Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-10-2019
Ran by jimak (administrator) on DESKTOP-QU6GUT2 (HP 750-170se) (07-10-2019 16:54:43)
Running from C:\Users\James\Downloads\FRST-OlderVersion
Loaded Profiles: jimak & James & sugar & (Available Profiles: jimak & Kelly & nanke & James & sugar)
Platform: Windows 10 Home Version 1903 18362.356 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(CyberLink Corp. -> ) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\UnrealCEFSubProcess.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\78.0.3904.7\remoting_host.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\78.0.3904.7\remoting_host.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel® Security Assist\isa.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Intel® RMT -> Intel Corporation) C:\Program Files\Intel\Intel® Ready Mode Technology\IRMTService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\sugar\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19061.18920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WpcMon.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\NisSrv.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(PDF Complete Inc. -> PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Realtek Semiconductor Corp -> ) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTServer.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe
(SEIKO EPSON Corporation -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATINXE.EXE
(Skype Technologies SA -> Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Sonic Solutions -> Roxio) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
(SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe
(Symantec Corporation -> Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe.old
0 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.52.138.0_x64__kzf8qxf38zg5c\SkypeApp.exe
0 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.52.138.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
0 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.52.138.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe
0 C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.33.10005.0_x64__8wekyb3d8bbwe\GameBar.exe
0 C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.33.10005.0_x64__8wekyb3d8bbwe\GameBarFT.exe
0 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19082.1010.0_x64__8wekyb3d8bbwe\YourPhone.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9226720 2017-05-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [321112 2019-06-28] (Intel® Rapid Storage Technology -> Intel Corporation)
HKLM-x32\...\Run: [Microsoft Default Manager] => C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe [439568 2010-05-10] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1087184 2016-01-20] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1694704 2019-09-17] (Google LLC -> Google LLC)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [35949968 2019-10-07] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\...\Run: [Locale] => C:\ProgramData\Oracle\Java\lib\locale.jar
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151518166\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [35949968 2019-10-07] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151518166\...\Run: [Locale] => C:\ProgramData\Oracle\Java\lib\locale.jar
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151518166\...\RunOnce: [Application Restart #0] => C:\Windows\System32\WpcMon.exe [1259424 2019-09-10] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1010\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151521884\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINXE.EXE [298560 2014-03-19] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.90\Installer\chrmstp.exe [2019-09-27] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2017-10-26]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2015-12-28]
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2019-09-24]
ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {002CA495-2520-4FCD-B31C-2B9B3D11C4CE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [1990856 2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {12979D43-AB8A-4E6F-8DCB-0E8035F3EFF3} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133552 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {12DD3A0A-D946-4361-87EB-2605711D9190} - System32\Tasks\HPCeeScheduleForjimak => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [96568 2015-06-16] (Hewlett-Packard Company -> Hewlett-Packard)
Task: {186CE777-E0FF-487F-B549-1F5FD4857366} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {19B6B828-4AFA-4846-8097-B4EF80EB2943} - System32\Tasks\HP Photo Creations Communicator => C:\Users\jimak\AppData\Roaming\HP Photo Creations\Communicator.exe [186368 2015-12-27] (Visan Industries -> )
Task: {1D630010-6CFB-4EC1-9F0A-E3F981433A9B} - System32\Tasks\Norton 360\Norton Security Suite Error Analyzer => C:\Program Files (x86)\Norton Security Suite\Engine\22.9.0.71\SymErr.exe
Task: {231EE854-B890-48BB-91CC-5CD043040DE8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913904 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2A98AE16-875F-4A11-AFCC-44511E806421} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [120680 2017-06-22] (HP Inc. -> HP Inc.)
Task: {2C52315B-10B5-4406-AB6E-4BC54A450AB6} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\James\Downloads\esetonlinescanner_enu.exe [8149816 2019-09-04] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {2F7BFCAB-3D5E-42C8-86A7-9366DA5631B2} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133552 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3174EA0D-3F0F-4021-8259-7D64F413AB15} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39920 2018-10-24] (Garmin International, Inc. -> )
Task: {35FB5D58-46CF-455A-B890-75B497058BF4} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [65136 2019-09-23] (Microsoft Corporation -> Microsoft)
Task: {376895CB-9C65-43E1-8C35-3B76741C4567} - System32\Tasks\EPSON ET-2550 Series Update {ED47F9D0-EE59-4F19-B5E4-C4D7A10CB1D7} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNXE.EXE [690536 2013-11-21] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Task: {3B68628D-8DCF-4579-BAD3-FEA2AA3C272A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133552 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {579F0761-DBE1-4023-A075-7F70756D19EA} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7188BFFC-8BE2-435D-B82D-71FF696EFB78} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {73CFE9F6-51F2-4470-B161-940CDC91876F} - System32\Tasks\Norton 360\Norton Security Suite Error Processor => C:\Program Files (x86)\Norton Security Suite\Engine\22.9.0.71\SymErr.exe
Task: {7B21E2D5-5978-4B87-90FA-BE05107129A1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-02-06] (Google Inc -> Google Inc.)
Task: {7C05153D-3E0F-4A01-9E2F-FDC04DEAF008} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2016-11-07] (HP Inc. -> HP Inc.)
Task: {7C59CB6A-532B-4E98-8451-421D87EBEB5E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [651400 2017-09-20] (Hewlett Packard -> HP Inc.)
Task: {7CB1A712-F633-4826-A5D9-686EE32A1CDF} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [511344 2015-06-19] (Dropbox, Inc -> )
Task: {84C394B3-4C4D-45F6-8257-D7A0FDBED658} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [654136 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8EDC6E60-5F09-4CF2-8034-596B3C236C2B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1094008 2019-08-21] (HP Inc. -> HP Inc.)
Task: {901657A0-5C68-4738-9BB0-300A9E6D2D2B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1459056 2018-05-04] (HP Inc. -> HP Inc.)
Task: {90B2CAA8-1B72-4FC6-8525-89DD13CE7194} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9301AA02-229C-460F-8B8D-C3877B9A08D7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [212856 2018-08-21] (HP Inc. -> HP Inc.)
Task: {A7FADF86-1BCF-420B-95D7-BBD344EC1066} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302384 2019-08-14] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AA5E968C-A28B-4449-93F4-FB90E7184B5E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [1990856 2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {AA984AE7-DCD7-4ACA-8263-A1F640512BE3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1094008 2019-08-21] (HP Inc. -> HP Inc.)
Task: {ABC7CCEF-17E7-447F-B053-BD635247F5B0} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B9E22E17-0091-4B59-AB99-5C0EFE850895} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. -> Adobe Systems)
Task: {C114C5BD-62A9-4352-B8E2-2A960CC6F347} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [909112 2016-07-26] (Intel® Trusted Connect Service -> Intel® Corporation)
Task: {D1FFA991-1844-4F67-91E0-7A50CE01DB25} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [651400 2017-09-20] (Hewlett Packard -> HP Inc.)
Task: {D60AAFC9-065F-473C-95D9-DF8B7E697593} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E11F4EBB-1FB7-4A0E-A01E-7E4E7A129AF3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-02-06] (Google Inc -> Google Inc.)
Task: {E1B4B5C9-93B2-4513-B502-DAF524DEAFA0} - System32\Tasks\Norton 360\Norton Security Suite Autofix => C:\Program Files (x86)\Norton Security Suite\Engine\22.9.0.71\SymErr.exe
Task: {E780BE8A-2832-4BA0-B867-CFF7B8FC012C} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133552 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E7D35B0E-8B54-462F-880E-A139E229C763} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\James\Downloads\esetonlinescanner_enu.exe [8149816 2019-09-04] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {EC6933DA-5CB2-4EB4-998D-1A219CF34BB6} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913904 2019-08-13] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F1DDC401-AA7C-4F83-A7F5-9788E9DC9721} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1459056 2018-05-04] (HP Inc. -> HP Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\EPSON ET-2550 Series Update {ED47F9D0-EE59-4F19-B5E4-C4D7A10CB1D7}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNXE.EXE:/EXE:{ED47F9D0-EE59-4F19-B5E4-C4D7A10CB1D7} /F:UpdateWORKGROUP\DESKTOP-QU6GUT2$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\HP Photo Creations Communicator.job => C:\Users\jimak\AppData\Roaming\HP Photo Creations\Communicator.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForjimak.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{366b18d4-d755-444c-8999-9b675ae2fc89}: [DhcpNameServer] 75.75.75.75 75.75.76.76
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131790833698413202&GUID=CCF004ED-A7EC-4A91-A0C2-1A7D42D4E2BD
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131790833713422072&GUID=CCF004ED-A7EC-4A91-A0C2-1A7D42D4E2BD
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=620947&OCID=AVRES000&pc=UE00
HKU\S-1-5-21-1736177130-1667789116-2251809797-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151518166\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151518166\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CPDTDF
SearchScopes: HKLM -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/711-111092-2357-0/4?satitle={searchTerms}&mfe=Desktops
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CPDTDF
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/711-111092-2357-0/4?satitle={searchTerms}&mfe=Desktops
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1001 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1009 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151518166 -> {8404DF8A-AF19-4A75-9653-0156C3AB31C3} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151521884 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151521884 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151521884 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL =
SearchScopes: HKU\S-1-5-21-1736177130-1667789116-2251809797-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151521884 -> {d944bb61-2e34-4dbf-a683-47e505c587dc} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2012-12-13] (Skype Technologies SA -> Skype Technologies S.A.)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security Suite\Engine32\22.9.0.71\coIEPlg.dll => No File
BHO-x32: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-07-27] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2015-04-30] (EVERNOTE CORPORATION -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-12-13] (Skype Technologies SA -> Skype Technologies S.A.)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21] (Hewlett-Packard Company -> HP Inc.)
Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: HKLM-x32 {BEA7310D-06C4-4339-A784-DC3804819809} hxxp://images3.pnimedia.com/ProductAssets/costcous/activex/v3_0_0_7/PhotoCenter_ActiveX_Control.cab
Handler-x32: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files (x86)\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL [2001-01-22] (Microsoft Corporation) [File not signed]
Handler-x32: http - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: http - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: https - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: https - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: msdaipp - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: msdaipp - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2001-02-12] (Microsoft Corporation) [File not signed]
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2012-12-13] (Skype Technologies SA -> Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-12-13] (Skype Technologies SA -> Skype Technologies S.A.)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon
FF Extension: (Norton Security Toolbar) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon [2017-03-31] [Legacy]
FF HKLM-x32\...\Firefox\Extensions: [
[email protected]] - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\Firefox
FF Extension: (Bing Bar) - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\Firefox [2015-12-27] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{27182e60-b5f3-411c-b545-b44205977502}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension
FF Extension: (Search Helper Extension) - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension [2015-12-27] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension
FF Extension: (Default Manager) - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension [2015-12-27] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon
FF HKLM-x32\...\Firefox\Extensions: [
[email protected]] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on
FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2018-10-10] [Legacy] [not signed]
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpWinExt,version=5.0 -> C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll [2010-08-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-08-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-09-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-07] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-07] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-07-31] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1001: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\jimak\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (Visan Industries -> RocketLife, LLP)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\jimak\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2018-08-18] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1009: @nsroblox.roblox.com/launcher -> C:\Users\James\AppData\Local\Roblox\Versions\version-aee78a51139946c2\\NPRobloxProxy.dll [2013-01-01] (ROBLOX Corporation -> ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1009: @nsroblox.roblox.com/launcher64 -> C:\Users\James\AppData\Local\Roblox\Versions\version-aee78a51139946c2\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation) [File not signed]
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151518166: @nsroblox.roblox.com/launcher -> C:\Users\James\AppData\Local\Roblox\Versions\version-aee78a51139946c2\\NPRobloxProxy.dll [2013-01-01] (ROBLOX Corporation -> ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-1736177130-1667789116-2251809797-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10072019151518166: @nsroblox.roblox.com/launcher64 -> C:\Users\James\AppData\Local\Roblox\Versions\version-aee78a51139946c2\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation) [File not signed]
Chrome:
=======
CHR HomePage: Default -> hxxp://xfinity.comcast.net/?cid=insDate12272012
CHR StartupUrls: Default -> "hxxp://alexa.amazon.com/spa/index.html#cards","hxxp://google.com/","hxxp://www.google.com"
CHR Profile: C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default [2019-10-06]
CHR Extension: (Slides) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-15]
CHR Extension: (Docs) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-15]
CHR Extension: (Google Drive) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-27]
CHR Extension: (YouTube) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-27]
CHR Extension: (Honey) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2019-09-11]
CHR Extension: (Google Search) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-27]
CHR Extension: (Adobe Acrobat) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-10-06]
CHR Extension: (Google Play Music) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2019-04-05]
CHR Extension: (Sheets) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-15]
CHR Extension: (Google Docs Offline) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-04]
CHR Extension: (Crackle) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic [2019-04-05]
CHR Extension: (Norton Identity Safe) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2015-12-27]
CHR Extension: (HP Network Check Launcher) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkfpchpiljkaemlpmpebnglgkomamfeo [2018-09-07]
CHR Extension: (Skype) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-12-09]
CHR Extension: (Norton Safe) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmgcfemagnogdodbambjhdcmfcpicngl [2019-04-05]
CHR Extension: (Chrome Web Store Payments) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-06]
CHR Extension: (Gmail) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-25]
CHR Extension: (Chrome Media Router) - C:\Users\jimak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-06]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-12-13]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-03-27] (BattlEye Innovations e.K. -> )
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [127192 2015-11-19] (Realtek Semiconductor Corp -> )
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\78.0.3904.7\remoting_host.exe [72176 2019-09-08] (Google LLC -> Google Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2981056 2016-08-11] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [780928 2018-05-08] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [677376 2016-08-02] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [144560 2012-05-17] (SEIKO EPSON Corporation -> Seiko Epson Corporation)
S2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [137344 2009-11-18] (Hewlett Packard -> Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 HPSupportSolutionsFrameworkService; c:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [333688 2018-06-13] (HP Inc. -> HP Inc.)
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [987432 2016-07-26] (Intel® Trusted Connect Service -> Intel® Corporation)
R3 Intel® Security Assist; C:\Program Files (x86)\Intel\Intel® Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
R2 IRMTService; C:\Program Files\Intel\Intel® Ready Mode Technology\IRMTService.exe [181360 2016-06-21] (Intel® RMT -> Intel Corporation)
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel® Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [177440 2016-09-14] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
S2 N360; C:\Program Files (x86)\Norton Security Suite\Engine\22.9.1.12\N360.exe [326152 2017-03-16] (Symantec Corporation -> Symantec Corporation)
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation -> Symantec Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-05] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-05] (NVIDIA Corporation -> NVIDIA Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1793088 2017-11-08] (PDF Complete Inc. -> PDF Complete Inc)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -> )
R2 RoxioNow Service; C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe [399344 2010-09-11] (Sonic Solutions -> Roxio)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324576 2017-05-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [726600 2019-06-25] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
S2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 BHDrvx64; C:\Program Files (x86)\Norton Security Suite\NortonData\22.5.2.15\Definitions\BASHDefs\20170322.001\BHDrvx64.sys [1831064 2017-03-03] (Symantec Corporation -> Symantec Corporation)
R1 ccSet_N360; C:\WINDOWS\system32\drivers\N360x64\1609010.00C\ccSetx64.sys [174240 2017-02-07] (Symantec Corporation -> Symantec Corporation)
S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [69024 2019-05-29] (Microsoft Windows Hardware Compatibility Publisher -> www.winchiphead.com)
S1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [497312 2017-01-25] (Symantec Corporation -> Symantec Corporation)
R0 iaStorAC; C:\WINDOWS\System32\drivers\iaStorAC.sys [1035768 2019-06-28] (Intel® Rapid Storage Technology -> Intel Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton Security Suite\NortonData\22.5.2.15\Definitions\IPSDefs\20170324.001\IDSvia64.sys [1038024 2017-02-15] (Symantec Corporation -> Symantec Corporation)
R3 IntelReadyModeDriver; C:\WINDOWS\System32\drivers\IntelReadyModeDriver.sys [34952 2016-06-21] (Intel® RMT -> Intel Corporation)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [275232 2019-10-07] (Malwarebytes Corporation -> Malwarebytes)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b49751b9038af669\nvlddmkm.sys [21836032 2019-05-23] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [886528 2015-06-03] (Realtek Semiconductor Corp -> Realtek )
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [796560 2019-06-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [418784 2016-11-10] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 RTWlanE02; C:\WINDOWS\System32\drivers\rtwlane02.sys [9607464 2019-03-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
S3 SRTSP; C:\WINDOWS\System32\Drivers\N360x64\1609010.00C\SRTSP64.SYS [770200 2017-03-16] (Symantec Corporation -> Symantec Corporation)
R1 SRTSPX; C:\WINDOWS\system32\drivers\N360x64\1609010.00C\SRTSPX64.SYS [49312 2017-03-16] (Symantec Corporation -> Symantec Corporation)
R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [46776 2019-05-24] (SteelSeries ApS -> )
R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [47824 2019-05-24] (SteelSeries ApS -> SteelSeries ApS)
R0 SymEFASI; C:\WINDOWS\System32\drivers\N360x64\1609010.00C\SYMEFASI64.SYS [1716896 2017-02-07] (Symantec Corporation -> Symantec Corporation)
S0 SymELAM; C:\WINDOWS\System32\drivers\N360x64\1609010.00C\SymELAM.sys [24616 2017-02-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Symantec Corporation)
R3 SymEvent; C:\windows\system32\Drivers\SYMEVENT64x86.SYS [102608 2017-02-15] (Symantec Corporation -> Symantec Corporation)
R1 SymIRON; C:\WINDOWS\system32\drivers\N360x64\1609010.00C\Ironx64.SYS [291480 2017-02-07] (Symantec Corporation -> Symantec Corporation)
R1 SymNetS; C:\WINDOWS\System32\Drivers\N360x64\1609010.00C\SYMNETS.SYS [567512 2017-02-07] (Symantec Corporation -> Symantec Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46688 2019-10-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [350136 2019-10-01] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-01] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-07 16:45 - 2019-10-07 16:45 - 000001499 _____ C:\Users\James\Desktop\Visual Studio 2019.lnk
2019-10-07 16:41 - 2019-10-07 16:41 - 000011757 _____ C:\Users\James\package-lock.json
2019-10-07 16:41 - 2019-10-07 16:41 - 000000000 ____D C:\Users\James\node_modules
2019-10-07 16:41 - 2019-10-07 16:41 - 000000000 ____D C:\Users\James\AppData\Roaming\npm-cache
2019-10-07 16:41 - 2019-10-07 16:41 - 000000000 ____D C:\Users\James\.config
2019-10-07 16:40 - 2019-10-07 16:41 - 000000046 _____ C:\Users\James\.node_repl_history
2019-10-07 16:39 - 2019-10-07 16:39 - 000000000 ____D C:\Users\James\AppData\Roaming\npm
2019-10-07 16:39 - 2019-10-07 16:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js
2019-10-07 16:39 - 2019-10-07 16:39 - 000000000 ____D C:\Program Files\nodejs
2019-10-07 16:37 - 2019-10-07 16:37 - 018190336 _____ C:\Users\James\Downloads\node-v10.16.3-x64.msi
2019-10-07 16:34 - 2019-10-07 16:34 - 000051881 _____ C:\Users\James\Downloads\webrtc-web-master.zip
2019-10-07 15:37 - 2019-10-07 15:37 - 000009004 _____ C:\Users\James\Downloads\P2P-chat-application-master.zip
2019-10-07 15:30 - 2019-10-07 15:30 - 000055354 _____ C:\Users\James\Downloads\p2psc-master.zip
2019-10-07 15:14 - 2019-10-07 15:14 - 000275232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-10-06 11:57 - 2019-10-06 11:57 - 000008168 _____ C:\Users\jimak\Downloads\Sears.com Order 899305498.eml
2019-10-04 16:18 - 2019-10-04 16:18 - 000001147 _____ C:\Users\James\Desktop\Comped c++.lnk
2019-10-02 11:36 - 2019-10-02 11:36 - 000089808 _____ C:\Users\sugar\Downloads\laurares (2) (1).pdf
2019-10-02 11:18 - 2019-10-02 11:18 - 000089808 _____ C:\Users\sugar\Downloads\laurares (2).pdf
2019-09-27 17:00 - 2019-09-27 17:00 - 000000000 ____D C:\Users\James\3D%20Objects
2019-09-27 08:46 - 2019-09-27 08:46 - 000000280 __RSH C:\Users\jimak\ntuser.pol
2019-09-23 21:03 - 2019-09-23 21:03 - 000000280 __RSH C:\Users\sugar\ntuser.pol
2019-09-23 20:36 - 2019-09-23 20:36 - 000000000 ____D C:\Users\James\Desktop\Halo stuff
2019-09-23 19:51 - 2019-10-04 18:11 - 000000000 ____D C:\Users\James\Desktop\Fin hacks
2019-09-23 18:50 - 2019-09-23 18:50 - 000013634 _____ C:\Users\James\Downloads\HackAnyGamePt2.zip
2019-09-23 17:08 - 2019-09-23 17:08 - 000000000 ____D C:\Users\James\AppData\Local\IsolatedStorage
2019-09-23 16:33 - 2019-09-23 16:33 - 000001165 _____ C:\Users\jimak\Desktop\Cheat Engine.lnk
2019-09-23 16:33 - 2019-09-23 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.7
2019-09-23 16:33 - 2019-09-23 16:33 - 000000000 ____D C:\Program Files (x86)\Cheat Engine 6.7
2019-09-23 16:26 - 2019-09-23 16:26 - 012131544 _____ (Cheat Engine ) C:\Users\James\Downloads\CheatEngine67.exe
2019-09-23 16:21 - 2019-09-27 16:23 - 000000000 ____D C:\Users\James\AppData\LocalLow\Temp
2019-09-23 16:19 - 2019-09-23 16:19 - 000000000 ____D C:\Users\James\AppData\Roaming\NuGet
2019-09-23 16:17 - 2019-09-23 16:17 - 000000000 ____D C:\Users\James\source
2019-09-23 16:14 - 2019-10-07 16:21 - 000000000 ____D C:\Users\James\AppData\Local\.IdentityService
2019-09-23 16:13 - 2019-09-23 19:01 - 000000000 ____D C:\Users\James\OneDrive\Documents\Visual Studio 2019
2019-09-23 16:13 - 2019-09-23 16:13 - 000000000 ____D C:\Users\James\AppData\Local\ServiceHub
2019-09-23 16:11 - 2019-09-23 16:12 - 001383856 _____ (Microsoft Corporation) C:\Users\James\Downloads\vs_community__1388090935.1569190144 (1).exe
2019-09-23 16:10 - 2019-09-23 16:10 - 000000280 __RSH C:\Users\James\ntuser.pol
2019-09-23 16:07 - 2019-09-23 16:07 - 000000000 ____D C:\Users\jimak\OneDrive\Documents\Visual Studio 2019
2019-09-23 16:07 - 2019-09-23 16:07 - 000000000 ____D C:\Users\jimak\AppData\Local\.IdentityService
2019-09-23 16:03 - 2019-09-23 16:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2019-09-23 16:03 - 2019-09-23 16:03 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DirectML.Debug.dll
2019-09-23 16:03 - 2019-09-23 16:03 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DirectML.Debug.dll
2019-09-23 16:03 - 2019-09-23 16:03 - 000000000 ____D C:\ProgramData\Windows App Certification Kit
2019-09-23 16:03 - 2019-09-23 16:03 - 000000000 ____D C:\Program Files\Application Verifier
2019-09-23 16:03 - 2019-09-23 16:03 - 000000000 ____D C:\Program Files (x86)\Application Verifier
2019-09-23 16:01 - 2019-09-23 16:01 - 017826304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCaptureReplay.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 013938688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCaptureReplay.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 005729280 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2019-09-23 16:01 - 2019-09-23 16:01 - 004849152 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe
2019-09-23 16:01 - 2019-09-23 16:01 - 004825600 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d12SDKLayers.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 004476928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsDesktopEngine.exe
2019-09-23 16:01 - 2019-09-23 16:01 - 003587072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsRemoteEngine.exe
2019-09-23 16:01 - 2019-09-23 16:01 - 003557376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d12SDKLayers.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 002007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 001412608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsOfflineAnalysis.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 001367040 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11_3SDKLayers.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 001165312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCap.exe
2019-09-23 16:01 - 2019-09-23 16:01 - 001084416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11_3SDKLayers.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000904192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCap.exe
2019-09-23 16:01 - 2019-09-23 16:01 - 000565248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1debug3.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1debug3.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000415232 _____ (Windows ® Win 7 DDK provider) C:\WINDOWS\system32\DXCpl.exe
2019-09-23 16:01 - 2019-09-23 16:01 - 000390656 _____ (Windows ® Win 7 DDK provider) C:\WINDOWS\SysWOW64\DXCpl.exe
2019-09-23 16:01 - 2019-09-23 16:01 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\perf_gputiming.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXGIDebug.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsExperiment.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf_gputiming.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXGIDebug.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsExperiment.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsMonitor.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsReporting.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsCapture.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsMonitor.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSD3DWARPDebug.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsCapture.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsReporting.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VSD3DWARPDebug.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DxToolsReportGenerator.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DxToolsReportGenerator.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsProxyStub.dll
2019-09-23 16:01 - 2019-09-23 16:01 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsProxyStub.dll
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\3082
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\2052
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1055
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1049
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1046
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1045
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1042
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1041
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1040
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1036
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1033
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1031
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1029
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\SysWOW64\1028
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\3082
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\2052
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1055
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1049
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1046
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1045
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1042
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1041
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1040
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1036
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1033
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1031
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1029
2019-09-23 16:00 - 2019-09-23 16:06 - 000000000 ____D C:\WINDOWS\system32\1028
2019-09-23 16:00 - 2019-09-23 16:00 - 000000000 ____D C:\Program Files\IIS
2019-09-23 16:00 - 2019-09-23 16:00 - 000000000 ____D C:\Program Files (x86)\IIS
2019-09-23 15:56 - 2019-09-23 15:56 - 000000000 ____D C:\Program Files\Microsoft SQL Server
2019-09-23 15:55 - 2019-09-23 15:55 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2019-09-23 15:51 - 2019-09-23 16:04 - 000000000 ____D C:\Program Files (x86)\Microsoft SDKs
2019-09-23 15:51 - 2019-09-23 16:03 - 000000000 ____D C:\Program Files (x86)\Windows Kits
2019-09-23 15:50 - 2019-09-23 15:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2019
2019-09-23 15:48 - 2019-09-23 15:48 - 000001499 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2019.lnk
2019-09-23 15:45 - 2019-09-23 16:08 - 000000000 ____D C:\Users\jimak\AppData\Roaming\Visual Studio Setup
2019-09-23 15:45 - 2019-09-23 15:47 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio
2019-09-23 15:45 - 2019-09-23 15:45 - 000001366 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Installer.lnk
2019-09-23 15:45 - 2019-09-23 15:45 - 000000000 ____D C:\Users\jimak\AppData\Roaming\vstelemetry
2019-09-23 15:45 - 2019-09-23 15:45 - 000000000 ____D C:\Users\jimak\AppData\Roaming\vs_installershell
2019-09-23 15:45 - 2019-09-23 15:45 - 000000000 ____D C:\Users\jimak\AppData\Local\ServiceHub
2019-09-23 15:44 - 2019-09-23 15:44 - 000000000 ____D C:\ProgramData\Microsoft Visual Studio
2019-09-23 15:43 - 2019-09-23 15:44 - 001383856 _____ (Microsoft Corporation) C:\Users\James\Downloads\vs_community__1388090935.1569190144.exe
2019-09-19 16:59 - 2019-09-19 16:59 - 000245042 _____ C:\Users\jimak\Downloads\MaryAnn Kelly, CT, F53, CD, 100k, SP, 6yr3%, max LTC.PDF
2019-09-19 16:59 - 2019-09-19 16:59 - 000245037 _____ C:\Users\jimak\Downloads\James Kelly, CT, M54, CD, 100k, SP, 6yr5%, max LTC.PDF
2019-09-18 16:08 - 2019-09-18 16:08 - 000175437 _____ C:\Users\James\Downloads\tiboyce-0.1.3.zip
2019-09-13 14:04 - 2019-09-13 14:04 - 000039752 _____ C:\Users\sugar\Downloads\CoverLockHeed2019.pdf
2019-09-11 14:50 - 2019-09-10 20:41 - 000835480 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2019-09-11 14:50 - 2019-09-10 20:41 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2019-09-10 20:38 - 2019-09-10 20:38 - 005500928 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 004306944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-09-10 20:38 - 2019-09-10 20:38 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DavSyncProvider.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DavSyncProvider.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000283264 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2019-09-10 20:38 - 2019-09-10 20:38 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-09-10 20:38 - 2019-09-10 20:38 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecerts.dll
2019-09-10 20:38 - 2019-09-10 20:38 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fvecerts.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 025445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 022626304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 019811328 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 018019328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 008011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 007196160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 007014912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 006516864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 006236160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 006081744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005916672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005848840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005762032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005091840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 005013504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 004857856 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 004538368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 003916048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 003817472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 003750912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 003738376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 003637760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-09-10 20:37 - 2019-09-10 20:37 - 002771520 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-09-10 20:37 - 2019-09-10 20:37 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-09-10 20:37 - 2019-09-10 20:37 - 002743808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002586816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002562048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002494232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002314440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002258640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002224952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001957000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001913088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001845616 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001815040 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001691136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001664168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001616568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001531656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001510744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001488216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001413624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001410048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001305608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001283600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-09-10 20:37 - 2019-09-10 20:37 - 001263104 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001244728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001192096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 001154952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001138688 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001122816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001105480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001098928 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001073168 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 001054656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000910336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000888832 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000781912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000776704 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000775680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIsoCtnr.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000727752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000667272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000634880 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000631808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000628400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000626688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000593112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000564736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000541264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000516752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000515448 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000511488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000510984 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000488056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000454736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000442304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000431448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000401832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000375512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000362056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-09-10 20:37 - 2019-09-10 20:37 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000316216 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngctasks.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000267496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000210448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceCenter.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\twext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaSvc.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000167136 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000145720 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000120344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compstui.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-09-10 20:37 - 2019-09-10 20:37 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-09-10 20:37 - 2019-09-10 20:37 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000072816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpnotify.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edpnotify.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddrawex.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInput1_4.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000042512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddrawex.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compact.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInputUap.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInput1_4.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000019984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2019-09-10 20:37 - 2019-09-10 20:37 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-09-10 20:37 - 2019-09-10 20:37 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDKOR.DLL
2019-09-10 20:37 - 2019-09-10 20:37 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-09-10 20:37 - 2019-09-10 20:37 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 009927992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 007902912 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 007839120 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 007582752 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 007261648 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 006408704 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 006226352 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 006162432 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 004551352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 004012032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 004009472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003724800 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 003701248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003590672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 003551232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003372448 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003353088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002871608 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 002870272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002762296 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002723840 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 002551096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002466512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002119168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 002032640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001999960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001754232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-09-10 20:36 - 2019-09-10 20:36 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001744400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001686528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001633648 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001509728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 001482256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 001439232 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 001371648 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-09-10 20:36 - 2019-09-10 20:36 - 001261256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001259424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 001158656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001149200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 001094144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001068560 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001065984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000977408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000913168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000909736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000905728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000889960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000822416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000810808 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000810496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000808960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000797112 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000731960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000722288 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000683008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000680976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000676632 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000637752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000596008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000561680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000511288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000478264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000464696 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000441360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000411128 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000401208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000338800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000334936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000310072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApproveChildRequest.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000237880 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000182288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000149504 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000147184 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000146416 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000141840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000106296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo-overrides.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000063288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInputUap.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\compact.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ws2ifsl.sys
2019-09-10 20:36 - 2019-09-10 20:36 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe
2019-09-10 20:36 - 2019-09-10 20:36 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-09-10 20:36 - 2019-09-10 20:36 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2019-09-10 20:35 - 2019-09-10 20:36 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000863744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000804880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000589600 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-09-10 20:35 - 2019-09-10 20:35 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000435728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthA2dp.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-09-10 20:35 - 2019-09-10 20:35 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000088568 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-09-10 20:35 - 2019-09-10 20:35 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000055304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2019-09-10 20:35 - 2019-09-10 20:35 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2019-09-09 11:44 - 2019-09-09 11:44 - 000008615 _____ C:\Users\sugar\Downloads\winmail (3).dat
2019-09-09 11:44 - 2019-09-09 11:44 - 000008615 _____ C:\Users\sugar\Downloads\winmail (2).dat
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-07 16:55 - 2019-08-24 10:56 - 000000000 ____D C:\FRST
2019-10-07 16:54 - 2019-08-27 15:24 - 000000000 ____D C:\Users\James\Downloads\FRST-OlderVersion
2019-10-07 16:46 - 2016-12-25 14:32 - 000000000 ____D C:\Users\James\Desktop\Games
2019-10-07 16:42 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2019-10-07 16:41 - 2019-08-05 11:21 - 000000000 ____D C:\Users\James
2019-10-07 16:30 - 2019-03-19 00:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-07 16:30 - 2016-12-25 12:55 - 000000000 ____D C:\Program Files (x86)\Steam
2019-10-07 16:14 - 2015-12-26 23:18 - 000000000 ____D C:\ProgramData\PDFC
2019-10-07 15:31 - 2016-08-20 11:32 - 000000000 ____D C:\ProgramData\NVIDIA
2019-10-07 15:29 - 2015-12-28 12:02 - 000000000 ____D C:\Users\James\AppData\Local\CrashDumps
2019-10-07 15:28 - 2019-08-05 20:10 - 000004168 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{80DEAE8C-01B5-477C-9FF2-D1E82E0041CA}
2019-10-07 15:28 - 2019-08-05 20:10 - 000004168 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{478D3183-2E34-44CD-B28C-478E69B5A612}
2019-10-07 15:28 - 2019-08-05 20:10 - 000003420 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-10-07 15:28 - 2019-08-05 20:10 - 000003296 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-10-07 15:22 - 2015-12-27 00:01 - 000000000 ____D C:\Program Files (x86)\Google
2019-10-07 15:14 - 2019-08-05 20:10 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-07 15:14 - 2019-06-24 20:36 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForjimak.job
2019-10-06 17:47 - 2019-03-19 00:37 - 001572864 _____ C:\WINDOWS\system32\config\BBI
2019-10-06 17:46 - 2019-05-29 13:54 - 000000000 ____D C:\Users\jimak\AppData\Roaming\steelseries-engine-3-client
2019-10-06 17:29 - 2019-08-05 19:39 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-06 15:41 - 2016-02-01 20:25 - 000000000 ____D C:\Users\sugar\AppData\Local\CrashDumps
2019-10-06 14:22 - 2015-12-27 16:04 - 000000000 ____D C:\Users\jimak\AppData\Local\CrashDumps
2019-10-06 14:05 - 2019-03-19 00:50 - 000000000 ____D C:\WINDOWS\INF
2019-10-06 13:54 - 2019-08-05 20:10 - 000003256 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForjimak
2019-10-06 12:15 - 2019-03-19 00:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-06 12:15 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-10-06 11:41 - 2019-08-05 20:10 - 000004168 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{536246E7-1486-47E5-8E5E-5A94F6A15EF0}
2019-10-04 17:08 - 2017-06-07 19:17 - 000000000 ____D C:\Users\jimak\OneDrive\Documents\My Cheat Tables
2019-10-03 16:53 - 2015-12-27 15:07 - 000000000 ____D C:\Users\James\AppData\Roaming\.minecraft
2019-10-03 08:22 - 2019-08-05 20:10 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1736177130-1667789116-2251809797-1010
2019-10-03 08:22 - 2019-08-05 11:21 - 000002374 _____ C:\Users\sugar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-03 08:22 - 2016-01-30 16:39 - 000000000 ___RD C:\Users\sugar\OneDrive
2019-10-02 17:22 - 2019-08-22 10:22 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-10-02 12:58 - 2017-10-19 23:02 - 000000000 ____D C:\Users\sugar\AppData\Local\Packages
2019-10-02 11:13 - 2016-01-30 17:42 - 000024860 _____ C:\Users\sugar\AppData\Roaming\wklnhst.dat
2019-10-01 20:20 - 2019-05-23 17:46 - 000000000 ____D C:\Users\sugar\AppData\Roaming\steelseries-engine-3-client
2019-10-01 19:19 - 2019-08-05 20:10 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1736177130-1667789116-2251809797-1001
2019-10-01 19:19 - 2019-08-05 11:21 - 000002374 _____ C:\Users\jimak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-01 19:19 - 2018-01-21 20:52 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-01 19:19 - 2015-12-26 20:24 - 000000000 ___RD C:\Users\jimak\OneDrive
2019-10-01 19:16 - 2019-09-05 17:09 - 000003812 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2019-10-01 19:16 - 2019-09-05 17:09 - 000003370 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2019-09-30 12:51 - 2019-05-19 12:08 - 000000000 ____D C:\Users\James\AppData\Roaming\steelseries-engine-3-client
2019-09-27 17:01 - 2017-01-29 21:19 - 000000000 ____D C:\Users\James\AppData\Roaming\discord
2019-09-27 16:13 - 2019-08-05 20:10 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1736177130-1667789116-2251809797-1009
2019-09-27 16:13 - 2019-08-05 11:21 - 000002374 _____ C:\Users\James\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-09-27 16:13 - 2015-12-27 15:04 - 000000000 ___RD C:\Users\James\OneDrive
2019-09-27 15:52 - 2019-03-09 11:27 - 000000000 ____D C:\Users\jimak\Desktop\My financial files 2018
2019-09-27 08:54 - 2016-01-30 16:20 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-27 08:46 - 2019-08-05 11:21 - 000000000 ____D C:\Users\jimak
2019-09-24 18:44 - 2016-12-25 13:04 - 000000000 ____D C:\Users\James\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-09-24 14:41 - 2019-08-05 19:56 - 000937076 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-09-24 08:03 - 2015-12-01 09:37 - 000000000 ____D C:\ProgramData\Realtek
2019-09-23 21:03 - 2019-08-05 11:21 - 000000000 ____D C:\Users\sugar
2019-09-23 20:40 - 2016-12-27 14:27 - 000000000 ____D C:\Users\James\OneDrive\Documents\My Games
2019-09-23 18:52 - 2019-06-27 19:53 - 000000000 ____D C:\Users\James\AppData\Roaming\CodeBlocks
2019-09-23 16:04 - 2019-03-19 00:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-09-23 16:03 - 2015-07-16 10:01 - 000000000 ____D C:\ProgramData\Package Cache
2019-09-23 15:56 - 2019-03-19 00:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-09-23 15:49 - 2019-08-05 10:58 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-09-21 18:11 - 2016-04-06 08:25 - 000000640 _____ C:\Users\James\AppData\Roaming\wklnhst.dat
2019-09-21 15:05 - 2018-10-24 20:10 - 000000000 _____ C:\Users\Public\Shared Files
2019-09-14 13:23 - 2015-12-27 00:10 - 000000000 ____D C:\Program Files (x86)\Image Resizer
2019-09-13 15:47 - 2018-02-08 10:34 - 000000000 ___RD C:\Users\James\3D Objects
2019-09-13 15:47 - 2017-10-19 23:04 - 000000000 ____D C:\Users\James\AppData\Local\Packages
2019-09-13 15:47 - 2015-07-16 10:00 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-09-11 19:46 - 2017-10-19 23:57 - 000000000 ___RD C:\Users\jimak\3D Objects
2019-09-11 14:53 - 2017-10-21 09:17 - 000000000 ___RD C:\Users\sugar\3D Objects
2019-09-11 14:50 - 2019-08-05 19:39 - 000479080 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\TextInput
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\Provisioning
2019-09-10 21:19 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-09-10 20:40 - 2019-03-19 02:20 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2019-09-10 20:40 - 2019-03-19 02:20 - 000018903 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2019-09-07 17:25 - 2016-09-06 17:13 - 000000000 ____D C:\Users\sugar\AppData\Roaming\CyberLink
2019-09-07 17:23 - 2016-01-30 16:36 - 000000000 ____D C:\Users\sugar\AppData\Local\NVIDIA Corporation
==================== Files in the root of some directories ================
2012-03-22 16:44 - 2012-03-22 16:44 - 003993600 _____ () C:\Program Files (x86)\GUT68F0.tmp
2013-08-24 11:34 - 2013-08-24 20:13 - 004188160 _____ () C:\Program Files (x86)\GUTE474.tmp
2017-09-05 18:14 - 2018-09-07 09:32 - 000000461 _____ () C:\Users\jimak\AppData\Roaming\WB.CFG
2015-12-28 11:27 - 2019-04-03 17:40 - 000003462 _____ () C:\Users\jimak\AppData\Roaming\wklnhst.dat
2015-12-26 20:20 - 2019-10-06 17:46 - 000521294 _____ () C:\Users\jimak\AppData\Local\BTServer.log
2017-09-05 18:37 - 2017-09-05 19:36 - 000012800 _____ () C:\Users\jimak\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-08-12 15:23 - 2019-08-14 09:01 - 000007599 _____ () C:\Users\jimak\AppData\Local\Resmon.ResmonCfg
2019-08-04 11:28 - 2019-08-04 11:28 - 000307643 _____ () C:\Users\jimak\AppData\Local\SRQP
2019-03-02 14:28 - 2019-03-02 14:28 - 000300544 _____ () C:\Users\jimak\AppData\Local\SRQPON2.tmp
2017-12-16 10:28 - 2017-12-25 16:28 - 000000052 _____ () C:\Users\jimak\AppData\Local\SRQPONMLKJ
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ============================