -> JetBrains s.r.o.)
FirewallRules: [{28A0AA4F-50B2-4C5E-9354-DB5934DFEB03}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{51FCD6BD-B533-46FE-B7C9-214602AAB375}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{41365284-A7C0-4737-A023-CBA80D74CEBB}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe No File
FirewallRules: [UDP Query User{9FFE5FFA-F936-4478-AD09-DAD38D68CE7B}C:\users\174ma\appdata\local\crossout\launcher.exe] => (Allow) C:\users\174ma\appdata\local\crossout\launcher.exe No File
FirewallRules: [TCP Query User{6838E981-3ED3-4F09-A698-DB61CB05FB94}C:\users\174ma\appdata\local\crossout\launcher.exe] => (Allow) C:\users\174ma\appdata\local\crossout\launcher.exe No File
FirewallRules: [UDP Query User{7747BAE7-CB89-41D6-B66F-5FDC6F4D8290}C:\games\the sims 4 seasons\game\bin\ts4_x64.exe] => (Allow) C:\games\the sims 4 seasons\game\bin\ts4_x64.exe No File
FirewallRules: [TCP Query User{DDCCA196-7CFD-4D78-9C66-5F5941DA837A}C:\games\the sims 4 seasons\game\bin\ts4_x64.exe] => (Allow) C:\games\the sims 4 seasons\game\bin\ts4_x64.exe No File
FirewallRules: [{72ACB1FA-BBDE-40C1-8DA8-7D42B05CA80F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4ED93757-CDAE-440F-9A08-87D9053B8CEB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4AB8648E-5A4F-4EF7-95CC-8A27EDCC7E1F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D9A899FA-83C3-40B8-A694-3C70B47D3FEF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2C20F2B8-B91A-46CA-8BD4-2C643B12A9F8}] => (Allow) c:\Program Files\HP\Sure Click\4.0.4.511\servers\manifests\chrome\brchromium\62.0.3202.89\BrChrome.exe No File
FirewallRules: [TCP Query User{E6926279-CC3C-4AEF-B99E-6F2BD2335931}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe No File
FirewallRules: [UDP Query User{993B8F35-F8EA-4242-82F0-DC65211A7F1F}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe No File
FirewallRules: [TCP Query User{EDFED4A8-5114-4654-A6DF-5CAB103B4E6C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe No File
FirewallRules: [UDP Query User{0AB137B7-B738-49EA-B21D-BEFF6330668C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe No File
FirewallRules: [{0CAC4F96-7B21-41C8-8B1F-918BDAB784FA}] => (Allow) C:\Users\174ma\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{C6066E2B-8832-4F62-B6A9-F03AC1784250}] => (Allow) C:\Users\174ma\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [TCP Query User{6C786902-40AC-4E1D-AFB0-0CE2B542FA54}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{73A8AE25-5CD6-4FE8-936C-B94316DDA090}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe No File
FirewallRules: [{9EBDF7CE-523A-4659-A10D-8371C23A10F3}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{CCF4741D-06B0-435A-81A8-72A329515260}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation -> )
FirewallRules: [{20907CA1-D5FD-4B49-A3E2-A3E5EF928DAA}] => (Allow) LPort=3724
FirewallRules: [{658FBAC7-1D78-4953-969D-1332998ED309}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
 
==================== Restore Points =========================
 
07-12-2019 10:31:43 Windows Update
 
==================== Faulty Device Manager Devices ============
 
 
==================== Event log errors: ========================
 
Application errors:
==================
Error: (12/08/2019 10:34:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AUDIODG.EXE, version: 10.0.17763.831, time stamp: 0x274e21ab
Faulting module name: SECOMN64.dll, version: 2.0.8.27, time stamp: 0x5b91ec7b
Exception code: 0xc0000005
Fault offset: 0x0000000000053db0
Faulting process ID: 0x311c
Faulting application start time: 0x01d5ada258a9302e
Faulting application path: C:\WINDOWS\system32\AUDIODG.EXE
Faulting module path: C:\WINDOWS\system32\SECOMN64.dll
Report ID: 04e88bbd-b7f8-4a10-8ff4-9a5bdb98dc91
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/06/2019 11:32:45 PM) (Source: DbxSvc) (EventID: 281) (User: )
Description: CertFindCertificateInStore failed with: (-2146885628) Cannot find object or property.
 
Error: (12/06/2019 11:32:45 PM) (Source: DbxSvc) (EventID: 281) (User: )
Description: CertFindCertificateInStore failed with: (-2146885628) Cannot find object or property.
 
Error: (12/05/2019 10:33:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AUDIODG.EXE, version: 10.0.17763.831, time stamp: 0x274e21ab
Faulting module name: SECOMN64.dll, version: 2.0.8.27, time stamp: 0x5b91ec7b
Exception code: 0xc0000005
Fault offset: 0x0000000000053db0
Faulting process ID: 0x34fc
Faulting application start time: 0x01d5abab4cecd7b5
Faulting application path: C:\WINDOWS\system32\AUDIODG.EXE
Faulting module path: C:\WINDOWS\system32\SECOMN64.dll
Report ID: d3c9f593-9006-48c2-abe2-dc69cc84579c
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/03/2019 08:16:25 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AUDIODG.EXE, version: 10.0.17763.831, time stamp: 0x274e21ab
Faulting module name: SECOMN64.dll, version: 2.0.8.27, time stamp: 0x5b91ec7b
Exception code: 0xc0000005
Fault offset: 0x0000000000053db0
Faulting process ID: 0x804
Faulting application start time: 0x01d5aa05c641936b
Faulting application path: C:\WINDOWS\system32\AUDIODG.EXE
Faulting module path: C:\WINDOWS\system32\SECOMN64.dll
Report ID: cd418c66-407d-472b-a5aa-3b0d0d5c112e
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/03/2019 10:17:04 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AUDIODG.EXE, version: 10.0.17763.831, time stamp: 0x274e21ab
Faulting module name: SECOMN64.dll, version: 2.0.8.27, time stamp: 0x5b91ec7b
Exception code: 0xc0000005
Fault offset: 0x0000000000053db0
Faulting process ID: 0x2584
Faulting application start time: 0x01d5a9b20b9fa8e3
Faulting application path: C:\WINDOWS\system32\AUDIODG.EXE
Faulting module path: C:\WINDOWS\system32\SECOMN64.dll
Report ID: f7e76192-b0ce-4b48-ac3a-eabfee6e8d91
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/01/2019 02:13:30 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4440140
 
Error: (12/01/2019 02:13:30 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4440140
 
 
System errors:
=============
Error: (12/08/2019 10:03:28 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-I1QB4EP)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-I1QB4EP\174ma SID (S-1-5-21-4232068156-1879872238-896831279-1023) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (12/08/2019 10:03:01 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
 and APPID 
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (12/08/2019 10:03:01 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (12/08/2019 10:03:01 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
 and APPID 
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (12/08/2019 10:03:01 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (12/08/2019 10:02:56 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (12/08/2019 10:02:56 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (12/08/2019 12:05:46 AM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error "1115" attempting to start the service SecurityHealthService with arguments "Unavailable" in order to run the server:
{2D15188C-D298-4E10-83B2-64666CCBEBBD}
 
 
Windows Defender:
===================================
Date: 2019-12-07 11:36:24.752
Description: 
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: VirTool:Win32/DefenderTamperingRestore
ID: 2147741622
Severity: Severe
Category: Tool
Path: regkeyvalue:_hklm\software\policies\microsoft\windows defender\real-time protection\\DisableBehaviorMonitoring
Detection Origin: Unknown
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.307.15.0, AS: 1.307.15.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.16600.7, NIS: 0.0.0.0
 
Date: 2019-12-05 15:19:20.786
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {5368BCFC-4BA0-45DE-AA08-3B328C5B9DEF}
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2019-12-05 12:59:10.299
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {3381ED99-A687-4714-9A1C-209D18C77C88}
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2019-12-03 10:17:02.803
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {CA01DD3F-756B-471F-9E66-7E90AB0CDE2A}
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2019-12-02 21:00:12.335
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {BE364D30-0493-4C64-B54D-E83AC4F700C6}
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2019-11-24 01:30:21.261
Description: 
Windows Defender Antivirus has encountered an error trying to update signatures.
New Signature Version: 
Previous Signature Version: 1.305.2619.0
Update Source: Microsoft Update Server
Signature Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.16500.1
Error code: 0x80072f8f
Error description: A security error occurred 
 
==================== Memory info =========================== 
 
BIOS: HP P78 Ver. 01.31 10/16/2019
Motherboard: HP 828C
Processor: Intel® Core™ i7-7500U CPU @ 2.70GHz
Percentage of memory in use: 56%
Total physical RAM: 8071.2 MB
Available physical RAM: 3543.95 MB
Total Virtual: 9671.2 MB
Available Virtual: 4434.63 MB
 
==================== Drives ================================
 
Drive c: (Windows) (Fixed) (Total:218.02 GB) (Free:8.77 GB) NTFS
Drive d: (Recovery Image) (Fixed) (Total:19.01 GB) (Free:2.45 GB) NTFS ==>[system with boot components (obtained from drive)]
 
\\?\Volume{38b4ced0-4962-4680-8685-a9c635e43936}\ () (Fixed) (Total:0.96 GB) (Free:0.3 GB) NTFS
\\?\Volume{846e4ff9-cfa8-498a-8346-cb8167d0f023}\ (SYSTEM) (Fixed) (Total:0.35 GB) (Free:0.27 GB) FAT32
 
==================== MBR & Partition Table ====================
 
==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: A8927649)
 
Partition: GPT.
 
==================== End of Addition.txt =======================

  • 0

#4
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 250 posts

Hi ,Matt54..!   Welcome to the Geeks to Go malware removal forum. I am icotonev and will be helping you with your computer problems..! Please give me some time to go over your logs and I will get back to you as soon as possible... :)


  • 0

#5
Matt54

Matt54

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts

Hi ,Matt54..!   Welcome to the Geeks to Go malware removal forum. I am icotonev and will be helping you with your computer problems..! Please give me some time to go over your logs and I will get back to you as soon as possible... :)

Thank you!


  • 0

#6
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 250 posts

Hi ,Matt54..! :)

 

 

Farbar Recovery Scan Tool - Fix

 

  • Highlight the contents of the below code box and press Ctrl + C on your keyboard:
Start::
CreateRestorePoint:
CloseProcesses:
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\DPAgent.exe, <==== ATTENTION
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\MountPoints2: {0b66e580-0e7e-11e9-881f-b4b6861f77d0} - "E:\OnePlus_USB_Drivers_Setup.exe" 
Task: {E207CC62-4B33-4EEF-86F6-18B4F2006A38} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll -> No File
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
AlternateDataStreams: C:\Users\174ca\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [108]
AlternateDataStreams: C:\Users\174ma\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [118]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [470]
FirewallRules: [{B7490FA2-1B91-48BC-B3E2-EF4055CF7035}] => (Allow) C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe No File
FirewallRules: [{C1B668E0-4C31-4BDC-A857-75023FD16273}] => (Allow) D:\Program Files\Nox\bin\Nox.exe No File
FirewallRules: [{1B0C93F6-5A6A-42D9-9395-D8877F2AF13D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe No File
FirewallRules: [{957046F5-56A2-44B4-94DF-3D07D96291B1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe No File
FirewallRules: [{4A81D39F-ED4C-4CCD-9B2E-DF31A1B52D39}] => (Allow) C:\Users\174ma\AppData\Roaming\Zoom\bin\airhost.exe No File
FirewallRules: [{BC5CEB0D-CE8A-4009-AEC5-5E3077354D98}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{46918F5F-BD30-4E32-BD07-8E83A9296C6D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{5247D79D-7E02-46CD-8663-B45CD87459C1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{951C86AF-D354-4418-8DB1-C38B622BA6B5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{1065C2F2-2E7F-450B-A61D-C62F8469CEC5}] => (Allow) C:\Program Files (x86)\Windroye\Windroye.exe No File
FirewallRules: [{28CE0C17-587F-4DBE-9E06-474F0740895B}] => (Allow) C:\Program Files (x86)\Windroye\Windroye.exe No File
FirewallRules: [{41365284-A7C0-4737-A023-CBA80D74CEBB}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe No File
FirewallRules: [UDP Query User{9FFE5FFA-F936-4478-AD09-DAD38D68CE7B}C:\users\174ma\appdata\local\crossout\launcher.exe] => (Allow) C:\users\174ma\appdata\local\crossout\launcher.exe No File
FirewallRules: [TCP Query User{6838E981-3ED3-4F09-A698-DB61CB05FB94}C:\users\174ma\appdata\local\crossout\launcher.exe] => (Allow) C:\users\174ma\appdata\local\crossout\launcher.exe No File
FirewallRules: [UDP Query User{7747BAE7-CB89-41D6-B66F-5FDC6F4D8290}C:\games\the sims 4 seasons\game\bin\ts4_x64.exe] => (Allow) C:\games\the sims 4 seasons\game\bin\ts4_x64.exe No File
FirewallRules: [TCP Query User{DDCCA196-7CFD-4D78-9C66-5F5941DA837A}C:\games\the sims 4 seasons\game\bin\ts4_x64.exe] => (Allow) C:\games\the sims 4 seasons\game\bin\ts4_x64.exe No File
FirewallRules: [{2C20F2B8-B91A-46CA-8BD4-2C643B12A9F8}] => (Allow) c:\Program Files\HP\Sure Click\4.0.4.511\servers\manifests\chrome\brchromium\62.0.3202.89\BrChrome.exe No File
FirewallRules: [TCP Query User{E6926279-CC3C-4AEF-B99E-6F2BD2335931}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe No File
FirewallRules: [UDP Query User{993B8F35-F8EA-4242-82F0-DC65211A7F1F}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe No File
FirewallRules: [TCP Query User{EDFED4A8-5114-4654-A6DF-5CAB103B4E6C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe No File
FirewallRules: [UDP Query User{0AB137B7-B738-49EA-B21D-BEFF6330668C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe No File
FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe No File
EmptyTemp:
End::

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

 

  • Double-click FRST.exe/FRST64.exe to run it.
  • Press the Fix button just once and wait.
    Note: No need to paste the script into FRST.
  • Restart the computer if prompted.
  • When the fix is complete FRST will generate a log in the same location it was run from (Fixlog.txt)
  • Please copy and paste its contents into your reply.

---------------------------------------------------

In your next reply, please include:

  • Fixlog.txt

  • 0

#7
Matt54

Matt54

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts
Here you go
 
Fix result of Farbar Recovery Scan Tool (x64) Version: 07-12-2019
Ran by 174ma (08-12-2019 18:30:55) Run:1
Running from C:\Users\174ma\Desktop
Loaded Profiles: 174ma (Available Profiles: 174ca & 174ma)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
CreateRestorePoint:
CloseProcesses:
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\HP\HP ProtectTools Security Manager\Bin\DPAgent.exe, <==== ATTENTION
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\...\MountPoints2: {0b66e580-0e7e-11e9-881f-b4b6861f77d0} - "E:\OnePlus_USB_Drivers_Setup.exe" 
Task: {E207CC62-4B33-4EEF-86F6-18B4F2006A38} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll -> No File
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
AlternateDataStreams: C:\Users\174ca\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [108]
AlternateDataStreams: C:\Users\174ma\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [118]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [470]
FirewallRules: [{B7490FA2-1B91-48BC-B3E2-EF4055CF7035}] => (Allow) C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe No File
FirewallRules: [{C1B668E0-4C31-4BDC-A857-75023FD16273}] => (Allow) D:\Program Files\Nox\bin\Nox.exe No File
FirewallRules: [{1B0C93F6-5A6A-42D9-9395-D8877F2AF13D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe No File
FirewallRules: [{957046F5-56A2-44B4-94DF-3D07D96291B1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe No File
FirewallRules: [{4A81D39F-ED4C-4CCD-9B2E-DF31A1B52D39}] => (Allow) C:\Users\174ma\AppData\Roaming\Zoom\bin\airhost.exe No File
FirewallRules: [{BC5CEB0D-CE8A-4009-AEC5-5E3077354D98}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{46918F5F-BD30-4E32-BD07-8E83A9296C6D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{5247D79D-7E02-46CD-8663-B45CD87459C1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{951C86AF-D354-4418-8DB1-C38B622BA6B5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{1065C2F2-2E7F-450B-A61D-C62F8469CEC5}] => (Allow) C:\Program Files (x86)\Windroye\Windroye.exe No File
FirewallRules: [{28CE0C17-587F-4DBE-9E06-474F0740895B}] => (Allow) C:\Program Files (x86)\Windroye\Windroye.exe No File
FirewallRules: [{41365284-A7C0-4737-A023-CBA80D74CEBB}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe No File
FirewallRules: [UDP Query User{9FFE5FFA-F936-4478-AD09-DAD38D68CE7B}C:\users\174ma\appdata\local\crossout\launcher.exe] => (Allow) C:\users\174ma\appdata\local\crossout\launcher.exe No File
FirewallRules: [TCP Query User{6838E981-3ED3-4F09-A698-DB61CB05FB94}C:\users\174ma\appdata\local\crossout\launcher.exe] => (Allow) C:\users\174ma\appdata\local\crossout\launcher.exe No File
FirewallRules: [UDP Query User{7747BAE7-CB89-41D6-B66F-5FDC6F4D8290}C:\games\the sims 4 seasons\game\bin\ts4_x64.exe] => (Allow) C:\games\the sims 4 seasons\game\bin\ts4_x64.exe No File
FirewallRules: [TCP Query User{DDCCA196-7CFD-4D78-9C66-5F5941DA837A}C:\games\the sims 4 seasons\game\bin\ts4_x64.exe] => (Allow) C:\games\the sims 4 seasons\game\bin\ts4_x64.exe No File
FirewallRules: [{2C20F2B8-B91A-46CA-8BD4-2C643B12A9F8}] => (Allow) c:\Program Files\HP\Sure Click\4.0.4.511\servers\manifests\chrome\brchromium\62.0.3202.89\BrChrome.exe No File
FirewallRules: [TCP Query User{E6926279-CC3C-4AEF-B99E-6F2BD2335931}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe No File
FirewallRules: [UDP Query User{993B8F35-F8EA-4242-82F0-DC65211A7F1F}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe No File
FirewallRules: [TCP Query User{EDFED4A8-5114-4654-A6DF-5CAB103B4E6C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe No File
FirewallRules: [UDP Query User{0AB137B7-B738-49EA-B21D-BEFF6330668C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe No File
FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe No File
EmptyTemp:
 
*****************
 
Restore point was successfully created.
Processes closed successfully.
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\"Userinit"="C:\WINDOWS\system32\userinit.exe," => value restored successfully
HKU\S-1-5-21-4232068156-1879872238-896831279-1023\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0b66e580-0e7e-11e9-881f-b4b6861f77d0} => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E207CC62-4B33-4EEF-86F6-18B4F2006A38}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E207CC62-4B33-4EEF-86F6-18B4F2006A38}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\StartupCheckLibrary" => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully
HKLM\Software\Classes\CLSID\{B298D29A-A6ED-11DE-BA8C-A68E55D89593} => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IObitUnstaler => removed successfully
HKLM\Software\Classes\CLSID\{836AB26C-2DE4-41D3-AC24-4C6C2699B960} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\IObitUnstaler => removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\IObitUnstaler => removed successfully
C:\Users\174ca\OneDrive => ":${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity" ADS could not remove.
C:\Users\174ma\OneDrive => ":${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity" ADS could not remove.
C:\Users\Public\Shared Files => ":VersionCache" ADS removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B7490FA2-1B91-48BC-B3E2-EF4055CF7035}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C1B668E0-4C31-4BDC-A857-75023FD16273}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1B0C93F6-5A6A-42D9-9395-D8877F2AF13D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{957046F5-56A2-44B4-94DF-3D07D96291B1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4A81D39F-ED4C-4CCD-9B2E-DF31A1B52D39}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC5CEB0D-CE8A-4009-AEC5-5E3077354D98}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{46918F5F-BD30-4E32-BD07-8E83A9296C6D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5247D79D-7E02-46CD-8663-B45CD87459C1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{951C86AF-D354-4418-8DB1-C38B622BA6B5}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1065C2F2-2E7F-450B-A61D-C62F8469CEC5}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{28CE0C17-587F-4DBE-9E06-474F0740895B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{41365284-A7C0-4737-A023-CBA80D74CEBB}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9FFE5FFA-F936-4478-AD09-DAD38D68CE7B}C:\users\174ma\appdata\local\crossout\launcher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{6838E981-3ED3-4F09-A698-DB61CB05FB94}C:\users\174ma\appdata\local\crossout\launcher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7747BAE7-CB89-41D6-B66F-5FDC6F4D8290}C:\games\the sims 4 seasons\game\bin\ts4_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DDCCA196-7CFD-4D78-9C66-5F5941DA837A}C:\games\the sims 4 seasons\game\bin\ts4_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2C20F2B8-B91A-46CA-8BD4-2C643B12A9F8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E6926279-CC3C-4AEF-B99E-6F2BD2335931}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{993B8F35-F8EA-4242-82F0-DC65211A7F1F}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{EDFED4A8-5114-4654-A6DF-5CAB103B4E6C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0AB137B7-B738-49EA-B21D-BEFF6330668C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\OpenSSH-Server-In-TCP" => removed successfully
 
=========== EmptyTemp: ==========
 
BITS transfer queue => 11296768 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 23367697 B
Java, Flash, Steam htmlcache => 6446609 B
Windows/system/drivers => 7171763 B
Edge => 2135111 B
Chrome => 870106465 B
Firefox => 0 B
Opera => 0 B
 
Temp, IE cache, history, cookies, recent:
Default => 6656 B
Users => 6656 B
ProgramData => 6656 B
Public => 6656 B
systemprofile => 6656 B
systemprofile32 => 6656 B
LocalService => 118108 B
NetworkService => 238314 B
174ca => 295068 B
174ma => 3684021386 B
 
RecycleBin => 13266308724 B
EmptyTemp: => 16.6 GB temporary data Removed.
 
================================
 
 
The system needed a reboot.
 
==== End of Fixlog 18:33:36 ====

  • 0

#8
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 250 posts

Great ..! :) What problem do you see with your computer after the fix has been executed ..?

 

 

 

 


  • 0

#9
Matt54

Matt54

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts

It all seems to be working perfectly now thank you!


  • 0

#10
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 250 posts

Great..!  :)  I'm glad to hear that good news. I suggest we do a control check and we will get to the finish..!

 

Please run the following scans with AdwCleaner and ESET Online Scanner:

 

AdwCleaner

Download AdwCleaner and save it to your desktop.

  • Double click AdwCleaner.exe to run it.
  • Click Scan Now ...
    • When the scan has finished a Scan Results window will open.
    • Click Cancel (at this point do not attempt to Quarantine anything that is found)
  • Now click the Log Files tab ...
    • Double click on the latest scan log (Scan logs have a [S0*] suffix, where * is replaced by a number, the latest scan will have the largest number)
    • A Notepad file will open containing the results of the scan.
    • Please post the contents of the file in your next reply.

---------------------------------------------------
ESET Online Scanner

Download ESET Online Scanner and save it to your desktop.

  • Right-click on esetonlinescanner_enu.exe and select Run as Administrator.
  • When the tool opens, click Get Started.
  • Read and accept the license agreement.
  • At the Welcome to ESET Online Scanner window, click Get Started.
  • Select whether you would like to send anonymous data to ESET.
  • Note: if you see the "Welcome Back to ESET Online Scanner" screen, click Computer Scan > Full Scan.
  • Click on the Full Scan option.
  • Select Enable ESET to detect and remove potentially unwanted applications, then click Start scan.
  • ESET will now begin scanning your computer. This may take some time.
  • When the scan is finished and if threats have been detected, select Save scan log. Save it to your desktop as eset.txt. Click on Continue.
  • ESET Online Scanner may ask if you'd like to turn on the Periodic Scan feature. Click on Continue.
  • On the next screen, you can leave feedback about the program if you wish. Check the box for Delete application data on closing. If you left feedback, click Submit and continue. If not, Close without feedback.
  • Open the scan log on your desktop (eset.txt) and copy and paste its contents into your next reply.

---------------------------------------------------

In your next reply, please include:

  • AdwCleaner[S0*].txt
  • eset.txt

  • 0

Advertisements


#11
Matt54

Matt54

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts

AdwCleaner[S00].txt

 

# -------------------------------
# Malwarebytes AdwCleaner 8.0.0.0
# -------------------------------
# Build:    11-21-2019
# Database: 2019-11-26.1 (Cloud)
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start:    12-11-2019
# Duration: 00:00:27
# OS:       Windows 10 Pro
# Scanned:  35225
# Detected: 63
 
 
***** [ Services ] *****
 
No malicious services found.
 
***** [ Folders ] *****
 
PUP.Optional.AdvancedSystemCare C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare C:\Users\174ma\AppData\LocalLow\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare C:\Users\174ma\AppData\Roaming\IObit\Advanced SystemCare
 
***** [ Files ] *****
 
PUP.Optional.Reimage            C:\Windows\Reimage.ini
 
***** [ DLL ] *****
 
No malicious DLLs found.
 
***** [ WMI ] *****
 
No malicious WMI found.
 
***** [ Shortcuts ] *****
 
No malicious shortcuts found.
 
***** [ Tasks ] *****
 
No malicious tasks found.
 
***** [ Registry ] *****
 
PUP.Optional.AdvancedSystemCare HKLM\Software\Wow6432Node\IOBIT\ASC
PUP.Optional.AdvancedSystemCare HKLM\Software\Wow6432Node\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare HKLM\Software\Wow6432Node\IObit\RealTimeProtector
PUP.Optional.Legacy             HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
PUP.Optional.Legacy             HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
PUP.Optional.Legacy             HKLM\Software\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
PUP.Optional.Legacy             HKLM\Software\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
PUP.Optional.Legacy             HKLM\Software\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
PUP.Optional.Legacy             HKLM\Software\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
PUP.Optional.Legacy             HKLM\Software\Wow6432Node\\Classes\AppID\REI_AxControl.DLL
PUP.Optional.Legacy             HKLM\Software\Wow6432Node\\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
PUP.Optional.Legacy             HKLM\Software\Wow6432Node\\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
PUP.Optional.Legacy             HKLM\Software\Wow6432Node\\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
PUP.Optional.Legacy             HKLM\Software\Wow6432Node\\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
PUP.Optional.Reimage            HKCU\Software\Reimage
PUP.Optional.Reimage            HKLM\Software\Classes\REI_AxControl.ReiEngine
PUP.Optional.Reimage            HKLM\Software\Classes\REI_AxControl.ReiEngine.1
PUP.Optional.Reimage            HKLM\Software\Reimage
 
***** [ Chromium (and derivatives) ] *****
 
No malicious Chromium entries found.
 
***** [ Chromium URLs ] *****
 
PUP.Optional.Legacy             http://www.searchnu.com/406?appid=477
PUP.Optional.Legacy             http://www.searchnu.com/406?appid=477
PUP.Optional.Legacy             stream-tv9.com
PUP.Optional.SofTonicAssistant  Softonic EN
PUP.Optional.SofTonicAssistant  Softonic EN
 
***** [ Firefox (and derivatives) ] *****
 
No malicious Firefox entries found.
 
***** [ Firefox URLs ] *****
 
No malicious Firefox URLs found.
 
***** [ Preinstalled Software ] *****
 
Preinstalled.HPJumpStartBridge   Folder   C:\Program Files (x86)\HP\HP JUMPSTART BRIDGE 
Preinstalled.HPJumpStartLaunch   Folder   C:\Program Files (x86)\HP\HP JUMPSTART LAUNCH 
Preinstalled.HPJumpStartLaunch   Registry   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BE4474A4-ADDC-4013-B58F-EBFB6241D436}  
Preinstalled.HPJumpStartLaunch   Registry   HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HPJumpStartLaunch 
Preinstalled.HPJumpStartLaunch   Task   C:\Windows\System32\Tasks\HPJUMPSTARTLAUNCH 
Preinstalled.HPNotifications   Folder   C:\Program Files (x86)\HP\HP NOTIFICATIONS 
Preinstalled.HPNotifications   Registry   HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|HPNotifications 
Preinstalled.HPNotifications   Registry   HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|HPNotifications 
Preinstalled.HPNotifications   Registry   HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{99F86665-F4F0-40DE-A982-D0ADB4E102E6} 
Preinstalled.HPRegistrationService   Folder   C:\Program Files (x86)\HP\HP REGISTRATION SERVICE 
Preinstalled.HPRegistrationService   Folder   C:\ProgramData\HP\HP REGISTRATION SERVICE 
Preinstalled.HPSupportAssistant   Folder   C:\HP\SUPPORT 
Preinstalled.HPSupportAssistant   Folder   C:\Program Files (x86)\HEWLETT-PACKARD\HP CUSTOMER FEEDBACK 
Preinstalled.HPSupportAssistant   Folder   C:\Program Files (x86)\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK 
Preinstalled.HPSupportAssistant   Folder   C:\Program Files (x86)\HEWLETT-PACKARD\HP SUPPORT SOLUTIONS 
Preinstalled.HPSupportAssistant   Folder   C:\ProgramData\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK 
Preinstalled.HPSupportAssistant   Folder   C:\Users\174ca\AppData\Local\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK 
Preinstalled.HPSupportAssistant   Folder   C:\Users\174ca\AppData\Roaming\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK 
Preinstalled.HPSupportAssistant   Folder   C:\Users\174ma\AppData\Local\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK 
Preinstalled.HPSupportAssistant   Folder   C:\Users\174ma\AppData\Roaming\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK 
Preinstalled.HPSupportAssistant   Folder   C:\Windows\System32\config\systemprofile\AppData\Local\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK 
Preinstalled.HPSupportAssistant   Registry   HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} 
Preinstalled.HPSupportAssistant   Registry   HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} 
Preinstalled.HPSupportAssistant   Registry   HKLM\Software\Classes\CLSID\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} 
Preinstalled.HPSupportAssistant   Registry   HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} 
Preinstalled.HPSupportAssistant   Registry   HKLM\Software\Wow6432Node\\Classes\CLSID\{C0ABBA07-B636-47B8-B9E1-BB96D7CD4831} 
Preinstalled.HPSupportAssistant   Registry   HKLM\Software\Wow6432Node\\Classes\CLSID\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} 
Preinstalled.HPSupportAssistant   Registry   HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} 
Preinstalled.HPSupportAssistant   Registry   HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{05F81C27-62A5-4A0C-8519-60CB66CF87C6} 
Preinstalled.HPSupportAssistant   Registry   HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{183BD477-774B-4700-B40B-EE43886E74D2} 
Preinstalled.HPSureConnect   Folder   C:\Program Files\HPCOMMRECOVERY 
Preinstalled.HPSureConnect   Registry   HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{6468C4A5-E47E-405F-B675-A70A70983EA6} 
Preinstalled.HPVelocity   Folder   C:\Program Files\HP\HP VELOCITY 
Preinstalled.HPVelocity   Registry   HKLM\Software\IPQ_NSIS 
Preinstalled.HPVelocity   Registry   HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\IPQ_NSIS 
Preinstalled.LenovoEasyCamera   Registry   HKLM\Software\Sunplus SPUVCb 
 
 
AdwCleaner_Debug.log - [3033 octets] - [11/12/2019 17:47:06]
 
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########

  • 0

#12
Matt54

Matt54

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts

Still busy with the ESET scan. Will post that log as soon as it is done


  • 0

#13
Matt54

Matt54

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts

Finally managed to do the scan.

 

Eset.txt

 

12 Dec 2019 10:03:55

Files scanned: 511583
Detected files: 2
Cleaned files: 0
Total scan time 01:29:22
Scan status: Finished
C:\Program Files\AVAST Software\Avast\setup\aswOfferTool.exe Win32/Bundled.Toolbar.Google.D potentially unsafe application error while deleting (Access denied)
 
C:\Program Files\AVAST Software\Avast\setup\offertool_x64_ais-959.vpx Win32/Bundled.Toolbar.Google.D potentially unsafe application error while deleting (Access denied)

  • 0

#14
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 250 posts

Great work..  :)  We're almost in the finals...
 
AdwCleaner - Clean

  • Double click AdwCleaner.exe to run it.
  • Click Scan Now
  • When the scan has finished a Scan Results window will open.
  • Please ensure all boxes are checked and then click Quarantine
    • Click Next
    • If any pre-installed software was found on your machine, a prompt window will open ...
      • Click OK to close it
    • Check any pre-installed software items you want to remove (if they're not causing you a problem I recommend you don't select any)
    • Click Quarantine
  • A prompt to save your work will appear ...
    • Click Continue when you're ready to proceed.
  • A prompt to restart your computer will appear ...
    • Click Restart Now
  • Once your computer has restarted ...
    • If it doesn't open automatically, please start ADWCleaner ...
    • Click the Log Files tab ...
    • Double click on the latest Clean log (Clean logs have a [C0*] suffix, where * is replaced by a number, the latest scan will have the largest number)
    • A Notepad file will open containing the results of the removal.
    • Please post the contents of the file in your next reply.

==============================================================================
 
In your next reply, please include:

  • AdwCleaner[C0*].txt

  • 0

#15
Matt54

Matt54

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts
AdwCleaner[C01].txt
 
# -------------------------------
# Malwarebytes AdwCleaner 7.4.2.0
# -------------------------------
# Build:    10-21-2019
# Database: 2019-11-26.1 (Cloud)
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    12-13-2019
# Duration: 00:00:02
# OS:       Windows 10 Pro
# Cleaned:  26
# Failed:   1
 
 
***** [ Services ] *****
 
No malicious services cleaned.
 
***** [ Folders ] *****
 
Deleted       C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare
Deleted       C:\Users\174ma\AppData\LocalLow\IObit\Advanced SystemCare
Deleted       C:\Users\174ma\AppData\Roaming\IObit\Advanced SystemCare
 
***** [ Files ] *****
 
Deleted       C:\Windows\Reimage.ini
 
***** [ DLL ] *****
 
No malicious DLLs cleaned.
 
***** [ WMI ] *****
 
No malicious WMI cleaned.
 
***** [ Shortcuts ] *****
 
No malicious shortcuts cleaned.
 
***** [ Tasks ] *****
 
No malicious tasks cleaned.
 
***** [ Registry ] *****
 
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
Deleted       HKCU\Software\Reimage
Deleted       HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
Deleted       HKLM\Software\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
Deleted       HKLM\Software\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Deleted       HKLM\Software\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Deleted       HKLM\Software\Classes\REI_AxControl.ReiEngine
Deleted       HKLM\Software\Classes\REI_AxControl.ReiEngine.1
Deleted       HKLM\Software\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
Deleted       HKLM\Software\Reimage
Deleted       HKLM\Software\Wow6432Node\IOBIT\ASC
Deleted       HKLM\Software\Wow6432Node\IObit\Advanced SystemCare
Deleted       HKLM\Software\Wow6432Node\IObit\RealTimeProtector
Deleted       HKLM\Software\Wow6432Node\\Classes\AppID\REI_AxControl.DLL
Deleted       HKLM\Software\Wow6432Node\\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
Deleted       HKLM\Software\Wow6432Node\\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Deleted       HKLM\Software\Wow6432Node\\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Deleted       HKLM\Software\Wow6432Node\\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
 
***** [ Chromium (and derivatives) ] *****
 
No malicious Chromium entries cleaned.
 
***** [ Chromium URLs ] *****
 
Deleted       Softonic EN
Deleted       Softonic EN
Not Deleted   stream-tv9.com
 
***** [ Firefox (and derivatives) ] *****
 
No malicious Firefox entries cleaned.
 
***** [ Firefox URLs ] *****
 
No malicious Firefox URLs cleaned.
 
***** [ Preinstalled Software ] *****
 
No Preinstalled Software cleaned.
 
 
*************************
 
[+] Delete Tracing Keys
[+] Reset Winsock
 
*************************
 
AdwCleaner_Debug.log - [42090 octets] - [11/12/2019 17:47:06]
AdwCleaner[S00].txt - [7674 octets] - [11/12/2019 17:48:18]
AdwCleaner[S01].txt - [7736 octets] - [13/12/2019 07:22:37]
 
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########

  • 0






Similar Topics


Also tagged with one or more of these keywords: startupchecklibrary

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP