
There was a problem starting StartupChecklibrary.dll [Closed]
Started by
archiety
, Oct 04 2019 12:51 AM
#1
Posted 04 October 2019 - 12:51 AM

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-10-2019
Ran by Archie (04-10-2019 14:49:47)
Running from D:\My Downloads\Programs
Windows 10 Pro Version 1903 18362.356 (X64) (2019-09-06 10:58:38)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-2818051394-376047789-3379889015-500 - Administrator - Disabled) => C:\Users\Administrator
Archie (S-1-5-21-2818051394-376047789-3379889015-1001 - Administrator - Enabled) => C:\Users\Aldrin-PC
DefaultAccount (S-1-5-21-2818051394-376047789-3379889015-503 - Limited - Disabled)
Guest (S-1-5-21-2818051394-376047789-3379889015-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2818051394-376047789-3379889015-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\uTorrent) (Version: 3.5.5.45341 - BitTorrent Inc.)
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.223 - Adobe)
Adobe Photoshop CS6 version 13.0.1 (HKLM-x32\...\{A724DC44-6241-42D3-BA57-778B178ABC17}_is1) (Version: 13.0.1 - Adobe Systems, Inc.)
Audacity 2.3.2 (HKLM-x32\...\Audacity_is1) (Version: 2.3.2 - Audacity Team)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.61 - Piriform)
Cheat Engine 6.8.3 (HKLM\...\Cheat Engine 6.8.3_is1) (Version: - Cheat Engine)
Command & Conquer™: Generals and Zero Hour (HKLM-x32\...\{609F6FD5-4B22-4D7A-AD30-8C9DD480D5BE}) (Version: 1.0.0.0 - Electronic Arts, Inc.)
CPUID CPU-Z 1.88 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.88 - CPUID, Inc.)
Creative Destruction version 3.0.125 (HKLM-x32\...\{24904964-4247-4EBE-BC79-21D7FF68C6A0}_is1) (Version: 3.0.125 - My Company, Inc.)
Crossfire PH version 1361 (HKLM-x32\...\{34D276D6-F861-4FE9-AA3D-56628F50D806}_is1) (Version: 1361 - Gameclub PH)
Discord (HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Discord) (Version: 0.0.305 - Discord Inc.)
Driver Booster 6 (HKLM-x32\...\Driver Booster_is1) (Version: 6.4.0 - IObit)
Epic Games Launcher (HKLM-x32\...\{466EA30A-9B38-4AD2-A6B0-18D6E0C1A848}) (Version: 1.1.206.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Female Voices (HKLM-x32\...\{2418A64E-51AC-4BE6-A434-DF2AC8AB01E6}) (Version: 4.4.41 - Screaming Bee Inc.) Hidden
Female Voices for MorphVOX (HKLM-x32\...\{d052e867-a25a-46cc-8ed0-9d57de5dc15a}) (Version: 4.4.41 - Screaming Bee Inc.)
FiveM (HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\CitizenFX_FiveM) (Version: - The CitizenFX Collective)
FreeFixer (HKLM-x32\...\FreeFixer1.19) (Version: 1.19 - Kephyr)
GameClub Launcher PH (Remove only) (HKLM-x32\...\{BBD9FAD7-F782-4548-B00F-E612322950F6}) (Version: 20111202 - GameClub)
Garena (remove only) (HKLM-x32\...\gxx) (Version: 2.0.1909.2618 - Garena)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.90 - Google LLC)
Google Earth Pro (HKLM\...\{70A0F34E-564B-4F93-ADD6-3BAEC6E44075}) (Version: 7.3.2.5776 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.301 - Google LLC) Hidden
Grand Theft Auto: San Andreas (HKLM-x32\...\Grand Theft Auto: San Andreas) (Version: 1.0.0.22 - Rockstar Games)
HandBrake 1.2.2 (HKLM-x32\...\HandBrake) (Version: 1.2.2 - )
Herramientas de corrección de Microsoft Office 2016: español (HKLM\...\{90160000-001F-0C0A-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
IdentityV (HKLM-x32\...\IdentityV) (Version: 1.0.0.1 - Netease, Inc.)
IGdm 2.6.5 (HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\1ead4f81-c61a-5fa6-9e81-7a8c0c868952) (Version: 2.6.5 - ifedapo olarewaju)
Internet Download Manager (HKLM-x32\...\Internet Download Manager) (Version: - Tonec Inc.)
Java 8 Update 211 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180211F0}) (Version: 8.0.2110.12 - Oracle Corporation)
Java 8 Update 221 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180221F0}) (Version: 8.0.2210.11 - Oracle Corporation)
JetBoost (HKLM-x32\...\JetBoost_is1) (Version: 2.0.0 - BlueSprig)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Logitech Gaming Software 9.02 (HKLM\...\Logitech Gaming Software) (Version: 9.02.65 - Logitech Inc.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.0.100 - McAfee, LLC.)
Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\OneDriveSetup.exe) (Version: 19.103.0527.0003 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.22.27821 (HKLM-x32\...\{6361b579-2795-4886-b2a8-53d5239b6452}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.22.27821 (HKLM-x32\...\{5bfc1380-fd35-4b85-9715-7351535d077e}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{2D1ED4EA-B59D-4665-ACB3-9325872A300D}) (Version: 1.0.4.0 - Mojang)
MorphVOX Pro (HKLM-x32\...\{2960ccae-75d3-432b-a242-a7e73a357753}) (Version: 4.4.64.24780 - Screaming Bee)
MorphVOX Pro (HKLM-x32\...\{86FC29AD-F6D2-4C0A-94FD-876ED23A17CB}) (Version: 4.4.64.24780 - Screaming Bee) Hidden
Mozilla Firefox 68.0.2 (x64 en-US) (HKLM\...\Mozilla Firefox 68.0.2 (x64 en-US)) (Version: 68.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.0.1 - Mozilla)
MSI Afterburner 4.5.0 (HKLM-x32\...\Afterburner) (Version: 4.5.0 - MSI Co., LTD)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.0.118 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.0.118 - NVIDIA Corporation)
NVIDIA Graphics Driver 436.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 436.30 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
OneClickFirewall (HKLM\...\OneClickFirewall) (Version: 1.0.0.2 - hxxp://winaero.com)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Origin (HKLM-x32\...\Origin) (Version: 10.5.47.29954 - Electronic Arts, Inc.)
osu! (HKLM-x32\...\{a92434ea-234b-4bdd-a840-15f7c2c824c6}) (Version: latest - ppy Pty Ltd)
osu!lazer (HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\osulazer) (Version: 2019.925.0 - ppy Pty Ltd)
Outils de vérification linguistique 2016 de Microsoft Office - Français (HKLM\...\{90160000-001F-040C-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
Process Hacker 2.39 (r124) (HKLM\...\Process_Hacker2_is1) (Version: 2.39.0.124 - wj32)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
Quick CPU (HKLM-x32\...\{41F4C8EE-903D-4EB5-B6EB-75413BF496DE}) (Version: 3.0.1.0 - CoderBag)
Razer Cortex (HKLM-x32\...\Razer Cortex_is1) (Version: 9.5.21.1028 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8581 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 7.1.0 (HKLM-x32\...\RTSS) (Version: 7.1.0 - Unwinder)
Roblox Player for Aldrin-PC (HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\roblox-player) (Version: - Roblox Corporation)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.4.116 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.2.5 - Rockstar Games)
Rules of Survival version 1.295523.327600 (HKLM-x32\...\{F560482D-4378-4FB8-8EB7-4F017FDBCC90}_is1) (Version: 1.295523.327600 - Hong Kong Netease Interactive Entertainment Limited)
Search Powered by Yahoo! (HKLM-x32\...\{2F52C792-7FD2-1612-CE52-66921ED2B512}) (Version: - )
Spotify (HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Spotify) (Version: 1.1.6.113.gb388fe17 - Spotify AB)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Streamlabs OBS 0.13.4 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.13.4 - General Workings, Inc.)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.3.4730 - TeamViewer)
Update for Skype for Business 2016 (KB3115087) 64-Bit Edition (HKLM\...\{90160000-0011-0000-1000-0000000FF1CE}_Office16.PROPLUS_{C48D0508-2A21-42EA-8BC9-D387768F54F4}) (Version: - Microsoft)
Update for Skype for Business 2016 (KB3115087) 64-Bit Edition (HKLM\...\{90160000-00C1-0000-1000-0000000FF1CE}_Office16.PROPLUS_{C48D0508-2A21-42EA-8BC9-D387768F54F4}) (Version: - Microsoft)
Update for Skype for Business 2016 (KB3115087) 64-Bit Edition (HKLM\...\{90160000-012B-0409-1000-0000000FF1CE}_Office16.PROPLUS_{C48D0508-2A21-42EA-8BC9-D387768F54F4}) (Version: - Microsoft)
Uplay (HKLM-x32\...\Uplay) (Version: 84.0 - Ubisoft)
Virtual Audio Cable (HKLM\...\{83ed7f0e-2028-4956-b0b4-39c76fdaef1d}) (Version: 4.60 - Eugene V. Muzychenko)
Web Search (Yahoo! Provided) (HKLM-x32\...\{C91821D8-9998-F058-2818-80D8F8985358}) (Version: - )
Web-for-Instagram-Direct-DM 3.3.0 (HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\c9ce3cab-2aed-5759-bde7-812e0eddb69b) (Version: 3.3.0 - Web for Instagram Direct DM)
Windows 10 Update Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22866 - Microsoft Corporation)
Windscribe (HKLM-x32\...\{fa690e90-ddb0-4f0c-b3f1-136c084e5fc7}_is1) (Version: 1.83 Build 20 - Windscribe Limited)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Wondershare Filmora9(Build 9.1.2) (HKLM\...\Wondershare Filmora9_is1) (Version: - Wondershare Software)
Wondershare Helper Compact 2.6.0 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare)
XSplit Gamecaster (HKLM-x32\...\{7F0DC866-BE32-4AE8-8242-A1F5753176B8}) (Version: 3.4.1812.0304 - SplitmediaLabs)
Zoom (HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\ZoomUMX) (Version: 4.4 - Zoom Video Communications, Inc.)
Packages:
=========
ACG Player -> C:\Program Files\WindowsApps\41038AXILESOFT.ACGMEDIAPLAYER_1.15.17502.0_x64__wxjjre7dryqb6 [2019-09-07] (Axilesoft) [MS Ad]
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.0.3519.0_x64__rz1tebttyb220 [2019-09-21] (Dolby Laboratories)
EdgeDevtoolsPlugin -> C:\WINDOWS\SystemApps\Microsoft.EdgeDevtoolsPlugin_cw5n1h2txyewy [2019-10-04] (Microsoft Corporation)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2018-12-18] (Fitbit)
Mail and Calendar -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-09-25] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-09-07] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-09-07] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-13] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.8204.0_x64__8wekyb3d8bbwe [2019-09-07] (Microsoft Studios) [MS Ad]
Minecraft for Windows 10 -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.12.101.0_x64__8wekyb3d8bbwe [2019-09-06] (Microsoft Studios)
MSN Money -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.31.11905.0_x64__8wekyb3d8bbwe [2019-09-07] (Microsoft Corporation) [MS Ad]
MSN Sports -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.31.11905.0_x64__8wekyb3d8bbwe [2019-09-07] (Microsoft Corporation) [MS Ad]
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-13] (Microsoft Corporation) [MS Ad]
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.16.0_x64__nfy108tqq3p12 [2019-09-27] (Thumbmunkeys Ltd) [MS Ad]
PicsArt - Photo Studio -> C:\Program Files\WindowsApps\2FE3CB00.PicsArt-PhotoStudio_8.7.0.0_x86__crhqpqs3x1ygc [2019-09-08] (PicsArt Inc.) [MS Ad]
Plex -> C:\Program Files\WindowsApps\CAF9E577.Plex_3.2.20.0_x64__aam28m9va5cke [2018-12-18] (Plex)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2019-05-02] (Tonec Inc. -> Tonec Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-09-06] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-28] (win.rar GmbH -> Alexander Roshal)
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2019-05-02 21:41 - 2016-07-21 10:54 - 000137728 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2019-05-02 21:41 - 2017-09-12 10:34 - 001506304 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2019-06-07 18:47 - 2019-06-07 18:48 - 098275328 _____ () [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libcef.dll
2019-06-07 18:48 - 2019-06-07 18:48 - 000092672 _____ () [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libEGL.dll
2019-06-07 18:48 - 2019-06-07 18:48 - 003922432 _____ () [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libGLESv2.dll
2019-06-07 18:46 - 2019-06-07 18:47 - 000547840 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\chrome_elf.dll
2018-04-07 02:29 - 2018-04-07 02:29 - 002286747 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Logitech Gaming Software\LIBEAY32.dll
2018-04-07 02:29 - 2018-04-07 02:29 - 000416627 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Logitech Gaming Software\ssleay32.dll
2019-09-18 08:59 - 2019-08-31 09:32 - 001277440 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Origin\LIBEAY32.dll
2019-09-18 08:59 - 2019-08-31 09:32 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Origin\ssleay32.dll
2019-09-18 08:59 - 2019-08-31 09:32 - 001611264 _____ (The Qt Company Ltd) [File not signed] D:\Origin\platforms\qwindows.dll
2019-09-18 08:59 - 2019-08-31 09:32 - 005487104 _____ (The Qt Company Ltd) [File not signed] D:\Origin\Qt5Core.dll
2019-09-18 08:59 - 2019-08-31 09:32 - 005841920 _____ (The Qt Company Ltd) [File not signed] D:\Origin\Qt5Gui.dll
2019-09-18 08:59 - 2019-08-31 09:32 - 001179136 _____ (The Qt Company Ltd) [File not signed] D:\Origin\Qt5Network.dll
2019-09-18 08:59 - 2019-08-31 09:32 - 005089792 _____ (The Qt Company Ltd) [File not signed] D:\Origin\Qt5Widgets.dll
2019-09-18 08:59 - 2019-08-31 09:32 - 000184832 _____ (The Qt Company Ltd) [File not signed] D:\Origin\Qt5Xml.dll
2019-05-02 21:41 - 2017-09-12 10:36 - 000708608 _____ (Wondershare) [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\Aldrin-PC\Application Data:28e6fcdf43004128d29f013a87360b4a [394]
AlternateDataStreams: C:\Users\Aldrin-PC\AppData\Roaming:28e6fcdf43004128d29f013a87360b4a [394]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [482]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-09-01 14:36 - 2019-09-01 14:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\Control Panel\Desktop\\Wallpaper -> D:\Downloads\1003363.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
If an entry is included in the fixlist, it will be removed.
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{901F75FE-1211-40D9-AD85-0C6CA1A9E589}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe (Windscribe Limited -> Windscribe Limited)
FirewallRules: [TCP Query User{FB97348C-57CA-45CC-8554-D4E8794501F0}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe (Windscribe Limited -> Windscribe Limited)
FirewallRules: [UDP Query User{EC93F74B-0418-4798-96AC-CF995908E819}C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe
FirewallRules: [TCP Query User{51A94671-0B6A-4EEF-9B3B-5AA5582EE9FC}C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe
FirewallRules: [UDP Query User{64E429EC-F300-460A-9E97-88C78E3AED19}C:\program files (x86)\common files\oracle\java\javapath_target_17614593\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_17614593\java.exe
FirewallRules: [TCP Query User{29B684E6-4085-451B-9BC6-E7DA607768EC}C:\program files (x86)\common files\oracle\java\javapath_target_17614593\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_17614593\java.exe
FirewallRules: [{82395893-8887-4AA8-BD66-7B794CC2EBEC}] => (Allow) LPort=1688
FirewallRules: [UDP Query User{A565D8BE-9D4E-4CFB-9F61-AFA49AD1046B}D:\ros\ccmini\ccmini.exe] => (Allow) D:\ros\ccmini\ccmini.exe (NetEase(Hangzhou) Network Co. Ltd. -> 网易公司) [File not signed]
FirewallRules: [TCP Query User{51B9361C-62B4-4C04-BACB-73B1423DCC05}D:\ros\ccmini\ccmini.exe] => (Allow) D:\ros\ccmini\ccmini.exe (NetEase(Hangzhou) Network Co. Ltd. -> 网易公司) [File not signed]
FirewallRules: [UDP Query User{183A3B6F-D318-45C5-A830-BB8639C8573F}D:\ros\ros.exe] => (Allow) D:\ros\ros.exe (NetEase(Hangzhou) Network Co. Ltd. -> )
FirewallRules: [TCP Query User{E7E1778D-A4D5-4DE0-B301-848C056CE582}D:\ros\ros.exe] => (Allow) D:\ros\ros.exe (NetEase(Hangzhou) Network Co. Ltd. -> )
FirewallRules: [UDP Query User{2F8DBD25-7703-4D1F-A1C3-C6C9AF2A92A7}D:\garena\games\32774\game\league of legends.exe] => (Allow) D:\garena\games\32774\game\league of legends.exe (Riot Games, Inc. -> )
FirewallRules: [TCP Query User{1ADB9CAE-E47D-472C-B41B-B02B14A809CF}D:\garena\games\32774\game\league of legends.exe] => (Allow) D:\garena\games\32774\game\league of legends.exe (Riot Games, Inc. -> )
FirewallRules: [{ADA7323D-560D-4B9F-9CD7-E6A93BBC630F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{B65614AA-C462-4218-A847-4B31B5A262C4}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6C2D785F-2752-41EE-A730-C78899051ED5}] => (Allow) D:\Steam\steamapps\common\Blender\blender.exe (Blender Foundation) [File not signed]
FirewallRules: [{BB2FE32B-B170-47B3-B617-82CDB9917149}] => (Allow) D:\Steam\steamapps\common\Blender\blender.exe (Blender Foundation) [File not signed]
FirewallRules: [{CF8E7488-411B-49AD-A886-2036F03B7624}] => (Allow) C:\Program Files (x86)\\Bignox\\BigNoxVM\\RT\NoxVMHandle.exe No File
FirewallRules: [{7F4AF183-6A67-415E-9F6B-2F976A762D46}] => (Allow) D:\Program Files\Nox\bin\Nox.exe No File
FirewallRules: [UDP Query User{7B54DBE7-7D07-4A99-A3CA-60B020CE5E02}D:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{4053874D-FA99-4E8B-BCF3-369919A95D35}D:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{27E35D71-AEB7-4CFD-927F-3B29271FD698}C:\users\aldrin-pc\appdata\roaming\utorrent\updates\3.5.5_45311.exe] => (Allow) C:\users\aldrin-pc\appdata\roaming\utorrent\updates\3.5.5_45311.exe No File
FirewallRules: [TCP Query User{EEC6A732-E8CA-4825-A3F8-65C5F0CFD2A5}C:\users\aldrin-pc\appdata\roaming\utorrent\updates\3.5.5_45311.exe] => (Allow) C:\users\aldrin-pc\appdata\roaming\utorrent\updates\3.5.5_45311.exe No File
FirewallRules: [UDP Query User{5723E76F-4854-4C00-9F1A-A85229206291}C:\users\aldrin-pc\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe] => (Allow) C:\users\aldrin-pc\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe (cfx-collective) [File not signed]
FirewallRules: [TCP Query User{889A462C-BF22-4963-9B9C-FB0AEA6E39E2}C:\users\aldrin-pc\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe] => (Allow) C:\users\aldrin-pc\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe (cfx-collective) [File not signed]
FirewallRules: [{BD22BE93-660B-4C3D-BED7-025B957F19DC}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{74B055C6-D688-4C41-AAD6-1CE2F8A737E8}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{CF612A00-5A45-4B40-B273-94B29D12290E}D:\cyber hunter\bin\ccmini\ccmini.exe] => (Allow) D:\cyber hunter\bin\ccmini\ccmini.exe (NetEase(Hangzhou) Network Co. Ltd. -> 网易公司)
FirewallRules: [TCP Query User{117A618A-D60B-424C-9FBA-8502CD85EE89}D:\cyber hunter\bin\ccmini\ccmini.exe] => (Allow) D:\cyber hunter\bin\ccmini\ccmini.exe (NetEase(Hangzhou) Network Co. Ltd. -> 网易公司)
FirewallRules: [UDP Query User{37D3B241-7736-437B-B954-A2EF8FDDB15A}D:\cyber hunter\bin\client.exe] => (Allow) D:\cyber hunter\bin\client.exe (NetEase(Hangzhou) Network Co. Ltd. -> )
FirewallRules: [TCP Query User{5AF14772-F876-40A0-BADB-6231C11EDBB5}D:\cyber hunter\bin\client.exe] => (Allow) D:\cyber hunter\bin\client.exe (NetEase(Hangzhou) Network Co. Ltd. -> )
FirewallRules: [UDP Query User{71118F1D-DAD8-4AC9-A989-75FBC26553A5}D:\creative destruction\ccmini\ccmini.exe] => (Allow) D:\creative destruction\ccmini\ccmini.exe (NetEase(Hangzhou) Network Co. Ltd. -> 网易公司)
FirewallRules: [TCP Query User{491A0DEF-23CB-4A43-9DD0-314B8D68E918}D:\creative destruction\ccmini\ccmini.exe] => (Allow) D:\creative destruction\ccmini\ccmini.exe (NetEase(Hangzhou) Network Co. Ltd. -> 网易公司)
FirewallRules: [UDP Query User{B9D32A7C-4F9C-4DF5-8B2D-D79C0287A96F}D:\creative destruction\client.exe] => (Allow) D:\creative destruction\client.exe (NetEase(Hangzhou) Network Co. Ltd. -> 网易)
FirewallRules: [TCP Query User{F98A76DA-559D-43F4-AAA4-72CD27221F60}D:\creative destruction\client.exe] => (Allow) D:\creative destruction\client.exe (NetEase(Hangzhou) Network Co. Ltd. -> 网易)
FirewallRules: [{444C22FE-4998-40F9-9DCF-9A59E433EFA6}] => (Allow) C:\Program Files (x86)\Garena\Garena\2.0.1907.0210\gxxsvc.exe (Garena Online Pte Ltd -> Garena Online )
FirewallRules: [{8ECA49B9-B1AD-4851-85D2-6DD8860C97BF}] => (Allow) C:\Steam\SteamApps\common\Rust\Rust.exe (Facepunch Studios Ltd -> EasyAntiCheat Ltd)
FirewallRules: [{CA0CED89-36C1-4561-AEF6-C1516EFDA786}] => (Allow) C:\Steam\SteamApps\common\Rust\Rust.exe (Facepunch Studios Ltd -> EasyAntiCheat Ltd)
FirewallRules: [{C18FEC24-8676-4A4C-9497-B8561C61AF0A}] => (Allow) C:\Users\Aldrin-PC\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{35833ECE-ECB7-4C21-9E02-E93FEE37733D}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )
FirewallRules: [{BD4BFFEA-B09F-4678-9B57-9E025895421E}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )
FirewallRules: [{86A8FF06-0FB4-45EA-A64D-2DAB0B79BCF1}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{EA98BB07-853E-4774-8D06-7892246D1BCA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{38F76807-7A23-45A3-A09D-9511210C3BDD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{C42C33CF-5831-4895-8189-CBEF8A68EFCB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{DF9CDF9D-B281-4AC1-92D3-83A901A42239}] => (Allow) D:\Steam\steamapps\common\VRChat\VRChat.exe () [File not signed]
FirewallRules: [{B5F63EC0-68BD-4907-AE6B-956D2B8439A3}] => (Allow) D:\Steam\steamapps\common\VRChat\VRChat.exe () [File not signed]
FirewallRules: [{426FE675-376F-4753-A55F-2DFD2645C8C0}] => (Allow) C:\Users\Aldrin-PC\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{D5509020-791F-4EB4-B5B9-0085886F644A}] => (Allow) C:\Users\Aldrin-PC\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{A74E23A3-B606-4BF4-8070-1B0453BE8569}] => (Allow) C:\Users\Aldrin-PC\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{752226F5-0195-41FA-9BEE-BA8E88B2BCCB}] => (Allow) C:\Users\Aldrin-PC\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [UDP Query User{0E1105B2-FC77-4D41-9BBA-8A21B6BC6A43}C:\identityv\dwrg.exe] => (Allow) C:\identityv\dwrg.exe (NetEase(Hangzhou) Network Co. Ltd. -> )
FirewallRules: [TCP Query User{C6AE68F9-2CAD-46A8-B489-2C6C31EE3712}C:\identityv\dwrg.exe] => (Allow) C:\identityv\dwrg.exe (NetEase(Hangzhou) Network Co. Ltd. -> )
FirewallRules: [UDP Query User{D0411FF2-FE52-45E8-819F-49FC7BC65D2C}D:\garena\games\32786\leagueclient\leagueclient.exe] => (Allow) D:\garena\games\32786\leagueclient\leagueclient.exe (Riot Games, Inc. -> )
FirewallRules: [TCP Query User{7EDB13DA-E948-4B83-B1B6-FBDCE0510F4E}D:\garena\games\32786\leagueclient\leagueclient.exe] => (Allow) D:\garena\games\32786\leagueclient\leagueclient.exe (Riot Games, Inc. -> )
FirewallRules: [{B3C5A474-C126-4C79-9C43-F6F59139D569}] => (Allow) C:\Program Files (x86)\Garena\Garena\2.0.1904.0511\gxxsvc.exe (Garena Online Pte Ltd -> Garena Online )
FirewallRules: [{DD4AB8A9-0DAF-4BCD-97D1-103E8F162801}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.cam.exe (SplitmediaLabs Limited -> SplitmediaLabs Limited)
FirewallRules: [{CC55A4B3-5843-4051-B47B-4B6AE117FE5F}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.cam.exe (SplitmediaLabs Limited -> SplitmediaLabs Limited)
FirewallRules: [{A438CB5A-85D2-4A11-B872-034332D8B58F}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe (SplitmediaLabs Limited -> SplitmediaLabs)
FirewallRules: [{F323232E-9194-4322-AC34-42D091D4F57F}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe (SplitmediaLabs Limited -> SplitmediaLabs)
FirewallRules: [{F5D96A13-C425-4F44-A73E-FF8F748ED1E1}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{12632AFD-B55A-4424-AC95-3D002D04EB3C}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{22753CA7-F007-49E5-A4E3-1D987739C854}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{4E494511-B185-4D17-8493-BFDA92314E39}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{E298706A-0C63-42F6-9C1F-ACFE4A0654A5}] => (Allow) D:\Steam\steamapps\common\CPUCores\cpucores.exe (Tim Sullivan -> )
FirewallRules: [{5C14076C-66FB-4832-B8DB-C1B90C650494}] => (Allow) D:\Steam\steamapps\common\CPUCores\cpucores.exe (Tim Sullivan -> )
FirewallRules: [{DC8E497E-FBCA-4701-98F1-5A78CC69BEBC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D7FA6174-37C8-4E29-998C-F2A0E8DC7538}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{C0E2389A-CA6B-469E-B584-698D6C11CD3A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.4.0\AutoUpdate.exe (IObit Information Technology -> IObit)
FirewallRules: [{A0F12CBC-0D88-4EA2-BBDF-AFD228E92749}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.4.0\AutoUpdate.exe (IObit Information Technology -> IObit)
FirewallRules: [{E091C2AE-CD5D-4935-862E-2729061395E7}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.4.0\DBDownloader.exe (IObit Information Technology -> IObit)
FirewallRules: [{088682B3-95CE-4708-BAED-1189ED52BE91}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.4.0\DBDownloader.exe (IObit Information Technology -> IObit)
FirewallRules: [{F316B160-E070-4638-AE1C-BEEB1E9BA3C9}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.4.0\DriverBooster.exe (IObit Information Technology -> IObit)
FirewallRules: [{1A7077BD-F33D-4710-8DF8-9B07341792AA}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.4.0\DriverBooster.exe (IObit Information Technology -> IObit)
FirewallRules: [{0FBDC2E5-EC47-4175-AB8D-5EBC1052BAAE}] => (Block) D:\origin games\command and conquer generals zero hour\command and conquer generals zero hour\generals.exe (Kalloc Studios, Inc. -> ) [File not signed]
FirewallRules: [{049FF56C-D103-475E-A521-EA384B2A36DC}] => (Block) D:\origin games\command and conquer generals zero hour\command and conquer generals zero hour\generals.exe (Kalloc Studios, Inc. -> ) [File not signed]
FirewallRules: [UDP Query User{9218DDD2-D16F-41BF-A6D6-28BF9826F4B1}D:\origin games\command and conquer generals zero hour\command and conquer generals zero hour\generals.exe] => (Allow) D:\origin games\command and conquer generals zero hour\command and conquer generals zero hour\generals.exe (Kalloc Studios, Inc. -> ) [File not signed]
FirewallRules: [TCP Query User{ADAC2921-8FEE-408E-BAAC-68A64B124797}D:\origin games\command and conquer generals zero hour\command and conquer generals zero hour\generals.exe] => (Allow) D:\origin games\command and conquer generals zero hour\command and conquer generals zero hour\generals.exe (Kalloc Studios, Inc. -> ) [File not signed]
FirewallRules: [{749D0A38-C93B-4378-AC71-FE5DE13F7E0C}] => (Allow) D:\Origin Games\Command and Conquer Generals Zero Hour\Generals.exe (Kalloc Studios, Inc. -> Kalloc Studios) [File not signed]
FirewallRules: [{EA68E5DC-3152-4736-A225-5BA6D741BB32}] => (Allow) D:\Origin Games\Command and Conquer Generals Zero Hour\Generals.exe (Kalloc Studios, Inc. -> Kalloc Studios) [File not signed]
FirewallRules: [{0AB22001-5378-4926-953A-F195D275D169}] => (Allow) D:\Steam\steamapps\common\Team Fortress 2\hl2.exe (Valve -> )
FirewallRules: [{511C0EC5-FAB5-4D74-AD21-8EC84557FD66}] => (Allow) D:\Steam\steamapps\common\Team Fortress 2\hl2.exe (Valve -> )
FirewallRules: [{56743087-0D4D-4793-A95C-B4BDF9FCA6F5}] => (Allow) C:\Program Files (x86)\Garena\Garena\2.0.1902.0110\gxxsvc.exe No File
FirewallRules: [{6BD1BB54-C760-4E30-A9FC-4ECDBEA4BBBF}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{B19C4500-786A-416A-8493-F450A04EA7A0}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{B0653370-FE25-4B55-9270-16048E03EC73}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{965C5AF6-A7B0-4695-8C20-D7D7323D0D42}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [UDP Query User{1AA3665B-1E32-4FD5-8CED-1672780F0072}D:\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) D:\minecraft\runtime\jre-x64\bin\javaw.exe
FirewallRules: [TCP Query User{961BC8C2-AEAB-40E8-9A85-FDEA41198FB1}D:\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) D:\minecraft\runtime\jre-x64\bin\javaw.exe
FirewallRules: [{BA55BBCD-7FAF-4D7D-B176-63C6060F9563}] => (Allow) D:\Microsoft Office\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F2F03D25-B677-4332-BF76-0AD996966A1B}] => (Allow) C:\Users\Aldrin-PC\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{7DC72A61-9F24-4B49-AE0D-4F2B1E32A7E2}] => (Allow) C:\Users\Aldrin-PC\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{7C518802-B98A-4BD1-A6EA-9AA54560D8B7}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{81AB5F30-E622-4E4F-AD6B-48C79157296A}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{9C1678ED-CAA7-4CB2-88E0-3BBE3FA256C0}C:\users\aldrin-pc\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\aldrin-pc\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{1DC9927D-3345-48BE-96C2-87F16711627A}C:\users\aldrin-pc\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\aldrin-pc\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{EAAA20C7-D76A-4DFB-AC1E-5943EF18C98F}D:\garena\games\32774\leagueclient\leagueclient.exe] => (Allow) D:\garena\games\32774\leagueclient\leagueclient.exe (Riot Games, Inc. -> )
FirewallRules: [TCP Query User{A10F9692-8E02-4B94-AFAF-07A3E5A0CC24}D:\garena\games\32774\leagueclient\leagueclient.exe] => (Allow) D:\garena\games\32774\leagueclient\leagueclient.exe (Riot Games, Inc. -> )
FirewallRules: [{9AAA85D0-E255-4238-8BD4-D035A1248CDA}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{ECF69281-B1A3-4ED6-8D0A-EBF63EE2948E}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{87FE15D8-4309-4C74-9A0A-EFE8FC899E1F}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{8AEDFD5C-CC8D-435F-A674-7025E878CDEA}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{BDE7D44F-0D6E-4944-ACFC-0B434CB39B45}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{68B8ABBD-B5DA-41AB-913C-A71B9EBE2921}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{82E66BA6-8D9A-4A0E-A744-6AD377F02748}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{50D26E30-AE2A-48E6-AF3F-86CBD7FF9F9E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7B740429-4FA5-4D2F-B985-302870ADB492}] => (Block) c:\program files\voicemod desktop\voicemoddesktop.exe No File
FirewallRules: [TCP Query User{106E1FF8-35C5-4523-B6A8-84199752AEE8}D:\overwatch\_retail_\overwatch.exe] => (Allow) D:\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{E8F9B405-5CD5-4DAA-8592-11940CFB4856}D:\overwatch\_retail_\overwatch.exe] => (Allow) D:\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{943051A7-89BE-4FBA-9EB5-927B3A70F412}] => (Block) D:\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{13E40036-5AE8-4D28-9BBB-662B27602BF1}] => (Block) D:\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{EC984214-5594-4891-9DC1-3062815886BC}] => (Allow) C:\Program Files (x86)\Garena\Garena\2.0.1909.0514\gxxsvc.exe (Garena Online Pte Ltd -> Garena Online )
FirewallRules: [{91994849-BB98-4F18-A704-8E1EFAB8F4F5}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{93B93234-AC61-4957-A6D1-44CF30216280}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{E492414C-BBF9-4049-95B4-A2D7C90A0493}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{B2D55769-44F9-4E19-B227-886B743D8B8C}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [UDP Query User{55F11708-5AFC-431B-87A4-C7C33D112F7E}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{5F0F7AA1-042C-4969-963E-4CFB3B6301B2}D:\steam\steamapps\common\dirty bomb\binaries\win64\shootergame-win32-shipping.exe] => (Allow) D:\steam\steamapps\common\dirty bomb\binaries\win64\shootergame-win32-shipping.exe No File
FirewallRules: [UDP Query User{DAEC2C98-7BBC-4A3F-BF02-C57DF8B7915B}D:\steam\steamapps\common\dirty bomb\binaries\win64\shootergame-win32-shipping.exe] => (Allow) D:\steam\steamapps\common\dirty bomb\binaries\win64\shootergame-win32-shipping.exe No File
FirewallRules: [{875494FE-AB44-42B1-82EB-5F39E26951B9}] => (Allow) D:\Steam\steamapps\common\Terraria\Terraria.exe (Re-Logic) [File not signed]
FirewallRules: [{9FEA5644-E56B-4E35-99E2-E53DF5C6F69E}] => (Allow) D:\Steam\steamapps\common\Terraria\Terraria.exe (Re-Logic) [File not signed]
FirewallRules: [{6D9CBEE8-F361-4C8D-BB54-17BBAC5ABBBB}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe () [File not signed]
FirewallRules: [{3E2DD707-BEFA-4F5D-B685-B3CF72F246C6}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe () [File not signed]
FirewallRules: [{6D0A3EF3-F3D1-4743-A57F-9693199D86E3}] => (Allow) D:\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{6A3A9DE2-10F1-4972-8382-DA3D42EE89C7}] => (Allow) D:\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{BDD6F8F7-9E31-40C2-90CD-8258E09B81CD}] => (Allow) D:\Steam\steamapps\common\wallpaper_engine\launcher.exe (Kristjan Skutta -> )
FirewallRules: [{32091064-7FD1-4062-A5E1-D8553F8D5EA3}] => (Allow) D:\Steam\steamapps\common\wallpaper_engine\launcher.exe (Kristjan Skutta -> )
FirewallRules: [{7129827F-FCF1-4931-A113-0FB153EC0E56}] => (Allow) D:\Steam\steamapps\common\Ironsight_wpg\ironsight.exe (WIPLEGAMES Inc. -> WipleGames)
FirewallRules: [{A566B8BC-BD1F-4A8B-93FE-0619154F2102}] => (Allow) D:\Steam\steamapps\common\Ironsight_wpg\ironsight.exe (WIPLEGAMES Inc. -> WipleGames)
FirewallRules: [{23037EC6-C8D4-429E-9E39-30FEA1470233}] => (Allow) D:\Steam\steamapps\common\Deceit\bin\win_x64\Deceit.exe (Crytek GmbH) [File not signed]
FirewallRules: [{50992E22-ECA6-499E-9505-995CF6D013F8}] => (Allow) D:\Steam\steamapps\common\Deceit\bin\win_x64\Deceit.exe (Crytek GmbH) [File not signed]
FirewallRules: [{80BB04B9-4E61-4710-B08E-A72FCDD93DCE}] => (Allow) D:\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe () [File not signed]
FirewallRules: [{BBF4DB49-03F9-4E8C-890D-99EBA712C1CB}] => (Allow) D:\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe () [File not signed]
FirewallRules: [{06870741-CE77-43B9-9216-664A27D88B9B}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe No File
FirewallRules: [{F77466B1-2E6C-4DBD-A252-31FFA83CFAA7}] => (Allow) D:\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe No File
FirewallRules: [{564CBF93-3F01-4997-BF4B-009E4957E049}] => (Allow) D:\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe No File
FirewallRules: [{EB85DA0F-3FB7-428B-BAB2-A4551F1D6C4B}] => (Allow) D:\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe No File
FirewallRules: [{E67313CB-DE5F-409F-827E-7455DDE74870}] => (Allow) D:\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe No File
FirewallRules: [TCP Query User{452E95D6-5FEF-45A0-9CDF-83141C49E973}D:\origin games\apex\r5apex.exe] => (Allow) D:\origin games\apex\r5apex.exe No File
FirewallRules: [UDP Query User{396C8245-5975-47AC-9548-8F3E48B8C83D}D:\origin games\apex\r5apex.exe] => (Allow) D:\origin games\apex\r5apex.exe No File
FirewallRules: [{2DEBCD67-4E35-4870-A358-9107470117FC}] => (Allow) C:\Program Files (x86)\Garena\Garena\2.0.1909.2618\gxxsvc.exe (Garena Online Pte Ltd -> Garena Online )
FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe (Microsoft Windows -> )
==================== Codecs (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-29] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-29] () [File not signed]
HKLM\...\Drivers32: [vidc.VP60] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com)
HKLM\...\Drivers32: [vidc.VP61] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com)
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:111.2 GB) (Free:30.27 GB) (27%)
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/04/2019 02:34:03 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0xC004F074
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=1
Error: (10/04/2019 02:33:37 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0xC004F074
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (10/04/2019 02:33:12 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Users\Aldrin-PC\AppData\Local\chromium\Application\chrome.exe".
Dependent Assembly 58.0.2991.0,language="*",type="win32",version="58.0.2991.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
Error: (10/04/2019 02:22:07 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0xC004F074
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (10/04/2019 02:22:01 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0xC004F074
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=1
Error: (10/04/2019 02:21:48 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0xC004F074
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=TimerEvent
Error: (10/04/2019 02:20:26 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Users\Aldrin-PC\AppData\Local\chromium\Application\chrome.exe".
Dependent Assembly 58.0.2991.0,language="*",type="win32",version="58.0.2991.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
Error: (10/04/2019 10:55:57 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0xC004F074
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=TimerEvent
System errors:
=============
Error: (10/04/2019 02:32:36 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 2:31:48 PM on 10/4/2019 was unexpected.
Error: (10/04/2019 02:29:03 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-4MSI5IH)
Description: DCOM got error "1068" attempting to start the service cdpsvc with arguments "Unavailable" in order to run the server:
{88E526C9-718C-410A-981C-7EF7806971E3}
Error: (10/04/2019 02:29:03 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Connected Devices Platform Service service depends on the Network Connection Broker service which failed to start because of the following error:
After starting, the service hung in a start-pending state.
Error: (10/04/2019 02:29:03 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Network Connection Broker service hung on starting.
Error: (10/04/2019 02:27:35 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-4MSI5IH)
Description: DCOM got error "1068" attempting to start the service cdpsvc with arguments "Unavailable" in order to run the server:
{284CACFE-B6F2-461A-90C3-A7ACC8353816}
Error: (10/04/2019 02:27:35 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Connected Devices Platform Service service depends on the Network Connection Broker service which failed to start because of the following error:
After starting, the service hung in a start-pending state.
Error: (10/04/2019 02:27:35 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Network Connection Broker service hung on starting.
Error: (10/04/2019 02:25:47 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-4MSI5IH)
Description: DCOM got error "1068" attempting to start the service cdpsvc with arguments "Unavailable" in order to run the server:
{284CACFE-B6F2-461A-90C3-A7ACC8353816}
Windows Defender:
===================================
Date: 2019-10-03 14:22:03.441
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: Trojan:Win32/Tiggre!plock
ID: 2147723626
Severity: Severe
Category: Trojan
Path: file:_C:\WINDOWS\system32\StartupCheckLibrary.dll
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: System
Process Name: Unknown
Security intelligence Version: AV: 1.303.697.0, AS: 1.303.697.0, NIS: 1.303.697.0
Engine Version: AM: 1.1.16400.2, NIS: 1.1.16400.2
Date: 2019-10-03 14:22:03.440
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: HackTool:Win64/AutoKMS
ID: 2147723334
Severity: High
Category: Tool
Path: file:_C:\WINDOWS\SECOH-QAD.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Security intelligence Version: AV: 1.303.697.0, AS: 1.303.697.0, NIS: 1.303.697.0
Engine Version: AM: 1.1.16400.2, NIS: 1.1.16400.2
Date: 2019-10-03 13:53:06.787
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {3EB79499-6C73-4521-A349-D311B30898C0}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2019-10-03 08:48:44.947
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {EE7B577A-AE6D-4092-85CD-E09247EEE722}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2019-10-03 08:36:53.465
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {E99500F7-6FC2-4551-ACD2-B7BD1146DB12}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2019-10-02 18:34:59.332
Description:
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.303.651.0
Update Source: Microsoft Update Server
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.16400.2
Error code: 0x8024001e
Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.
CodeIntegrity:
===================================
Date: 2019-10-04 14:32:58.277
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2019-10-04 14:32:43.699
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2019-10-04 14:32:43.318
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2019-10-04 14:30:22.127
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-10-04 14:30:22.089
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-10-04 14:30:22.064
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-10-04 14:23:52.817
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2019-10-04 14:23:52.797
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. F23 08/08/2018
Motherboard: Gigabyte Technology Co., Ltd. A320M-S2H-CF
Processor: AMD Ryzen 3 2200G with Radeon Vega Graphics
Percentage of memory in use: 60%
Total physical RAM: 8139.34 MB
Available physical RAM: 3193.58 MB
Total Virtual: 16139.34 MB
Available Virtual: 9973.87 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:111.2 GB) (Free:30.27 GB) NTFS
Drive d: (New Volume) (Fixed) (Total:465.75 GB) (Free:97.09 GB) NTFS
\\?\Volume{ff056e69-076b-4f6c-b1a0-9fdf7c3e4f11}\ (Recovery) (Fixed) (Total:0.49 GB) (Free:0.06 GB) NTFS
\\?\Volume{8e01f7bf-8fa9-42b4-8ab8-0e1054310849}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Protective MBR) (Size: 111.8 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 1 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt ============================
#2
Posted 04 October 2019 - 12:52 AM

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-10-2019
Ran by Archie (administrator) on DESKTOP-4MSI5IH (Gigabyte Technology Co., Ltd. A320M-S2H) (04-10-2019 14:48:07)
Running from D:\My Downloads\Programs
Loaded Profiles: Archie (Available Profiles: Archie & Administrator)
Platform: Windows 10 Pro Version 1903 18362.356 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(BitTorrent Inc -> BitTorrent Inc.) C:\Users\Aldrin-PC\AppData\Roaming\uTorrent\helper\helper.exe
(BitTorrent Inc -> BitTorrent Inc.) C:\Users\Aldrin-PC\AppData\Roaming\uTorrent\updates\3.5.5_45341\utorrentie.exe
(BitTorrent Inc -> BitTorrent Inc.) C:\Users\Aldrin-PC\AppData\Roaming\uTorrent\updates\3.5.5_45341\utorrentie.exe
(BitTorrent Inc -> BitTorrent Inc.) C:\Users\Aldrin-PC\AppData\Roaming\uTorrent\uTorrent.exe
(Discord Inc. -> Discord Inc.) C:\Users\Aldrin-PC\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Aldrin-PC\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Aldrin-PC\AppData\Local\Discord\app-0.0.305\Discord.exe
(Discord Inc. -> Discord Inc.) C:\Users\Aldrin-PC\AppData\Local\Discord\app-0.0.305\Discord.exe
(Electronic Arts, Inc. -> Electronic Arts) D:\Origin\OriginWebHelperService.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\UnrealCEFSubProcess.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(Garena Online Pte Ltd -> Garena Online ) C:\Program Files (x86)\Garena\Garena\2.0.1909.2618\gxxsvc.exe
(GOLD CLICK LIMITED -> Gold Click Ltd) C:\Program Files (x86)\ProxyGate\Cloud.exe
(GOLD CLICK LIMITED -> Gold Click Ltd) C:\Program Files (x86)\ProxyGate\PGChk.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.302\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.302\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Kephyr) [File not signed] C:\Program Files\FreeFixer\freefixer.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\ArxApplets\Discord\logitechg_discord.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
(Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11909.1002.3.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19091.313.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19072.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.350_none_5f2790f858f0e2a7\TiWorker.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\NisSrv.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Plan A Software) [File not signed] D:\PingBooster\engine\Pingbooster_service.exe
(Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\FPSRunner32.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\PMRunner32.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\x64\FPSRunner64.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\x64\PMRunner64.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe
(Razer USA Ltd. -> Razer) C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe
(Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Cortex\Cef\CefSharp.BrowserSubprocess.exe
(Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe
(Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.52.138.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.52.138.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Tonec Inc. -> Tonec Inc.) [File not signed] C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(Tonec Inc. -> Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Razer\Razer Services\GMS\SteamCmd\steamcmd.exe
(Windscribe Limited -> Windscribe Limited) C:\Program Files (x86)\Windscribe\WindscribeService.exe
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [18727048 2018-10-05] (Logitech Inc -> Logitech Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9269352 2019-04-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe [266624 2019-07-29] (Razer USA Ltd. -> Razer Inc.)
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\...\Policies\Explorer: [MemCheckBoxInRunDlg] 1
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Run: [Chromium] => c:\users\aldrin-pc\appdata\local\chromium\application\chrome.exe [828416 2017-01-23] (The Chromium Authors) [File not signed]
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Run: [EADM] => D:\Origin\Origin.exe [3115792 2019-09-04] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [35949968 2019-10-03] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Run: [Discord] => C:\Users\Aldrin-PC\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Run: [Windscribe] => C:\Program Files (x86)\Windscribe\Windscribe.exe [10106544 2019-01-19] (Windscribe Limited -> Windscribe Limited)
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22714912 2019-08-15] (Piriform Software Ltd -> Piriform Ltd)
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Run: [uTorrent] => C:\Users\Aldrin-PC\AppData\Roaming\uTorrent\uTorrent.exe [2086896 2019-09-30] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [4072560 2019-07-01] (Tonec Inc. -> Tonec Inc.) [File not signed]
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.90\Installer\chrmstp.exe [2019-09-19] (Google LLC -> Google LLC)
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa
BootExecute: autocheck autochk /m /P \Device\HarddiskVolume7autocheck autochk *
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {082ADAC6-5BC7-48EE-8C3E-55845719B202} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1CDB4193-E6B6-4CBE-8944-637743857C65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
Task: {356B052D-FC79-4B12-B4E5-FDF14FF3384D} - System32\Tasks\Search Powered by Yahoo! linil => C:\Windows\system32\wscript.exe "C:\ProgramData\{2D7AE819-A738-62DF-21FE-FC9DBBBC7753}\dila" "68747470733a2f2f643277763764656e63316a78397a2e636c6f756466726f6e742e6e6574" "//B" "//E:jscript" "--IsErIk"
Task: {3B8B51A5-4A44-49DE-858C-6DBEA644B18B} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-08-15] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {3FDFE549-429B-4AE7-9F1F-B33FDA618AB3} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_223_pepper.exe [1453112 2019-08-11] (Adobe Inc. -> Adobe)
Task: {442EA5B1-AB27-42BE-A672-728DD59EB567} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {451BCAFE-2584-49E0-85D5-F87A74C6118A} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4A205583-53E3-4BC3-9085-96304063B20E} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4D41ABC6-793E-4F80-87C8-1F0A14851855} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-12-17] (Google Inc -> Google Inc.)
Task: {54C740E1-5C0C-4769-A730-E8013AA0FE1C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {57476CB6-5E33-49F2-BB50-221A73C79D37} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653864 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5B75AAAE-63E8-4E24-A253-0CBA72672C98} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-08-11] (Adobe Inc. -> Adobe)
Task: {5E565194-FE57-4C33-B824-31C057223372} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-09-19] (AVAST Software s.r.o. -> AVAST Software)
Task: {6CE37B9E-CBC6-4090-B95B-0A9583674F8E} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-28] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6FF31F0F-4CF2-4A15-B2C0-1B0618A59AF3} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3310688 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8BAD63E2-1057-48BE-97BF-BCC93955E77C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {97C36FD6-2B0E-4D62-9033-758381A35176} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9C68EDFD-2C09-4830-9588-C27F217BD6F3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9E03B366-083F-49A3-92DC-ABFF3CDDCCF4} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
Task: {ACD0023A-B9E1-4A93-84A5-D6A729130E06} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\6.4.0\Scheduler.exe [149776 2019-04-23] (IObit Information Technology -> IObit)
Task: {B6860D2F-3F96-4BDD-BA81-3139CF40E9B7} - System32\Tasks\JetBoost_AutoUpdate => C:\Program Files (x86)\BlueSprig\JetBoost\AutoUpdate.exe [724336 2012-11-27] (BlueSprig, Inc. -> BlueSprig)
Task: {BE70AB61-390F-4557-B3BE-19EFF44BD000} - System32\Tasks\Microsoft\Windows\WDI\SrvHost => rundll32.exe winscomrssrv.dll,SrvMainHost <==== ATTENTION
Task: {BFB7F735-2302-4A9F-B84D-CAFCF1CF8102} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {D0B570BB-97E9-4EEF-B8DC-A98CA9AC33C9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-12-17] (Google Inc -> Google Inc.)
Task: {D437C50F-B779-45DD-B672-934740FEE3FA} - System32\Tasks\Driver Booster SkipUAC (Aldrin-PC) => C:\Program Files (x86)\IObit\Driver Booster\6.4.0\DriverBooster.exe [7610128 2019-04-24] (IObit Information Technology -> IObit)
Task: {E0715707-BC5D-4C97-8379-0EA777025135} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-28] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E4CFD28E-BE7C-4FFE-B6A5-115DB882A0E3} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E657A872-9E3E-4F5A-9F41-CE69C9416F7A} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E8E1D409-33F9-4CE3-8815-66471C5E4C38} - System32\Tasks\gxx speed launcher => C:\Program Files (x86)\Garena\Garena\Garena.exe [457600 2019-09-26] (Garena Online Pte Ltd -> Garena Online )
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\CCleanerSkipUAC" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\gxx speed launcher" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\Intelligent StandbyList Cleaner" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(12): schtasks.exe -> /Change /TN "\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(13): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(14): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(15): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(16): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {EF7C8E8C-4588-44B7-BD37-27379C483FF1} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(17): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE
Task: {F11D2907-4076-4F9B-A405-9D0E13A5B491} - System32\Tasks\DB Bigupgrade Task ( One Time ) => C:\Program Files (x86)\IObit\Driver Booster\6.4.0\BigUpgrade2.exe [3781392 2019-06-19] (IObit Information Technology -> IObit)
Task: {F7244940-5D71-4C3D-9FCF-CCF8302769A0} - System32\Tasks\Intelligent StandbyList Cleaner => C:\Users\Aldrin-PC\Desktop\Fortnite X FPS Pack by Panj\Optimizations\ISLC v1.0.1.6\Intelligent standby list cleaner ISLC.exe
Task: {F9A31003-D5C1-412C-948D-83E54C0A02D1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16585328 2019-08-15] (Piriform Software Ltd -> Piriform Ltd)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
Task: C:\WINDOWS\Tasks\Search Powered by Yahoo! linil.job => Wscript exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{2cf8b886-a9f4-4784-9341-f2ac0a079683}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://ph.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_sphwjfsv21_19_06_ssg3518bd¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dph%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0ByEtB0EzyzytCtBzytCtDtB0CyDyC0DtN0D0Tzu0StByDzytAtN1L2XzuyEtFtAzytFtDtFyBtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCyByDzy0F0D0F0EtGyD0B0E0BtGyC0CyE0AtGyDyD0D0FtGtC0CyCtCtB0FtCtByDyB0E0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtAtBtAzy1RyEzztGzzyB1R1OtGyEyC1TyDtG1TtCyByEtGtA1O1TtCzyyByEyEtCyByEtD2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDyEzyyEzyyCtCyCyB%26cr%3D818073690%26a%3Dwbf_sphwjfsv21_19_06_ssg3518bd%26os_ver%3D10.0%26os%3DWindows%2B10%2BEnterprise
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://ph.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_sphwjfsv21_19_06_ssg3518bd¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dph%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0ByEtB0EzyzytCtBzytCtDtB0CyDyC0DtN0D0Tzu0StByDzytAtN1L2XzuyEtFtAzytFtDtFyBtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCyByDzy0F0D0F0EtGyD0B0E0BtGyC0CyE0AtGyDyD0D0FtGtC0CyCtCtB0FtCtByDyB0E0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtAtBtAzy1RyEzztGzzyB1R1OtGyEyC1TyDtG1TtCyByEtGtA1O1TtCzyyByEyEtCyByEtD2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDyEzyyEzyyCtCyCyB%26cr%3D818073690%26a%3Dwbf_sphwjfsv21_19_06_ssg3518bd%26os_ver%3D10.0%26os%3DWindows%2B10%2BEnterprise
HKU\S-1-5-21-2818051394-376047789-3379889015-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://ph.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_sphwjfsv21_19_06_ssg3518bd¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dph%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0ByEtB0EzyzytCtBzytCtDtB0CyDyC0DtN0D0Tzu0StByDzytAtN1L2XzuyEtFtAzytFtDtFyBtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCyByDzy0F0D0F0EtGyD0B0E0BtGyC0CyE0AtGyDyD0D0FtGtC0CyCtCtB0FtCtByDyB0E0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtAtBtAzy1RyEzztGzzyB1R1OtGyEyC1TyDtG1TtCyByEtGtA1O1TtCzyyByEyEtCyByEtD2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDyEzyyEzyyCtCyCyB%26cr%3D818073690%26a%3Dwbf_sphwjfsv21_19_06_ssg3518bd%26os_ver%3D10.0%26os%3DWindows%2B10%2BEnterprise
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://ph.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_cigdxjtnqwo_18_51_02¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dph%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0ByEtB0EzyzytCtBzytCtDtB0CyDyC0DtN0D0Tzu0StByDyEyEtN1L2XzuyEtFtAtCtFtDtFyByDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCtC0AtBtD0F0ByBtGyEtD0EyEtG0CyD0FzytGyCzz0B0DtGzz0CyCtByEyBtAtAtD0B0FtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtAtBtAzy1RyEzztGzzyB1R1OtGyEyC1TyDtG1TtCyByEtGtA1O1TtCzyyByEyEtCyByEtD2QtN0A0LzuyEtN1B2Z1V1T1S1NzutBtDtDzytDtN1Q2Z1B1P1RzutCyDyEyDtBtByCzztDyB%26cr%3D1665552372%26a%3Dwbf_cigdxjtnqwo_18_51_02%26os_ver%3D10.0%26os%3DWindows%2B10%2BEnterprise&p={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://ph.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_cigdxjtnqwo_18_51_02¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dph%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0ByEtB0EzyzytCtBzytCtDtB0CyDyC0DtN0D0Tzu0StByDyEyEtN1L2XzuyEtFtAtCtFtDtFyByDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCtC0AtBtD0F0ByBtGyEtD0EyEtG0CyD0FzytGyCzz0B0DtGzz0CyCtByEyBtAtAtD0B0FtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtAtBtAzy1RyEzztGzzyB1R1OtGyEyC1TyDtG1TtCyByEtGtA1O1TtCzyyByEyEtCyByEtD2QtN0A0LzuyEtN1B2Z1V1T1S1NzutBtDtDzytDtN1Q2Z1B1P1RzutCyDyEyDtBtByCzztDyB%26cr%3D1665552372%26a%3Dwbf_cigdxjtnqwo_18_51_02%26os_ver%3D10.0%26os%3DWindows%2B10%2BEnterprise&p={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://ph.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_cigdxjtnqwo_18_51_02¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dph%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0ByEtB0EzyzytCtBzytCtDtB0CyDyC0DtN0D0Tzu0StByDyEyEtN1L2XzuyEtFtAtCtFtDtFyByDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCtC0AtBtD0F0ByBtGyEtD0EyEtG0CyD0FzytGyCzz0B0DtGzz0CyCtByEyBtAtAtD0B0FtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtAtBtAzy1RyEzztGzzyB1R1OtGyEyC1TyDtG1TtCyByEtGtA1O1TtCzyyByEyEtCyByEtD2QtN0A0LzuyEtN1B2Z1V1T1S1NzutBtDtDzytDtN1Q2Z1B1P1RzutCyDyEyDtBtByCzztDyB%26cr%3D1665552372%26a%3Dwbf_cigdxjtnqwo_18_51_02%26os_ver%3D10.0%26os%3DWindows%2B10%2BEnterprise&p={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://ph.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_cigdxjtnqwo_18_51_02¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dph%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0ByEtB0EzyzytCtBzytCtDtB0CyDyC0DtN0D0Tzu0StByDyEyEtN1L2XzuyEtFtAtCtFtDtFyByDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCtC0AtBtD0F0ByBtGyEtD0EyEtG0CyD0FzytGyCzz0B0DtGzz0CyCtByEyBtAtAtD0B0FtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtAtBtAzy1RyEzztGzzyB1R1OtGyEyC1TyDtG1TtCyByEtGtA1O1TtCzyyByEyEtCyByEtD2QtN0A0LzuyEtN1B2Z1V1T1S1NzutBtDtDzytDtN1Q2Z1B1P1RzutCyDyEyDtBtByCzztDyB%26cr%3D1665552372%26a%3Dwbf_cigdxjtnqwo_18_51_02%26os_ver%3D10.0%26os%3DWindows%2B10%2BEnterprise&p={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2818051394-376047789-3379889015-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://ph.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_sphwjfsv21_19_06_ssg3518bd¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dph%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0ByEtB0EzyzytCtBzytCtDtB0CyDyC0DtN0D0Tzu0StByDzytAtN1L2XzuyEtFtAzytFtDtFyBtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCyByDzy0F0D0F0EtGyD0B0E0BtGyC0CyE0AtGyDyD0D0FtGtC0CyCtCtB0FtCtByDyB0E0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtAtBtAzy1RyEzztGzzyB1R1OtGyEyC1TyDtG1TtCyByEtGtA1O1TtCzyyByEyEtCyByEtD2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDyEzyyEzyyCtCyCyB%26cr%3D818073690%26a%3Dwbf_sphwjfsv21_19_06_ssg3518bd%26os_ver%3D10.0%26os%3DWindows%2B10%2BEnterprise&p={searchTerms}
SearchScopes: HKU\S-1-5-21-2818051394-376047789-3379889015-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://ph.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_sphwjfsv21_19_06_ssg3518bd¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dph%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0ByEtB0EzyzytCtBzytCtDtB0CyDyC0DtN0D0Tzu0StByDzytAtN1L2XzuyEtFtAzytFtDtFyBtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StCyByDzy0F0D0F0EtGyD0B0E0BtGyC0CyE0AtGyDyD0D0FtGtC0CyCtCtB0FtCtByDyB0E0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtAtBtAzy1RyEzztGzzyB1R1OtGyEyC1TyDtG1TtCyByEtGtA1O1TtCzyyByEyEtCyByEtD2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDyEzyyEzyyCtCyCyB%26cr%3D818073690%26a%3Dwbf_sphwjfsv21_19_06_ssg3518bd%26os_ver%3D10.0%26os%3DWindows%2B10%2BEnterprise&p={searchTerms}
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2019-05-09] (Tonec Inc. -> Internet Download Manager, Tonec Inc.)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-09-26] (McAfee, LLC -> McAfee, Inc.)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> D:\Microsoft Office\Office16\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2019-05-09] (Tonec Inc. -> Internet Download Manager, Tonec Inc.)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-08-25] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-09-26] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-08-25] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - D:\Microsoft Office\Office16\MSOSB.DLL [2016-05-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-05-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - D:\Microsoft Office\Office16\MSOSB.DLL [2016-05-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-05-20] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF DefaultProfile: rvnxz8ze.default
FF ProfilePath: C:\Users\Aldrin-PC\AppData\Roaming\Mozilla\Firefox\Profiles\rvnxz8ze.default [2019-08-11]
FF Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\Aldrin-PC\AppData\Roaming\Mozilla\Firefox\Profiles\rvnxz8ze.default\Extensions\[email protected] [2019-05-03]
FF Extension: (Avast Online Security) - C:\Users\Aldrin-PC\AppData\Roaming\Mozilla\Firefox\Profiles\rvnxz8ze.default\Extensions\[email protected] [2019-05-03]
FF ProfilePath: C:\Users\Aldrin-PC\AppData\Roaming\Mozilla\Firefox\Profiles\lxhf73bk.default-release [2019-10-04]
FF Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\Aldrin-PC\AppData\Roaming\Mozilla\Firefox\Profiles\lxhf73bk.default-release\Extensions\[email protected] [2019-08-18]
FF Extension: (Avast Online Security) - C:\Users\Aldrin-PC\AppData\Roaming\Mozilla\Firefox\Profiles\lxhf73bk.default-release\Extensions\[email protected] [2019-05-03]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-09-26]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Internet Download Manager\idmmzcc3.xpi
FF Extension: (IDM Integration Module) - C:\Program Files (x86)\Internet Download Manager\idmmzcc3.xpi [2019-05-11] [UpdateUrl:hxxps://data.internetdownloadmanager.com/idmmzcc3/update.json]
FF HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\SeaMonkey\Extensions: [[email protected]] - C:\Users\Aldrin-PC\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Aldrin-PC\AppData\Roaming\IDM\idmmzcc5 [2019-10-01] [Legacy] [not signed]
FF HKU\S-1-5-21-2818051394-376047789-3379889015-1001\...\SeaMonkey\Extensions: [[email protected]] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [Legacy]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> D:\Microsoft Office\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-08-25] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-08-25] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office16\NPSPWRAP.DLL [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-03] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-03] (Google Inc -> Google LLC)
FF Plugin HKU\S-1-5-21-2818051394-376047789-3379889015-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\Aldrin-PC\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2019-06-24] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
Chrome:
=======
CHR NewTab: Default -> Active:"chrome-extension://mfddfiajfagodidhokmanlcppkiojklm/start/index.html"
CHR DefaultSearchURL: Default -> hxxp://selected-search.com/search?q={searchTerms}&
CHR DefaultSearchKeyword: Default -> ss
CHR Profile: C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default [2019-10-04]
CHR DownloadDir: D:\Downloads
CHR Extension: (Google Drive) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-12-17]
CHR Extension: (YouTube) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-12-17]
CHR Extension: (Honey) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2019-08-27]
CHR Extension: (Tampermonkey) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2019-05-10]
CHR Extension: (Stylish - Custom themes for any website) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2019-09-30]
CHR Extension: (AdBlock) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-10-03]
CHR Extension: (Avast Online Security) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-07-16]
CHR Extension: (Charlotte Anime Wallpaper HD Custom New Tab) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfddfiajfagodidhokmanlcppkiojklm [2019-09-13]
CHR Extension: (IDM Integration Module) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2019-10-01]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Kiss Extension) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohkoebkakdaeobjpaoeahekmaeldblkg [2019-04-28]
CHR Extension: (Gmail) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-16]
CHR Extension: (Chrome Media Router) - C:\Users\Aldrin-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-09-11]
CHR HKLM\...\Chrome\Extension: [afgeoapebnkefelmpoepnmjiflidjjce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2019-07-01]
CHR HKLM\...\Chrome\Extension: [oonbcpdabjcggcklopgbdagbfnkhbgbe] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2818051394-376047789-3379889015-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [afgeoapebnkefelmpoepnmjiflidjjce] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2818051394-376047789-3379889015-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2818051394-376047789-3379889015-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oonbcpdabjcggcklopgbdagbfnkhbgbe] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2818051394-376047789-3379889015-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2818051394-376047789-3379889015-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [afgeoapebnkefelmpoepnmjiflidjjce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2019-07-01]
CHR HKLM-x32\...\Chrome\Extension: [oonbcpdabjcggcklopgbdagbfnkhbgbe] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-06-07] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2019-08-19] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 GarenaPlatform; C:\Program Files (x86)\Garena\Garena\2.0.1909.2618\gxxsvc.exe [320512 2019-09-26] (Garena Online Pte Ltd -> Garena Online )
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [206472 2018-10-05] (Logitech Inc -> Logitech Inc.)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [905472 2019-09-26] (McAfee, LLC -> McAfee, Inc.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-28] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-28] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; D:\Origin\OriginClientService.exe [2347824 2019-09-04] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; D:\Origin\OriginWebHelperService.exe [3222320 2019-09-04] (Electronic Arts, Inc. -> Electronic Arts)
S2 pgt_svc; C:\Program Files (x86)\ProxyGate\MainService.exe [2285664 2017-02-22] (GOLD CLICK LIMITED -> Gold Click Ltd) <==== ATTENTION
R2 Pingboosterservice; D:\PingBooster\engine\Pingbooster_service.exe [23552 2018-02-22] (Plan A Software) [File not signed]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2019-04-29] (Even Balance, Inc. -> )
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [253776 2019-07-04] (Razer USA Ltd. -> Razer Inc)
S3 Rockstar Service; D:\Launcher\RockstarService.exe [471696 2019-09-19] (Rockstar Games, Inc. -> Rockstar Games)
R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [532864 2019-07-12] (Razer USA Ltd. -> Razer Inc.)
R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [290352 2019-07-29] (Razer USA Ltd. -> Razer Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 sshd; C:\WINDOWS\System32\OpenSSH\sshd.exe [974848 2019-10-04] (Microsoft Windows -> )
S3 SshdBroker; C:\WINDOWS\System32\SshdBroker.dll [290816 2019-10-04] (Microsoft Windows -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11814232 2019-06-05] (TeamViewer GmbH -> TeamViewer GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WindscribeService; C:\Program Files (x86)\Windscribe\WindscribeService.exe [493232 2019-01-19] (Windscribe Limited -> Windscribe Limited)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [34568 2019-05-23] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 AMDHDAudBusService; C:\WINDOWS\System32\drivers\amdhdaudbus.sys [76704 2019-05-23] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 AMDPCIDev; C:\WINDOWS\System32\drivers\AMDPCIDev.sys [31520 2019-05-23] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R0 amdpsp; C:\WINDOWS\System32\drivers\amdpsp.sys [146304 2019-05-23] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
R0 amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [93240 2019-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R0 amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [33336 2019-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37616 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-09-30] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [276952 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [171520 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-09-30] (AVAST Software s.r.o. -> AVAST Software)
S3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [111112 2017-11-17] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
S3 DFX11_1; C:\WINDOWS\system32\drivers\dfx11_1x64.sys [28008 2018-03-09] (Power Technology -> Windows ® Win 7 DDK provider)
S3 DFX12; C:\WINDOWS\system32\drivers\dfx12x64.sys [39048 2018-03-09] (Power Technology -> Windows ® Win 7 DDK provider)
R3 EuMusDesignVirtualAudioCableWdm; C:\WINDOWS\System32\drivers\vrtaucbl.sys [210024 2019-09-15] (Muzychenko Evgenii Viktorovich, IP -> Eugene V. Muzychenko)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2018-12-17] (Martin Malik - REALiX -> REALiX)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-22] (Logitech -> Logitech)
R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2018-10-05] (Logitech Inc -> Logitech Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_830a0263f2ee97ce\nvlddmkm.sys [22370696 2019-09-07] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1154336 2019-07-10] (Realtek Semiconductor Corp. -> Realtek )
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited -> The OpenVPN Project)
S3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\vmdrv.sys [45408 2018-03-15] (Voicemod Sociedad Limitada -> Windows ® Win 7 DDK provider)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46688 2019-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [350136 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
S3 X6va067; C:\WINDOWS\SysWOW64\Drivers\X6va067 [29512 2019-10-02] (Wiselogic Co., Ltd. -> )
S3 xhunter1; C:\WINDOWS\xhunter1.sys [74552 2019-09-21] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
U4 napagent; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-04 14:42 - 2019-10-04 14:42 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeFixer
2019-10-04 14:42 - 2019-10-04 14:42 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\FreeFixer
2019-10-04 14:42 - 2019-10-04 14:42 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\FreeFixer
2019-10-04 14:42 - 2019-10-04 14:42 - 000000000 ____D C:\Program Files\FreeFixer
2019-10-04 14:39 - 2019-10-04 14:48 - 000000000 ____D C:\FRST
2019-10-04 14:38 - 2019-10-04 14:38 - 001359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebManagement.exe
2019-10-04 14:38 - 2019-10-04 14:38 - 000960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdp.dll
2019-10-04 14:38 - 2019-10-04 14:38 - 000637952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdp.dll
2019-10-04 14:38 - 2019-10-04 14:38 - 000516648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftWebDriver.exe
2019-10-04 14:38 - 2019-10-04 14:38 - 000393768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftWebDriver.exe
2019-10-04 14:38 - 2019-10-04 14:38 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationREST.dll
2019-10-04 14:38 - 2019-10-04 14:38 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshdBroker.dll
2019-10-04 14:38 - 2019-10-04 14:38 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperToolsSvc.exe
2019-10-04 14:38 - 2019-10-04 14:38 - 000111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshdPinAuthLsa.dll
2019-10-04 14:38 - 2019-10-04 14:38 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperSetupCSP.dll
2019-10-04 14:38 - 2019-10-04 14:38 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevToolsLauncher.exe
2019-10-04 14:38 - 2019-10-04 14:38 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvc.dll
2019-10-04 14:38 - 2019-10-04 14:38 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeployUtil.exe
2019-10-04 14:38 - 2019-10-04 14:38 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvcapi.dll
2019-10-04 14:38 - 2019-10-04 14:38 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperTools.ProxyStub.dll
2019-10-04 14:38 - 2019-10-04 14:38 - 000000000 __RSD C:\WINDOWS\SysWOW64\WindowsDevicePortal
2019-10-04 14:38 - 2019-10-04 14:38 - 000000000 __RSD C:\WINDOWS\system32\WindowsDevicePortal
2019-10-04 14:38 - 2019-10-04 14:38 - 000000000 ___RD C:\WINDOWS\WebManagement
2019-10-04 10:27 - 2007-10-07 19:49 - 000032768 _____ () C:\Users\Aldrin-PC\Desktop\TimerResolution.exe
2019-10-04 08:38 - 2019-10-04 08:38 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\EasyAntiCheat
2019-10-03 20:35 - 2019-10-04 14:31 - 000002572 _____ C:\WINDOWS\system32\Tasks\gxx speed launcher
2019-10-03 06:48 - 2019-10-03 06:48 - 000000577 _____ C:\Users\Public\Desktop\Rules of Survival.lnk
2019-10-03 06:48 - 2019-10-03 06:48 - 000000577 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rules of Survival.lnk
2019-10-03 06:48 - 2019-10-03 06:48 - 000000577 _____ C:\ProgramData\Desktop\Rules of Survival.lnk
2019-10-02 20:30 - 2019-10-02 20:30 - 000029512 _____ C:\WINDOWS\SysWOW64\Drivers\X6va067
2019-10-02 18:57 - 2019-10-02 18:57 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2019-10-02 18:55 - 2019-09-28 05:15 - 011561728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-10-02 18:55 - 2019-09-28 05:15 - 009936640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-10-02 18:55 - 2019-09-28 05:15 - 001012640 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-10-02 18:55 - 2019-09-28 05:15 - 001012640 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-10-02 18:55 - 2019-09-28 05:15 - 000876448 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-10-02 18:55 - 2019-09-28 05:15 - 000876448 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-10-02 18:55 - 2019-09-28 05:15 - 000447120 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-10-02 18:55 - 2019-09-28 05:15 - 000351888 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-10-02 18:55 - 2019-09-28 05:15 - 000301472 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-10-02 18:55 - 2019-09-28 05:15 - 000301472 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-10-02 18:55 - 2019-09-28 05:15 - 000273312 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-10-02 18:55 - 2019-09-28 05:15 - 000273312 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-10-02 18:55 - 2019-09-28 05:14 - 000676744 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-10-02 18:55 - 2019-09-28 05:14 - 000633224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-10-02 18:55 - 2019-09-28 05:14 - 000544456 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 040445128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 035333888 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 017301248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 014922440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 005358464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 004697288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 002051512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 001726720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443648.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 001551240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 001491144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443648.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 001477512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 001246976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 001140424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 000959416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 000812800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 000659328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-10-02 18:55 - 2019-09-28 05:13 - 000523520 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-10-02 18:55 - 2019-09-28 05:09 - 005002192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-10-02 18:55 - 2019-09-28 05:09 - 004263512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-10-02 18:55 - 2019-09-27 09:27 - 000054700 _____ C:\WINDOWS\system32\nvinfo.pb
2019-10-02 08:05 - 2019-10-02 19:12 - 000029512 _____ C:\WINDOWS\SysWOW64\Drivers\X6va067_2019.10.02.11.30.02
2019-10-02 08:05 - 2019-10-02 08:08 - 000000000 ____D C:\Users\Aldrin-PC\Documents\Cross Fire
2019-10-02 08:02 - 2019-10-02 08:02 - 000000000 ____D C:\Program Files (x86)\GameClub Launcher
2019-10-02 07:51 - 2019-10-02 07:51 - 000001132 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossfire PH.lnk
2019-10-02 07:51 - 2019-10-02 07:51 - 000001120 _____ C:\Users\Public\Desktop\Crossfire PH.lnk
2019-10-02 07:51 - 2019-10-02 07:51 - 000001120 _____ C:\ProgramData\Desktop\Crossfire PH.lnk
2019-10-02 07:41 - 2019-10-02 08:02 - 000000000 ____D C:\Program Files (x86)\Crossfire PH
2019-10-01 20:51 - 2019-10-04 14:42 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\DMCache
2019-10-01 20:51 - 2019-10-04 14:41 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\IDM
2019-10-01 20:51 - 2019-10-01 20:52 - 000000000 ____D C:\Program Files (x86)\Internet Download Manager
2019-10-01 20:51 - 2019-10-01 20:51 - 000001094 _____ C:\Users\Aldrin-PC\Desktop\Internet Download Manager.lnk
2019-10-01 20:51 - 2019-10-01 20:51 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2019-10-01 20:51 - 2019-10-01 20:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2019-10-01 20:51 - 2019-10-01 20:51 - 000000000 ____D C:\ProgramData\IDM
2019-10-01 09:32 - 2019-10-01 18:38 - 000000000 ____D C:\Users\Aldrin-PC\Desktop\Papa
2019-10-01 07:33 - 2019-10-01 07:33 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Prospect
2019-09-30 23:27 - 2019-09-30 23:27 - 000848432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2019-09-30 23:27 - 2019-09-30 23:27 - 000460448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2019-09-30 14:20 - 2019-10-04 14:49 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\uTorrent
2019-09-30 14:20 - 2019-09-30 14:20 - 000000900 _____ C:\Users\Aldrin-PC\Desktop\µTorrent.lnk
2019-09-30 11:27 - 2019-10-04 06:55 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2019-09-30 11:26 - 2019-09-30 11:26 - 000355720 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2019-09-30 11:26 - 2019-09-30 11:26 - 000316528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000276952 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000274456 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000236024 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000209552 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000204824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000171520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000110320 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000083792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000065120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000042736 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000037616 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2019-09-30 11:26 - 2019-09-30 11:26 - 000016304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2019-09-30 09:02 - 2019-09-30 09:02 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\CrashRpt
2019-09-28 15:34 - 2019-09-28 15:35 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2019-09-28 11:02 - 2019-10-04 14:19 - 000436059 ____N C:\WINDOWS\Minidump\100419-14625-01.dmp
2019-09-28 11:02 - 2019-10-04 14:19 - 000000000 ____D C:\WINDOWS\Minidump
2019-09-28 08:10 - 2019-09-28 08:10 - 000000000 ____D C:\Users\Aldrin-PC\Documents\4A Games
2019-09-28 08:09 - 2019-09-28 08:09 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\4A Games
2019-09-27 12:21 - 2019-10-01 08:09 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\osu
2019-09-27 12:21 - 2019-09-27 12:21 - 000002227 _____ C:\Users\Aldrin-PC\Desktop\osu!lazer.lnk
2019-09-27 12:21 - 2019-09-27 12:21 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ppy Pty Ltd
2019-09-27 12:21 - 2019-09-27 12:21 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\osulazer
2019-09-23 14:46 - 2019-09-26 14:37 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Plays
2019-09-23 14:46 - 2019-09-26 14:37 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Plays.tv, Inc
2019-09-23 14:46 - 2019-09-26 14:37 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Plays-ltc
2019-09-23 14:45 - 2019-09-26 14:37 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Plays
2019-09-22 19:38 - 2019-10-04 14:33 - 000000000 ____D C:\Users\Aldrin-PC\AppData\LocalLow\uTorrent
2019-09-22 17:26 - 2019-09-22 17:26 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Axolot Games
2019-09-22 15:29 - 2019-09-22 15:29 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Axolot Games
2019-09-21 22:45 - 2019-09-21 23:00 - 000074552 _____ (Wellbia.com Co., Ltd.) C:\WINDOWS\xhunter1.sys
2019-09-21 22:13 - 2019-09-21 23:04 - 000000000 ____D C:\Users\Aldrin-PC\Documents\Black Desert
2019-09-20 22:50 - 2019-09-20 22:50 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Shooter
2019-09-20 19:09 - 2019-09-20 19:09 - 000001254 _____ C:\Users\Aldrin-PC\Desktop\Razer Cortex.lnk
2019-09-20 19:09 - 2019-09-20 19:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer Cortex
2019-09-20 19:08 - 2019-09-20 19:09 - 000000000 ____D C:\Program Files (x86)\Razer
2019-09-19 21:31 - 2019-09-19 21:31 - 000472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2019-09-19 21:31 - 2019-09-19 21:31 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2019-09-19 21:31 - 2019-09-19 21:31 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2019-09-19 21:31 - 2019-09-19 21:31 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2019-09-19 21:31 - 2019-09-19 21:31 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2019-09-19 21:30 - 2019-09-19 21:42 - 000000000 ____D C:\Users\Aldrin-PC\Documents\GTA San Andreas User Files
2019-09-19 06:21 - 2019-09-19 06:21 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\DeadByDaylight
2019-09-18 18:09 - 2019-09-19 21:11 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2019-09-18 18:09 - 2019-09-18 18:09 - 000000618 _____ C:\Users\Aldrin-PC\Desktop\Rockstar Games Launcher.lnk
2019-09-18 18:09 - 2019-09-18 18:09 - 000000000 ____D C:\ProgramData\Rockstar Games
2019-09-16 15:04 - 2019-09-07 02:26 - 001726400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443630.dll
2019-09-16 15:04 - 2019-09-07 02:26 - 001491336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443630.dll
2019-09-15 20:16 - 2019-09-15 20:16 - 000210024 _____ (Eugene V. Muzychenko) C:\WINDOWS\system32\Drivers\vrtaucbl.sys
2019-09-15 20:16 - 2019-09-15 20:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Audio Cable
2019-09-15 20:16 - 2019-09-15 20:16 - 000000000 ____D C:\Program Files\Virtual Audio Cable
2019-09-15 19:02 - 2019-09-15 19:02 - 000373948 _____ C:\Users\Aldrin-PC\Documents\RecordMorphOutput.wav
2019-09-15 18:53 - 2019-09-15 18:53 - 000002165 _____ C:\Users\Public\Desktop\MorphVOX Pro.lnk
2019-09-15 18:53 - 2019-09-15 18:53 - 000002165 _____ C:\ProgramData\Desktop\MorphVOX Pro.lnk
2019-09-15 18:53 - 2019-09-15 18:53 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Screaming Bee
2019-09-15 18:53 - 2019-09-15 18:53 - 000000000 ____D C:\ProgramData\Screaming Bee
2019-09-15 18:53 - 2019-09-15 18:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Screaming Bee
2019-09-15 18:53 - 2019-09-15 18:53 - 000000000 ____D C:\Program Files (x86)\Screaming Bee
2019-09-14 19:58 - 2019-09-14 19:58 - 000000000 ____D C:\Users\Aldrin-PC\Documents\DeadIslandDE
2019-09-14 19:41 - 2019-09-22 14:42 - 000000000 ____D C:\Users\Aldrin-PC\Desktop\kawaii
2019-09-13 17:33 - 2019-09-13 17:29 - 000835480 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2019-09-13 17:33 - 2019-09-13 17:29 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2019-09-13 17:26 - 2019-09-13 17:26 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 025445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 022626304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 018019328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 008011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 007014912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 005916672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 004857856 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 003817472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-09-13 17:26 - 2019-09-13 17:26 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-09-13 17:26 - 2019-09-13 17:26 - 002494232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 002314440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 001192096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-09-13 17:26 - 2019-09-13 17:26 - 001098928 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000516752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000431448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000362056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-09-13 17:26 - 2019-09-13 17:26 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 009927992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 007902912 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 007582752 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 007261648 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 006516864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 006081744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 005848840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 005762032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 003724800 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 003701248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 003372448 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 002871608 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 002798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 002762296 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 002723840 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 002586816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001999960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001691136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001664168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001633648 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001439232 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001413624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 001261256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001158656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001149200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 001073168 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 001054656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000909736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000822416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000810808 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000804880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 000740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000680976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000676632 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000667272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000637752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000596008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000589600 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000561680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 000541264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000511288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000464696 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000454736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000401208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 000338800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000334936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000267496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthA2dp.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 000223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssrvlic.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaSvc.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000146416 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000141840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tsusbhub.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000120344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000088568 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\LSCSHostPolicy.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddrawex.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddrawex.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\lstelemetry.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ws2ifsl.sys
2019-09-13 17:25 - 2019-09-13 17:25 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-09-13 17:25 - 2019-09-13 17:25 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDKOR.DLL
2019-09-13 17:25 - 2019-09-13 17:25 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe
2019-09-13 17:25 - 2019-09-13 17:25 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2019-09-13 17:25 - 2019-09-13 17:25 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2019-09-10 13:21 - 2019-09-10 13:21 - 000000387 _____ C:\Users\Aldrin-PC\Desktop\Battle.net.lnk
2019-09-09 08:04 - 2019-09-09 08:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch
2019-09-08 17:26 - 2019-09-08 17:26 - 000000000 ____D C:\Program Files (x86)\OneClickFirewall
2019-09-08 17:26 - 2018-03-15 15:20 - 000045408 _____ (Windows ® Win 7 DDK provider) C:\WINDOWS\system32\Drivers\vmdrv.sys
2019-09-07 21:54 - 2019-10-04 14:31 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-09-07 21:54 - 2019-10-04 14:31 - 000002236 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2019-09-07 21:54 - 2019-10-04 06:55 - 000000000 ____D C:\Program Files\CCleaner
2019-09-07 21:54 - 2019-09-07 21:54 - 000000865 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-09-07 21:54 - 2019-09-07 21:54 - 000000865 _____ C:\ProgramData\Desktop\CCleaner.lnk
2019-09-07 21:54 - 2019-09-07 21:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2019-09-07 10:34 - 2019-09-07 10:47 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-09-07 10:33 - 2019-09-07 10:34 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-09-07 10:33 - 2019-09-07 10:33 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-09-07 10:29 - 2019-09-07 10:29 - 019811328 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 007196160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 006408704 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 006236160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 005941760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 005500928 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 005091840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 005013504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 004578816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 004538368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 004481024 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 004348408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 004306944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 003916048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 003750912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 003738376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 003654656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 003637760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 003551232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 003487232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 003243080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002990096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 002956984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002876416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002771520 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002743808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002562048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002490712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002398720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002358584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002258640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002235936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002224952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002190648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002175288 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002147840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002132520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002096128 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002072152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001957000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001954960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001913088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001866064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001845616 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001822720 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001815040 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001788944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001754232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-09-07 10:29 - 2019-09-07 10:29 - 001724928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001716776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001661544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001652536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001651848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001616568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001611576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001555688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001539584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001535288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001531656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001510744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001509728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 001505080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001501496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001488384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001488216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001482256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 001458176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001410048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001393960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001383736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-09-07 10:29 - 2019-09-07 10:29 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001343488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001305608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001301504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001301008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 001297720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001283600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-09-07 10:29 - 2019-09-07 10:29 - 001273344 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001273176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001263104 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001260032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001259008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001244728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001244672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001213240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001185280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 001181696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001178608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001171968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001154952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001138688 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001126400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 001122816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001105480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001101312 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001080832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001079296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001067008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 001043768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001020768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000975360 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000957240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000928776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000913168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000910848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000910336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000892488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000889960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000888832 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000879792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000864768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000842552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000830976 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000829776 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000828216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000827192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000818656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000816440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000813568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000811160 _____ C:\WINDOWS\SysWOW64\locale.nls
2019-09-07 10:29 - 2019-09-07 10:29 - 000811160 _____ C:\WINDOWS\system32\locale.nls
2019-09-07 10:29 - 2019-09-07 10:29 - 000806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000800568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000800048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000797112 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000781912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000777528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000776704 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000775680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000769336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIsoCtnr.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000752792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000741176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000739328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000727752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000679368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000674072 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000666128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000652288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000649016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000639608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000634880 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000633344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000631808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000628400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000626688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000606112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000602224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000593112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000588256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000586760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_9.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000564736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000544576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000531464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000524216 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000515448 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000511488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000511008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000510984 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-09-07 10:29 - 2019-09-07 10:29 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000494904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000488056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000478800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000477712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-09-07 10:29 - 2019-09-07 10:29 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000460288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000442304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000440256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000437776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000437760 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2PGraph.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000428544 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000421376 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\system32\curl.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-09-07 10:29 - 2019-09-07 10:29 - 000415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2019-09-07 10:29 - 2019-09-07 10:29 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DavSyncProvider.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000404992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000401832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000394040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000390456 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\provplatformdesktop.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000386320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000386048 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\SysWOW64\curl.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000376832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webauthn.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000375512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000366184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2PGraph.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000336928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DavSyncProvider.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000316216 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000310072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000300176 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscobj.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000283472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000283264 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000283144 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ConfigWrapper.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngctasks.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000267528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000257848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provplatformdesktop.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000251704 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000248088 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\VideoHandlers.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000231224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVShNotify.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000228664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000220680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000210448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000210400 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscobj.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamingUX.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000202256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2pnetsh.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000199176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000187920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifsutil.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceCenter.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000181560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVDllSurrogate.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\twext.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetpp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000174392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AppvVemgr.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\p2pnetsh.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2P.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000172856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVNice.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000170920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xmllite.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000167136 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000162384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000153912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AppvVfs.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000149512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ulib.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twext.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000147184 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000145720 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000145208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CscMig.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000144376 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000142544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000137528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AppVStrm.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000135480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000135000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwclientres.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000132912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000129848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mup.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000129088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000123920 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000120048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000115120 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000110080 _____ C:\WINDOWS\system32\ResBParser.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000106296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvsetup.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000099712 _____ (Microsoft Corporation) C:\WINDOWS\system32\FsIso.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000098592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compstui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000096032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000093104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmlib.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000087048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Groupinghc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000072816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzautoupdate.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComputerDefaults.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpapi.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coloradapterclient.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000063288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpnotify.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000058825 _____ C:\WINDOWS\system32\srms.dat
2019-09-07 10:29 - 2019-09-07 10:29 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edpnotify.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000046632 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\compact.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2010CustomActions.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInput1_4.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msfs.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000042512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compact.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInputUap.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000037688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncAppvPublishingServer.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInput1_4.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecerts.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000021816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScriptRunner.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fvecerts.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000019984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnlsres.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnlsres.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2019-09-07 10:29 - 2019-09-07 10:29 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwstreamingux.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-09-07 10:29 - 2019-09-07 10:29 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3r.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-09-07 10:29 - 2019-09-07 10:29 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3r.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 007839120 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 007277568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 006226352 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 006162432 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 004551352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 004470784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 004012032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 004009472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 003947520 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 003590672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 003353088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 003327256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 003261440 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 003141120 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 003104768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002870272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002656768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002551096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002466512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002449432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002448384 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002249216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002119168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002113536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 002032640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001884200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConstraintIndex.Search.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001841152 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001761792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001744400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001717776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001686528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001654520 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001635328 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001616824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001608704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001581056 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001505808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001497088 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001480704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 001423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001371648 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001337872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001332736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001259424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 001180160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001094144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001084728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001068560 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001065984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001042944 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-09-07 10:28 - 2019-09-07 10:28 - 001037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 001007120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000977688 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000977408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000905728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-09-07 10:28 - 2019-09-07 10:28 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000863744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000817152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000810496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000808960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000731960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000728576 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000722288 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000706760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000683008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000642208 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_9.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2019-09-07 10:28 - 2019-09-07 10:28 - 000531976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2019-09-07 10:28 - 2019-09-07 10:28 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000481592 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000478264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2019-09-07 10:28 - 2019-09-07 10:28 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\webauthn.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000441360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000435728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000425264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000411128 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000343104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000336960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000296976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbaudio2.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000252944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApproveChildRequest.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000237880 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000214032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutil.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000193848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000182288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000180536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000180240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ulib.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000157752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000149504 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000142136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvsetup.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds_ps.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2019-09-07 10:28 - 2019-09-07 10:28 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000088488 _____ (Microsoft Corporation) C:\WINDOWS\system32\coloradapterclient.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo-overrides.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000065064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000055304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInputUap.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000047200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\devauthe.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2019-09-07 10:28 - 2019-09-07 10:28 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsldr.exe
2019-09-07 10:28 - 2019-09-07 10:28 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000023352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\isapnp.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000019256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msisadrv.sys
2019-09-07 10:28 - 2019-09-07 10:28 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-09-07 10:28 - 2019-09-07 10:28 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-09-07 10:25 - 2019-09-07 10:25 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-09-07 10:25 - 2019-09-07 10:25 - 000000000 ____D C:\Program Files\MSBuild
2019-09-07 10:25 - 2019-09-07 10:25 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2019-09-07 10:25 - 2019-09-07 10:25 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-09-07 10:24 - 2019-09-07 10:24 - 001166488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-09-07 10:24 - 2019-09-07 10:24 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-09-07 10:24 - 2019-09-07 10:24 - 000124568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-09-07 10:24 - 2019-09-07 10:24 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-09-07 10:24 - 2019-09-07 10:24 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-09-07 10:24 - 2019-09-07 10:24 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-09-07 10:13 - 2019-09-07 10:13 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER
2019-09-06 23:53 - 2019-09-07 02:40 - 000000000 ____D C:\Users\Aldrin-PC\Desktop\SLAM
2019-09-06 23:53 - 2019-09-06 23:53 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\SLAM
2019-09-06 23:24 - 2019-09-07 03:00 - 000000000 ____D C:\Users\Aldrin-PC\Documents\Audacity
2019-09-06 23:15 - 2019-09-07 03:00 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\audacity
2019-09-06 23:15 - 2019-09-06 23:15 - 000001088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2019-09-06 23:15 - 2019-09-06 23:15 - 000001076 _____ C:\Users\Public\Desktop\Audacity.lnk
2019-09-06 23:15 - 2019-09-06 23:15 - 000001076 _____ C:\ProgramData\Desktop\Audacity.lnk
2019-09-06 23:15 - 2019-09-06 23:15 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Audacity
2019-09-06 23:14 - 2019-09-06 23:15 - 000000000 ____D C:\Program Files (x86)\Audacity
2019-09-06 21:05 - 2019-10-04 14:31 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-06 21:05 - 2019-10-04 14:31 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-06 21:05 - 2019-10-04 14:31 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-06 21:05 - 2019-10-04 14:31 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-06 21:05 - 2019-10-04 14:31 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-06 21:05 - 2019-10-04 14:31 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-06 21:05 - 2019-10-04 14:31 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-06 21:05 - 2019-10-04 14:31 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-06 21:05 - 2019-10-04 14:31 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-06 21:05 - 2019-10-04 14:31 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-09-06 21:05 - 2019-09-05 18:50 - 002843120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2019-09-06 21:05 - 2019-09-05 18:50 - 002206704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2019-09-06 19:36 - 2019-10-04 14:31 - 000002706 _____ C:\WINDOWS\system32\Tasks\Intelligent StandbyList Cleaner
2019-09-06 19:00 - 2019-09-06 19:00 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-09-06 18:58 - 2019-10-04 14:38 - 000840848 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-09-06 18:58 - 2019-10-04 14:32 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-09-06 18:58 - 2019-10-04 14:32 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-09-06 18:58 - 2019-10-04 14:31 - 000003348 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-09-06 18:58 - 2019-10-04 14:31 - 000003124 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-09-06 18:58 - 2019-09-06 18:58 - 000003780 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier
2019-09-06 18:58 - 2019-09-06 18:58 - 000003464 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater
2019-09-06 18:58 - 2019-09-06 18:58 - 000003400 _____ C:\WINDOWS\system32\Tasks\Search Powered by Yahoo! linil
2019-09-06 18:58 - 2019-09-06 18:58 - 000002918 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2818051394-376047789-3379889015-1001
2019-09-06 18:58 - 2019-09-06 18:58 - 000002656 _____ C:\WINDOWS\system32\Tasks\DB Bigupgrade Task ( One Time )
2019-09-06 18:58 - 2019-09-06 18:58 - 000002634 _____ C:\WINDOWS\system32\Tasks\Driver Booster Scheduler
2019-09-06 18:58 - 2019-09-06 18:58 - 000002484 _____ C:\WINDOWS\system32\Tasks\JetBoost_AutoUpdate
2019-09-06 18:58 - 2019-09-06 18:58 - 000002468 _____ C:\WINDOWS\system32\Tasks\Driver Booster SkipUAC (Aldrin-PC)
2019-09-06 18:58 - 2019-09-06 18:58 - 000000412 __RSH C:\ProgramData\ntuser.pol
2019-09-06 18:58 - 2019-09-06 18:58 - 000000020 ___SH C:\Users\Aldrin-PC\ntuser.ini
2019-09-06 18:58 - 2019-09-06 18:58 - 000000000 ____D C:\WINDOWS\system32\Tasks\SyncVersion
2019-09-06 18:58 - 2019-09-06 18:58 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-2818051394-376047789-3379889015-1001
2019-09-06 18:58 - 2019-09-06 18:58 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lobem
2019-09-06 18:58 - 2019-09-06 18:58 - 000000000 ____D C:\WINDOWS\system32\Tasks\{0281EAC2-EF5B-54A2-2C56-689DC260FCAC}
2019-09-06 18:57 - 2019-09-06 18:58 - 000011433 _____ C:\WINDOWS\diagwrn.xml
2019-09-06 18:57 - 2019-09-06 18:58 - 000011433 _____ C:\WINDOWS\diagerr.xml
2019-09-06 18:52 - 2019-03-19 12:46 - 000001105 _____ C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-09-06 18:51 - 2019-09-30 10:31 - 000000000 ____D C:\Users\Aldrin-PC
2019-09-06 18:51 - 2019-09-06 18:54 - 000000000 ____D C:\Users\Administrator
2019-09-06 18:51 - 2019-03-19 12:46 - 000001105 _____ C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-09-06 18:50 - 2019-09-06 18:50 - 000000000 ____D C:\ProgramData\USOShared
2019-09-06 18:50 - 2019-06-12 09:29 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-09-06 18:47 - 2019-10-04 14:32 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-09-06 18:47 - 2019-09-13 17:33 - 000443960 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-09-06 17:09 - 2019-10-04 14:37 - 000000000 ___DC C:\WINDOWS\Panther
2019-09-06 17:05 - 2019-09-06 17:09 - 000000036 _____ C:\WINDOWS\progress.ini
2019-09-06 15:18 - 2019-09-06 18:58 - 000000000 ___HD C:\$GetCurrent
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-04 14:40 - 2019-03-19 12:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-04 14:39 - 2019-03-19 12:50 - 000000000 ____D C:\WINDOWS\INF
2019-10-04 14:38 - 2019-03-19 14:21 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2019-10-04 14:38 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\SystemApps
2019-10-04 14:38 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-10-04 14:38 - 2018-12-18 14:46 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Packages
2019-10-04 14:37 - 2018-12-30 12:35 - 000000000 ____D C:\ProgramData\NVIDIA
2019-10-04 14:37 - 2018-12-23 21:11 - 000000000 ____D C:\ProgramData\boost_interprocess
2019-10-04 14:33 - 2019-03-22 16:12 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\BitTorrentHelper
2019-10-04 14:33 - 2019-02-07 22:49 - 000000000 ____D C:\ProgramData\Origin
2019-10-04 14:32 - 2019-06-08 12:49 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-10-04 14:32 - 2019-03-19 12:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-04 14:26 - 2019-07-10 17:42 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\CC
2019-10-04 10:27 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-10-04 10:26 - 2019-01-19 21:43 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Discord
2019-10-04 08:33 - 2019-08-29 07:51 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\osu!
2019-10-03 22:51 - 2019-03-19 12:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-10-03 18:28 - 2019-04-19 10:20 - 000000000 ____D C:\Users\Aldrin-PC\Documents\Assassin's Creed Unity
2019-10-03 18:10 - 2019-02-07 22:49 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Origin
2019-10-03 13:16 - 2019-06-28 07:52 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\GameAnalytics
2019-10-03 12:42 - 2019-05-15 19:48 - 000000000 ____D C:\Users\Aldrin-PC\Desktop\archie
2019-10-03 06:42 - 2019-03-02 13:07 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Ubisoft Game Launcher
2019-10-03 01:23 - 2018-12-17 23:23 - 000000000 ____D C:\Program Files (x86)\Google
2019-10-02 23:02 - 2019-03-19 12:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-02 18:57 - 2018-12-30 12:32 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-10-02 06:53 - 2018-12-18 14:30 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-01 22:01 - 2019-05-07 12:48 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Bluestacks
2019-10-01 20:23 - 2018-12-18 14:49 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\D3DSCache
2019-10-01 18:13 - 2019-05-07 15:36 - 000000000 ____D C:\IdentityV
2019-10-01 09:23 - 2019-05-03 14:55 - 000000000 ____D C:\ProgramData\AVAST Software
2019-09-30 19:24 - 2018-12-18 08:19 - 000741432 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2019-09-30 13:17 - 2019-04-18 23:45 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\slobs-client
2019-09-30 11:26 - 2019-03-19 12:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-09-30 10:45 - 2019-05-07 12:48 - 000000000 ____D C:\Users\Public\BlueStacks
2019-09-30 10:31 - 2019-05-07 19:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tencent Software
2019-09-30 10:31 - 2019-05-07 19:46 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Tencent
2019-09-30 10:29 - 2019-05-07 11:38 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Nox
2019-09-28 19:26 - 2019-06-09 13:27 - 000000000 ____D C:\Program Files (x86)\ProxyGate
2019-09-28 09:34 - 2019-06-08 07:50 - 000000000 ____D C:\Program Files\Cheat Engine 6.8.3
2019-09-27 12:21 - 2018-12-20 03:26 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\SquirrelTemp
2019-09-27 00:13 - 2019-08-09 10:08 - 000000000 ____D C:\Users\Aldrin-PC\Desktop\All anime quotes
2019-09-24 19:31 - 2019-08-19 09:34 - 000000000 ____D C:\Users\Aldrin-PC\Desktop\Sad quotes
2019-09-23 19:17 - 2019-07-29 17:47 - 000000000 ____D C:\Program Files (x86)\Rockstar Games
2019-09-23 19:16 - 2019-07-29 17:47 - 000000000 ____D C:\Program Files\Rockstar Games
2019-09-22 17:29 - 2018-12-19 18:06 - 000000000 ____D C:\Users\Aldrin-PC\Documents\My Games
2019-09-21 22:44 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\System
2019-09-21 15:54 - 2018-12-18 17:01 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\.minecraft
2019-09-21 15:35 - 2019-05-05 18:37 - 000000000 ____D C:\Program Files\Streamlabs OBS
2019-09-21 13:26 - 2018-12-31 10:10 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\CrashDumps
2019-09-21 12:06 - 2018-12-18 18:47 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Battle.net
2019-09-20 19:21 - 2018-12-18 21:20 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Razer
2019-09-20 19:09 - 2018-12-18 21:05 - 000000000 ____D C:\ProgramData\Razer
2019-09-20 18:55 - 2019-04-24 20:23 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\NVIDIA Corporation
2019-09-20 13:33 - 2019-08-31 09:31 - 000000000 ____D C:\Users\Aldrin-PC\Desktop\used quotes
2019-09-19 21:30 - 2018-12-23 22:08 - 000000000 ____D C:\Users\Aldrin-PC\Documents\Rockstar Games
2019-09-19 05:02 - 2018-12-17 23:26 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-19 05:02 - 2018-12-17 23:26 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-09-19 05:02 - 2018-12-17 23:26 - 000002260 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2019-09-18 18:09 - 2018-12-23 22:08 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Rockstar Games
2019-09-18 18:09 - 2018-12-17 23:45 - 000000000 ____D C:\ProgramData\Package Cache
2019-09-16 20:17 - 2019-04-24 20:23 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\NVIDIA
2019-09-16 11:09 - 2019-05-11 16:50 - 000000000 ____D C:\Users\Aldrin-PC\Documents\Sound recordings
2019-09-13 20:27 - 2019-05-06 08:20 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\BattlEye
2019-09-13 17:38 - 2018-12-18 14:46 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-09-13 17:38 - 2018-12-18 14:46 - 000000000 ___RD C:\Users\Aldrin-PC\3D Objects
2019-09-13 17:32 - 2019-03-19 12:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-09-13 17:32 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-09-13 17:32 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-09-13 17:28 - 2019-03-19 12:37 - 000000000 ____D C:\WINDOWS\servicing
2019-09-12 14:21 - 2018-12-20 03:24 - 000000000 ____D C:\Users\Aldrin-PC\Documents\Overwatch
2019-09-09 02:06 - 2018-12-18 11:48 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-09-09 02:03 - 2018-12-18 11:48 - 134272480 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-09-09 00:22 - 2018-12-17 23:03 - 000000000 ____D C:\ProgramData\Packages
2019-09-08 23:39 - 2018-12-18 18:47 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Blizzard Entertainment
2019-09-08 23:39 - 2018-12-18 18:32 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\Blizzard
2019-09-08 17:34 - 2019-05-02 22:19 - 000000000 ____D C:\ProgramData\Wondershare Filmora
2019-09-07 11:55 - 2019-08-04 23:14 - 000000000 ____D C:\Users\Aldrin-PC\AppData\LocalLow\Mozilla
2019-09-07 10:47 - 2019-08-26 21:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windscribe
2019-09-07 10:47 - 2019-07-20 21:59 - 000000000 ____D C:\WINDOWS\SysWOW64\Tencent
2019-09-07 10:47 - 2019-07-10 16:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative Destruction
2019-09-07 10:47 - 2019-06-23 19:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-09-07 10:47 - 2019-06-18 19:02 - 000000000 ____D C:\Program Files\UNP
2019-09-07 10:47 - 2019-06-08 07:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.8.3
2019-09-07 10:47 - 2019-05-07 09:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Hacker 2
2019-09-07 10:47 - 2019-05-01 20:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetBoost
2019-09-07 10:47 - 2019-04-25 23:41 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2019-09-07 10:47 - 2019-04-24 20:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-09-07 10:47 - 2019-04-24 19:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 6
2019-09-07 10:47 - 2019-04-05 22:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Command and Conquer Generals and Zero Hour
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\system32\spool
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\ServiceState
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\Registration
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\Help
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\Program Files\Common Files\System
2019-09-07 10:47 - 2019-03-19 12:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-09-07 10:47 - 2019-03-19 12:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-09-07 10:47 - 2019-03-06 21:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6
2019-09-07 10:47 - 2019-02-22 10:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2019-09-07 10:47 - 2019-02-08 10:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2019-09-07 10:47 - 2019-02-07 07:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016
2019-09-07 10:47 - 2019-02-07 07:43 - 000000000 ____D C:\WINDOWS\SHELLNEW
2019-09-07 10:47 - 2019-01-13 16:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft
2019-09-07 10:47 - 2018-12-26 21:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2019-09-07 10:47 - 2018-12-19 21:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-09-07 10:47 - 2018-12-18 18:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2019-09-07 10:47 - 2018-12-17 23:15 - 000000000 ____D C:\WINDOWS\system32\AMD
2019-09-07 10:47 - 2018-09-15 15:33 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-09-07 10:47 - 2018-09-15 15:33 - 000000000 ____D C:\WINDOWS\system32\Catroot2.bak
2019-09-07 10:46 - 2018-09-15 15:33 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2019-09-07 10:46 - 2018-09-15 15:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2019-09-07 10:34 - 2019-05-05 23:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2019-09-07 10:34 - 2019-05-02 22:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2019-09-07 10:34 - 2018-12-30 12:35 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-09-07 10:34 - 2018-12-23 21:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garena
2019-09-07 10:34 - 2018-12-17 23:44 - 000000000 ____D C:\Program Files\Realtek
2019-09-07 10:32 - 2019-03-19 14:23 - 000000000 ___SD C:\WINDOWS\system32\AppV
2019-09-07 10:32 - 2019-03-19 14:23 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-09-07 10:32 - 2019-03-19 12:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-09-07 10:32 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\TextInput
2019-09-07 10:32 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2019-09-07 10:32 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2019-09-07 10:32 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-09-07 10:32 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-09-07 10:32 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-09-07 10:32 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\Provisioning
2019-09-07 10:32 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-09-07 10:31 - 2019-03-19 14:23 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2019-09-07 10:31 - 2019-03-19 14:23 - 000018903 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2019-09-07 10:24 - 2019-03-19 12:56 - 000000000 ____D C:\WINDOWS\Setup
2019-09-07 03:02 - 2019-03-19 12:52 - 000000000 ____D C:\WINDOWS\appcompat
2019-09-06 23:48 - 2018-12-30 12:34 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-09-06 23:38 - 2018-12-18 14:13 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\ElevatedDiagnostics
2019-09-06 21:40 - 2018-12-17 23:02 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\PlaceholderTileLogoFolder
2019-09-06 21:05 - 2018-12-30 12:34 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-09-06 20:22 - 2018-12-18 14:46 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\ConnectedDevicesPlatform
2019-09-06 19:32 - 2019-04-13 18:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickCPU
2019-09-06 19:32 - 2019-04-13 18:07 - 000000000 ____D C:\Program Files (x86)\QuickCPU
2019-09-06 19:15 - 2019-03-19 12:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-09-06 19:02 - 2019-05-17 10:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2019-09-06 19:02 - 2019-05-17 10:41 - 000000000 ____D C:\Program Files\KMSpico
2019-09-06 18:59 - 2019-03-19 12:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-09-06 18:58 - 2019-03-19 12:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-09-06 18:58 - 2019-03-19 12:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-09-06 18:55 - 2019-03-19 12:52 - 000000000 __RSD C:\WINDOWS\Media
2019-09-06 18:55 - 2019-03-19 12:52 - 000000000 __RHD C:\Users\Public\Libraries
2019-09-06 18:52 - 2019-06-24 07:46 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2019-09-06 18:52 - 2019-05-09 09:17 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HandBrake
2019-09-06 18:52 - 2019-05-07 15:36 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IdentityV
2019-09-06 18:52 - 2019-04-11 22:55 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2019-09-06 18:52 - 2019-03-02 13:07 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2019-09-06 18:52 - 2019-01-19 21:43 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2019-09-06 18:52 - 2018-12-31 07:32 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
2019-09-06 18:52 - 2018-12-31 07:32 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2019-09-06 18:52 - 2018-12-19 21:50 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-09-06 18:50 - 2018-12-17 23:44 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-09-06 17:05 - 2019-05-01 20:09 - 000000000 ____D C:\Windows10Upgrade
2019-09-06 15:18 - 2019-05-01 20:09 - 000000751 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Update Assistant.lnk
2019-09-06 09:11 - 2019-05-03 15:01 - 000000000 ____D C:\Users\Aldrin-PC\AppData\Local\AVAST Software
2019-09-06 03:49 - 2018-12-30 12:36 - 002634608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-09-06 03:49 - 2018-12-30 12:36 - 000654320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-09-06 03:49 - 2018-12-30 12:36 - 000125240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-09-06 03:49 - 2018-12-30 12:36 - 000082800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-09-06 03:49 - 2018-12-30 12:35 - 005468144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-09-06 03:49 - 2018-12-30 12:35 - 001767920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-09-06 03:49 - 2018-12-30 12:35 - 000450600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-09-05 18:50 - 2019-04-24 20:23 - 001321968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2019-09-05 09:04 - 2018-12-30 12:35 - 008709382 _____ C:\WINDOWS\system32\nvcoproc.bin
==================== Files in the root of some directories ================
2019-02-25 11:36 - 2019-02-25 11:36 - 000355705 _____ () C:\Users\Aldrin-PC\AppData\Roaming\Damomedoluca
2019-06-09 13:26 - 2019-06-09 13:26 - 000000000 _____ () C:\Users\Aldrin-PC\AppData\Roaming\FC29FA0894FE.ini
2019-03-05 11:36 - 2019-03-05 11:36 - 000165890 _____ () C:\Users\Aldrin-PC\AppData\Roaming\Hotekun
2019-03-14 07:57 - 2019-03-14 07:57 - 000298698 _____ () C:\Users\Aldrin-PC\AppData\Roaming\Kotafagila
2019-03-31 11:36 - 2019-03-31 11:36 - 000131936 _____ () C:\Users\Aldrin-PC\AppData\Roaming\Mepadusugon
2019-02-17 00:41 - 2019-02-17 00:41 - 000247117 _____ () C:\Users\Aldrin-PC\AppData\Roaming\Mesen
2019-02-17 00:41 - 2019-02-17 00:41 - 000394240 _____ () C:\Users\Aldrin-PC\AppData\Roaming\Mesen.exe
2019-03-23 10:36 - 2019-03-23 10:36 - 000358760 _____ () C:\Users\Aldrin-PC\AppData\Roaming\Nehinemenena
2019-04-27 00:37 - 2019-04-27 00:37 - 000254830 _____ () C:\Users\Aldrin-PC\AppData\Roaming\Teracikena
2019-04-10 12:57 - 2019-04-10 12:57 - 000264903 _____ () C:\Users\Aldrin-PC\AppData\Roaming\Tihetatur
2019-04-19 00:05 - 2019-04-19 00:05 - 000126269 _____ () C:\Users\Aldrin-PC\AppData\Roaming\Toropof
2019-02-08 10:36 - 2019-05-03 00:37 - 000000427 _____ () C:\Users\Aldrin-PC\AppData\Roaming\WB.CFG
2019-02-28 14:36 - 2019-02-28 14:36 - 000601088 _____ () C:\Users\Aldrin-PC\AppData\Local\nNhHbBV.exe
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ============================
#3
Posted 06 October 2019 - 09:58 AM

Welcome. 
Please give me some time to go over your logs and I will get back to you as soon as possible.

Please give me some time to go over your logs and I will get back to you as soon as possible.
#4
Posted 10 October 2019 - 07:28 PM

Hi archiety, welcome to the Geeks to Go malware removal forum.
I am iMacg3 and will be helping you with your computer problems.
Please keep the following information in mind before we begin:
CKScanner
Download CKScanner by askey127 from here
Important : Save it to your desktop.
I am iMacg3 and will be helping you with your computer problems.
Please keep the following information in mind before we begin:
- Back up any important data before we continue.
- Back up any important data on your computer to external media. I will not knowingly suggest any steps that will damage your computer; however, malware infections are often unpredictable and it may be necessary to reformat and reinstall your operating system depending on the infection.
- Do not install any new software or run any fixes/tools on your system unless I request that you do so.
- Running additional tools on your system can interfere with the clean-up process, or cause issues such as false positives.
- Please read all instructions carefully, and complete them in the order listed.
- Items that are especially important will be highlighted in bold or red.
- If your computer seems to start working normally, please don't abandon the topic.
- Even if your system is behaving normally, there may still be some malware remnants left over. Additionally, malware can re-infect the computer if some remnants are left. Therefore, please complete all requested steps to make sure any malware is successfully eradicated from your PC.
- If you have pirated or illegal software on your computer, uninstall it now before proceeding.
- Using pirated/cracked software is an easy way to infect your computer - almost as easy as intentionally downloading malware. Therefore, please remove any, if present, before we begin the clean-up.
- If you don't respond to your topic in 4 days, it will be closed.
- If your topic is closed and you still need assistance, send me a Personal Message with a link to your topic.
- If you have questions at any time during the cleanup, feel free to ask.
CKScanner
Download CKScanner by askey127 from here
Important : Save it to your desktop.
- Double-click CKScanner.exe and click Search For Files.
- After a very short time, when the cursor hourglass disappears, click Save List To File.
- A message box will verify that the file is saved.
- Double-click the CKFiles.txt icon on your desktop and copy/paste the contents in your next reply.
#5
Posted 16 October 2019 - 08:23 PM

Due to lack of feedback, this topic has been closed.
If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
Similar Topics
1 user(s) are reading this topic
0 members, 1 guests, 0 anonymous users
As Featured On:






