Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Such a weird one with random unkown music playing on my PC [Solved]

youtube music volume bing

  • This topic is locked This topic is locked

#1
zclesa

zclesa

    Member

  • Member
  • PipPip
  • 14 posts

Just suddenly today, I tuned my laptop on with all volume muted and this weird quite quiet music was playing. Nothing I'd ever heard before. Even plugging a headphone in wouldn't stop it. It wouldn't go through the er phone. Turning the volume up made it louder but still quiet. I turned the computer off and again and the music started as soon as the welcome screen came up. I'm scanned it with AVG, no viruses at all. CC Cleaner is showing nothing dodgy. 

 

Moe strangely, Youtube on Chrome isn't playing. I mean you can't hear the track I want to play. But if I look up the sme track on Bing (which plays fom Youtube), it's fine.

 

Any clues please?


  • 0

Advertisements


#2
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 247 posts

Hello zclesa ..! I don't think your problem is related to malware ..! However, this:

 

 

Farbar Recovery Scan Tool (FRST)

Download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system, download both of them and try to run them. Only one of them will run on your system, and that will be the right version.

  • Right-click FRST.exe/FRST64.exe then click "Run as administrator"
  • When the tool opens, click Yes to the disclaimer.
  • Press the Scan button.
  • When finished, it will produce logs called FRST.txt and Addition.txt in the same directory the tool was run from.
  • Please copy and paste the logs in your next reply.

---------------------------------------------------

In your next reply, please include:

  • FRST.txt
  • Addition.txt

  • 0

#3
zclesa

zclesa

    Member

  • Topic Starter
  • Member
  • PipPip
  • 14 posts

What is it then if it literally comes on as turn as I the pc on, on the welcome screen? It's so weird. Sory I'm not hugely tecchy, but I know a bit.


Edited by zclesa, 25 March 2020 - 01:05 PM.

  • 0

#4
zclesa

zclesa

    Member

  • Topic Starter
  • Member
  • PipPip
  • 14 posts

Thanks so much mate FRST.txt log

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-03-2020
Ran by BETH (administrator) on DESKTOP-RRNF5R7 (HP HP ENVY x360 Convertible 15-bq0xx) (25-03-2020 19:39:29)
Running from C:\Users\BETH\Desktop
Loaded Profiles: BETH (Available Profiles: BETH)
Platform: Windows 10 Home Version 1809 17763.1098 (X64) Language: English (United Kingdom)
Default browser: "C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe" -- "%1"
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Advanced Micro Devices, Inc. -> ) C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Avast Software s.r.o. -> ) C:\Program Files\AVAST Software\Avast\AvastNM.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.6.605.0\AvastBrowserCrashHandler.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.6.605.0\AvastBrowserCrashHandler64.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(AVG Technologies USA, Inc. -> AVG Technologies) C:\Program Files (x86)\AVG\Browser\Update\1.6.609.0\AVGBrowserCrashHandler.exe
(AVG Technologies USA, Inc. -> AVG Technologies) C:\Program Files (x86)\AVG\Browser\Update\1.6.609.0\AVGBrowserCrashHandler64.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\DiscoverySrv.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(F.lux Software LLC -> f.lux Software LLC) C:\Users\BETH\AppData\Local\FluxSoftware\Flux\flux.exe
(Ginger Software inc -> Ginger Software) C:\Program Files (x86)\Ginger\GingerUpdateService\GingerUpdateService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(HP Inc. -> HP Development Company, L.P.) C:\Program Files (x86)\HP\HP CoolSense\CoolSense.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19081.28230.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1910.0.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20212.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20212.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20022.81.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtAudioServ.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTServer.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Sony) [File not signed] C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe
(Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
 
==================== Registry (Whitelisted) ===================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [231640 2016-09-20] (Realtek Semiconductor Corp -> Realtek Semiconductor Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [277664 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [325704 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [1062392 2017-03-15] (HP Inc. -> HP Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [WDAppManager] => C:\Program Files (x86)\Western Digital\WD App Manager\AppManagerLauncher.exe [14688 2015-08-31] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [WD Quick View] => C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5564784 2015-02-12] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [WD Drive Unlocker] => C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe [1761120 2015-12-07] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [DriveUtilitiesHelper] => C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [1890664 2016-01-14] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [HP ENVY 4500 series (NET)] => C:\Program Files\HP\HP ENVY 4500 series\Bin\ScanToPCActivationApp.exe [3487240 2014-07-21] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [f.lux] => C:\Users\BETH\AppData\Local\FluxSoftware\Flux\flux.exe [1385480 2019-08-30] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [1687392 2019-10-22] (Sony Mobile Communications AB -> Sony)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [AvastBrowserAutoLaunch_985DEF4921D213B104994FE16EF7B88F] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2023832 2020-03-19] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\MountPoints2: {3d453b0a-199c-11e9-99c2-b05216366f28} - "F:\startme.exe" 
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\MountPoints2: {4f2a635e-515e-11e9-99c8-b05216366f28} - "F:\startme.exe" 
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\MountPoints2: {70328973-fae3-11e7-9959-b05216366f28} - "E:\WD Drive Unlock.exe" autoplay=true
HKLM\Software\Microsoft\Active Setup\Installed Components: [{48F69C39-1356-4A7B-A899-70E3539D4982}] -> C:\Program Files (x86)\AVG\Browser\Application\80.0.3624.134\Installer\chrmstp.exe [2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe [2020-03-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\80.0.3765.150\Installer\chrmstp.exe [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\80.1.5.115\Installer\chrmstp.exe [2020-03-23] (Brave Software, Inc.) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Ginger.lnk [2017-12-27]
ShortcutTarget: Ginger.lnk -> C:\Windows\Installer\{1EBF9A59-F4E3-4EA7-BA97-76703C1432F6}\GingerClientStartu_E7648186C0BE4AE6AF2E431C614DBB20.exe (Flexera Software LLC) [File not signed]
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
 
==================== Scheduled Tasks (Whitelisted) ============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {07515A5C-6228-4E62-8A4D-DCE4A7C982F9} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2023832 2020-03-19] (Avast Software s.r.o. -> AVAST Software)
Task: {08B3B8C2-6481-450F-B109-E95179069C53} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [308088 2020-02-12] (HP Inc. -> HP Inc.)
Task: {0AB4B3B2-DA89-40D8-A5C3-38513F2DC1D4} - System32\Tasks\HPCeeScheduleForBETH => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [97656 2018-09-11] (HP Inc. -> HP Inc.)
Task: {0E3B1F45-B57E-46A0-8C0F-1D48259609AD} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [52104 2017-02-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {228252BC-A87A-4F2C-99BB-E0092A345396} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2016-12-06] (HP Inc. -> HP Inc.)
Task: {37108D90-D44C-41FA-8FB7-0DE55F469871} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1116024 2020-02-26] (HP Inc. -> HP Inc.)
Task: {49989AB4-0488-4998-9740-EA80F37D7C8F} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [199376 2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
Task: {596EDB11-74C5-4339-B8E9-2A0C07A6A19D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {5A5E0904-28CA-4649-A283-14E5182E98AD} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5B8A15CB-A980-4438-B322-A6C47C299309} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [2026976 2020-03-09] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {5CDBB4B6-0EF4-4D78-9DD0-955E864E16CC} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5F235F4A-C007-435C-B23C-57CF5B99CA62} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [489272 2019-08-07] (Bitdefender SRL -> Bitdefender)
Task: {63414BE2-0D79-446C-BDD9-082E6E9AF8AF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1116024 2020-02-26] (HP Inc. -> HP Inc.)
Task: {636E28A0-E18B-46A0-93F3-CAE915CCBD97} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-10] (Google Inc -> Google Inc.)
Task: {66B56894-5D17-40C6-8D15-8470FE3D0F20} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {6749149A-FBBB-4600-994E-05C858FEA3D8} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3894664 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
Task: {6DE168B7-79B3-45D8-BEFD-05A117E34228} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [3942704 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
Task: {7168BE73-1E47-40CF-B60E-BB681F6B8EF2} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe
Task: {72FCDAFB-B1CA-467E-A112-EB9CCB06DBEC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-10] (Google Inc -> Google Inc.)
Task: {7CF72DF1-F4EF-47FE-961A-9EEE96CB67CA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [147832 2020-02-24] (HP Inc. -> HP Inc.)
Task: {7F5277CC-3DA4-442C-AA52-C89C3F83CF51} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.)
Task: {9012EFC1-72F4-402F-8537-584159FB42B0} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2023832 2020-03-19] (Avast Software s.r.o. -> AVAST Software)
Task: {97FB53A6-053F-4B04-B693-DBBDB85FEDB1} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs]
Task: {A7D04C2B-0789-49A0-AFB0-302DA70088E3} - System32\Tasks\HP\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\HP\HP CoolSense\CoolSense.exe [1356648 2017-01-12] (HP Inc. -> HP Development Company, L.P.)
Task: {AC830C9A-E993-40A4-95F4-5EFE89EED3C1} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {AFD848C2-DA05-4FCF-B816-94A7A9512D91} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [2026976 2020-03-09] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {B05D93B8-0483-4D3B-AE06-EC3AD9876AA5} - System32\Tasks\AVGUpdateTaskMachineUA => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [217528 2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
Task: {BFCC10E8-4CB8-4440-83AF-3FE8329D6B4C} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9277528 2019-06-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {C83FA2BD-F570-478F-82C3-546E04AEE8EB} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [199376 2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
Task: {CD51F404-07D0-4064-A59F-194B907BBE98} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1692296 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {D8F39F0D-CEE0-4B4D-BDD8-614B34A0B74F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {DDAACF5B-F0AB-48D4-8A20-97416AC7F122} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1660520 2020-03-25] (Avast Software s.r.o. -> Avast Software)
Task: {E278F2FB-7BD0-4055-8F5E-C0445A8702CA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {E494E78B-B81A-49AE-9C4A-C04EE8E93E39} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
Task: {E8F38C78-F8CB-4B73-9E84-CBC8898A4F8A} - System32\Tasks\AVGUpdateTaskMachineCore => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [217528 2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
Task: {F1F83EE3-4BCC-413F-9D9E-DB77BBFF78DA} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForBETH.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 194.168.4.100 194.168.8.100
Tcpip\..\Interfaces\{32cfc47b-1c9b-40f4-8bad-ca172193dc8c}: [DhcpNameServer] 194.168.4.100 194.168.8.100
Tcpip\..\Interfaces\{d538f888-2a26-47fc-bb77-ff0e288a7bc4}: [DhcpNameServer] 172.168.0.7
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
SearchScopes: HKLM -> {7A28FEF7-F36F-4C62-BE8E-C078206D42A9} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {7A28FEF7-F36F-4C62-BE8E-C078206D42A9} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-259350032-3561555504-2751918716-1001 -> {7A28FEF7-F36F-4C62-BE8E-C078206D42A9} URL = 
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -> HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -> HP Inc.)
IE Session Restore: HKU\S-1-5-21-259350032-3561555504-2751918716-1001 -> is enabled.
 
Edge: 
======
DownloadDir: C:\Users\BETH\Downloads
Edge Session Restore: HKU\S-1-5-21-259350032-3561555504-2751918716-1001 -> is enabled.
 
FireFox:
========
FF DefaultProfile: lewi11ew.default
FF ProfilePath: C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default [2020-03-25]
FF Homepage: Mozilla\Firefox\Profiles\lewi11ew.default -> about:blank
FF Session Restore: Mozilla\Firefox\Profiles\lewi11ew.default -> is enabled.
FF Extension: (Firebug) - C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default\Extensions\[email protected] [2018-01-02] [Legacy]
FF Extension: (LastPass: Free Password Manager) - C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default\Extensions\[email protected] [2020-03-23]
FF Extension: (uBlock Origin) - C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default\Extensions\[email protected] [2019-02-14]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Ginger\Mozilla\[email protected]
FF Extension: (Ginger) - C:\Program Files (x86)\Ginger\Mozilla\[email protected] [2017-12-13] [Legacy] [not signed]
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.6.605.0\npAvastBrowserUpdate3.dll [2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.6.605.0\npAvastBrowserUpdate3.dll [2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.6.609.0\npAvgBrowserUpdate3.dll [2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.6.609.0\npAvgBrowserUpdate3.dll [2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
FF Plugin HKU\S-1-5-21-259350032-3561555504-2751918716-1001: gingersoftware.com/gingerPlugin -> C:\Program Files (x86)\Ginger\GingerServices\GingerServicesProxy.dll [2017-03-21] (Ginger Software) [File not signed]
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default [2020-03-25]
CHR HomePage: Default -> hxxp://www.google.co.uk/
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3331316&octid=EB_ORIGINAL_CTID&ISID=MCFFD7245-7BC9-49DC-B424-F05055F63456&SearchSource=55&CUI=&UM=6&UP=SPA78BD1B1-1931-4ADE-8DDA-972D132E8B49&SSPV="
CHR Session Restore: Default -> is enabled.
CHR Extension: (Slides) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-12-15]
CHR Extension: (Join a Meeting - Zoom) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajojicfljchadpndofllmcfcddapmpkn [2018-01-01]
CHR Extension: (Docs) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-12-15]
CHR Extension: (Google Drive) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-21]
CHR Extension: (YouTube) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-12-15]
CHR Extension: (Firebug Lite for Google Chrome™) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmagokdooijbeehmkpknfglimnifench [2018-01-01]
CHR Extension: (Google Calendar) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnlchlfjjebdblaoolggbonifknnfcpp [2018-01-01]
CHR Extension: ((1) Facebook) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\celnaknmndcdcjcagffhbhciignkeokb [2018-01-01]
CHR Extension: (uBlock Origin) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2020-02-14]
CHR Extension: (Alexa Traffic Rank) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel [2019-08-05]
CHR Extension: (Google Calendar) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2018-01-01]
CHR Extension: (Sheets) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-12-15]
CHR Extension: (Google Calendar) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpjpknijfapadpaeaikbcmpfghnjeopa [2018-01-01]
CHR Extension: (Google Docs Offline) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-15]
CHR Extension: (World Time Buddy) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdhpjomiingppeefgnohkiapmnaeakoj [2018-01-01]
CHR Extension: (Grammarly for Chrome) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2020-03-25]
CHR Extension: (Grammar and Spelling checker by Ginger) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdfieneakcjfaiglcfcgkidlkmlijjnh [2020-02-14]
CHR Extension: (The Great Suspender) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\klbibkeccnjlkjkiokjodocebajanakg [2019-08-31]
CHR Extension: (Gmail fitt) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhopmchchfpfdcdjodmpfaaphdclmlj [2017-12-17]
CHR Extension: (Google Calendar -) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgfijnnecdoifcadgfpbajeonhfendki [2017-12-16]
CHR Extension: (Gmail muds) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\miilmjmgkdhdabfkjkilgecbhbchboem [2017-12-17]
CHR Extension: (Time Converter and World Clock - Conv...) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\mngniccdaoonfbddldojodbjdfknokll [2018-01-01]
CHR Extension: (Hootsuite) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nghldiaiamokmpalgdbfiokpgapocnnf [2018-01-01]
CHR Extension: (Gmail Bethsmyls@gmail) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nglheapbdkhgpidedbaaiohcgmkmilbo [2018-01-01]
CHR Extension: (MetaMask) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2020-03-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]
CHR Extension: (Cite This For Me: Web Citer) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnnmhgkokpalnmbeighfomegjfkklkle [2018-01-01]
CHR Extension: (Buffer) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\noojglkidnpfjbincgijbaiedldjfbhh [2020-03-25]
CHR Extension: (Google Calendar - biz) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocbolilgjhgobopeapoajppmaoikccid [2018-01-01]
CHR Extension: (Nash Extension) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\onofpnbbkehpmmoabgpcpmigafmmnjhl [2019-03-01]
CHR Extension: (Gmail) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-24]
CHR Extension: (Chrome Media Router) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-25]
CHR Profile: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-08-14]
CHR Profile: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\System Profile [2018-08-14]
CHR HKLM\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Program Files (x86)\EagleGet\addon\[email protected] <not found>
CHR HKU\S-1-5-21-259350032-3561555504-2751918716-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [hdkdmoacnkphoadmfidlhfdobieblphn] - C:\Program Files (x86)\EagleGet\addon\eagleget_newtab.crx <not found>
 
==================== Services (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [155016 2017-02-16] (Advanced Micro Devices, Inc. -> )
R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe [508000 2019-09-18] (Advanced Micro Devices, Inc. -> AMD)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6046624 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [199376 2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [413472 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [199376 2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\80.0.3765.150\elevation_service.exe [1124080 2020-03-19] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57536 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
S2 avg; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [217528 2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [413544 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [6094272 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgm; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [217528 2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
S3 AVGSecureBrowserElevationService; C:\Program Files (x86)\AVG\Browser\Application\80.0.3624.134\elevation_service.exe [1124112 2020-03-09] (AVG Technologies USA, LLC -> AVG Technologies)
R2 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [110608 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [126944 2017-03-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
R2 GingerUpdateService; C:\Program Files (x86)\Ginger\GingerUpdateService\GingerUpdateService.exe [534200 2017-03-21] (Ginger Software inc -> Ginger Software)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1321096 2018-09-28] (HP Inc. -> HP Inc.)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [361848 2019-12-06] (HP Inc. -> HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [630776 2017-02-06] (HP Inc. -> HP Inc.)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1296560 2019-08-07] (Bitdefender SRL -> Bitdefender)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [267552 2019-06-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 RtkBtAudioServ; C:\WINDOWS\RtkBtAudioServ.exe [215992 2018-05-31] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [738712 2019-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 SynTPEnhService; C:\WINDOWS\System32\SynTPEnhService.exe [394672 2019-04-16] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WD Backup Drive Helper; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{4AB831D3-8315-414C-8A7A-303105288D0B} [19256 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WD Backup Drive Helper; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{4AB831D3-8315-414C-8A7A-303105288D0B} [19256 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WD Backup Snapshot; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{302480DF-3AC5-4400-BE7B-DD77AF93B6DD} [19256 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WD Backup Snapshot; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{302480DF-3AC5-4400-BE7B-DD77AF93B6DD} [19256 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [308088 2015-12-07] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\NisSrv.exe [3294680 2020-03-25] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MsMpEng.exe [103168 2020-03-25] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2548224 2019-10-22] (Sony) [File not signed]
 
===================== Drivers (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 Accelerometer; C:\WINDOWS\System32\drivers\Accelerometer.sys [53904 2019-07-22] (HP Inc. -> HP)
R3 AmdAS4; C:\WINDOWS\System32\drivers\AmdAS4.sys [35848 2019-04-22] (Advanced Micro Devices Inc. -> Advanced Micro Devices, INC.)
R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [34568 2019-04-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 amdi2c; C:\WINDOWS\System32\drivers\amdi2c.sys [61728 2019-04-18] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [49448 2016-08-17] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 amdkmcsp; C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys [101232 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atikmdag.sys [55249504 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atikmpag.sys [595040 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdpsp; C:\WINDOWS\System32\DRIVERS\amdpsp.sys [146304 2019-04-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
R3 amduart; C:\WINDOWS\System32\drivers\amduart.sys [89640 2019-04-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc)
R0 amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [92400 2016-08-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R0 amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [32496 2016-08-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37864 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [205576 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [271120 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [206608 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [64272 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2020-03-25] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [279360 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42976 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [175400 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110560 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84056 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848672 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [458584 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [235184 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316256 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [101376 2017-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R0 avgArDisk; C:\WINDOWS\System32\drivers\avgArDisk.sys [37928 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [206160 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriver.sys [271704 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsh.sys [207192 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniv.sys [64344 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgElam; C:\WINDOWS\System32\drivers\avgElam.sys [16520 2020-03-25] (Microsoft Windows Early Launch Anti-malware Publisher -> AVG Technologies CZ, s.r.o.)
S3 avgKbd; C:\WINDOWS\System32\drivers\avgKbd.sys [43560 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [175472 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [111144 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [84096 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [849256 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [459192 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [235280 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [316840 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 EzTouchFilter; C:\WINDOWS\System32\drivers\EzTouchFilter.sys [64192 2018-12-20] (ELAN Microelectronics Corporation -> ELAN)
R0 hpdskflt; C:\WINDOWS\System32\drivers\hpdskflt.sys [41104 2019-07-22] (HP Inc. -> HP)
R3 HpqKbFiltr; C:\WINDOWS\System32\drivers\HpqKbFiltr64.sys [37112 2015-06-17] (Hewlett-Packard Company -> Hewlett-Packard Company)
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [787232 2019-11-30] (WDKTestCert VSAuto,131800073559665678 -> Realtek Semiconductor Corporation)
S3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [782304 2017-04-19] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
S3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3221504 2017-02-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [11722328 2019-12-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
R0 secnvme; C:\WINDOWS\System32\drivers\secnvme.sys [134000 2019-01-21] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd)
R3 SmbDrv; C:\WINDOWS\system32\DRIVERS\Smb_driver_AMDASF.sys [53864 2018-09-21] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [64088 2017-04-17] (Synaptics Incorporated -> Synaptics Incorporated)
R3 VirtualButtons; C:\WINDOWS\System32\drivers\VirtualButtons.sys [32984 2017-04-07] (Softeq Development Corporation -> Softeq Development Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45960 2020-03-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [391392 2020-03-25] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [59104 2020-03-25] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2019-11-15] (HP Inc. -> HP)
U3 avgbdisk; no ImagePath
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) ===================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2020-03-25 19:39 - 2020-03-25 19:40 - 000049374 _____ C:\Users\BETH\Desktop\FRST.txt
2020-03-25 19:39 - 2020-03-25 19:40 - 000000000 ____D C:\FRST
2020-03-25 19:36 - 2020-03-25 19:36 - 002279936 _____ (Farbar) C:\Users\BETH\Desktop\FRST64.exe
2020-03-25 17:28 - 2020-03-25 17:28 - 000003826 _____ C:\WINDOWS\system32\Tasks\AVG Secure Browser Heartbeat Task (Hourly)
2020-03-25 17:28 - 2020-03-25 17:28 - 000003242 _____ C:\WINDOWS\system32\Tasks\AVG Secure Browser Heartbeat Task (Logon)
2020-03-25 17:28 - 2020-03-25 17:28 - 000002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Secure Browser.lnk
2020-03-25 17:27 - 2020-03-25 17:27 - 000003412 _____ C:\WINDOWS\system32\Tasks\AVGUpdateTaskMachineUA
2020-03-25 17:27 - 2020-03-25 17:27 - 000003288 _____ C:\WINDOWS\system32\Tasks\AVGUpdateTaskMachineCore
2020-03-25 17:26 - 2020-03-25 17:26 - 000235280 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys
2020-03-25 17:26 - 2020-03-25 17:26 - 000111144 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRdr2.sys
2020-03-25 17:26 - 2020-03-25 17:13 - 000368088 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe
2020-03-25 17:17 - 2020-03-25 18:14 - 000002006 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG AntiVirus FREE.lnk
2020-03-25 17:17 - 2020-03-25 18:14 - 000001994 _____ C:\Users\Public\Desktop\AVG AntiVirus FREE.lnk
2020-03-25 17:17 - 2020-03-25 18:14 - 000001994 _____ C:\ProgramData\Desktop\AVG AntiVirus FREE.lnk
2020-03-25 17:17 - 2020-03-25 17:28 - 000000000 ____D C:\Users\BETH\AppData\Local\Avg
2020-03-25 17:17 - 2020-03-25 17:17 - 000000000 ____D C:\Users\BETH\AppData\Roaming\AVG
2020-03-25 17:14 - 2020-03-25 17:30 - 000003992 _____ C:\WINDOWS\system32\Tasks\Antivirus Emergency Update
2020-03-25 17:14 - 2020-03-25 17:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVG
2020-03-25 17:13 - 2020-03-25 17:31 - 000459192 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSP.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000849256 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSnx.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000316840 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgVmm.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000271704 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsdriver.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000207192 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsh.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000206160 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgArPot.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000175472 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000084096 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRvrt.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000064344 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbuniv.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000043560 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgKbd.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000037928 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgArDisk.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000016520 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgElam.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000000000 ____D C:\Program Files\Common Files\AVG
2020-03-25 17:12 - 2020-03-25 17:12 - 000000000 ____D C:\Program Files\AVG
2020-03-25 17:10 - 2020-03-25 17:10 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\BETH\Downloads\avg_antivirus_free_setup (1).exe
2020-03-25 17:07 - 2020-03-25 17:07 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\BETH\Downloads\avg_antivirus_free_setup.exe
2020-03-25 17:01 - 2020-03-25 17:01 - 022267336 _____ (Piriform Software Ltd) C:\Users\BETH\Downloads\ccsetup565.exe
2020-03-25 16:54 - 2020-03-25 18:27 - 000000000 ____D C:\Users\BETH\AppData\Local\AVAST Software
2020-03-25 16:54 - 2020-03-25 16:54 - 000003856 _____ C:\WINDOWS\system32\Tasks\Avast Secure Browser Heartbeat Task (Hourly)
2020-03-25 16:54 - 2020-03-25 16:54 - 000003272 _____ C:\WINDOWS\system32\Tasks\Avast Secure Browser Heartbeat Task (Logon)
2020-03-25 16:54 - 2020-03-25 16:54 - 000002577 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2020-03-25 16:54 - 2020-03-25 16:54 - 000002542 _____ C:\Users\Public\Desktop\Avast Secure Browser.lnk
2020-03-25 16:54 - 2020-03-25 16:54 - 000002542 _____ C:\ProgramData\Desktop\Avast Secure Browser.lnk
2020-03-25 16:53 - 2020-03-25 16:53 - 000003454 _____ C:\WINDOWS\system32\Tasks\AvastUpdateTaskMachineUA
2020-03-25 16:53 - 2020-03-25 16:53 - 000003330 _____ C:\WINDOWS\system32\Tasks\AvastUpdateTaskMachineCore
2020-03-25 16:52 - 2020-03-25 16:52 - 000000000 ____D C:\Program Files (x86)\AVAST Software
2020-03-25 16:49 - 2020-03-25 16:49 - 000002167 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2020-03-25 16:49 - 2020-03-25 16:49 - 000002155 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2020-03-25 16:49 - 2020-03-25 16:49 - 000002155 _____ C:\ProgramData\Desktop\Avast Free Antivirus.lnk
2020-03-25 16:49 - 2020-03-25 16:49 - 000000000 ____D C:\Users\BETH\AppData\Roaming\AVAST Software
2020-03-25 16:45 - 2020-03-25 16:45 - 000458584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2020-03-25 16:45 - 2020-03-25 16:45 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2020-03-25 16:45 - 2020-03-25 16:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2020-03-25 16:45 - 2020-03-25 16:44 - 000368056 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2020-03-25 16:45 - 2020-03-25 16:44 - 000316256 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000279360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000235184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000205576 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000175400 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000110560 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000084056 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000042976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000016304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000848672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000271120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000206608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000064272 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000037864 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2020-03-25 16:43 - 2020-03-25 16:43 - 000000000 ____D C:\Program Files\AVAST Software
2020-03-25 16:41 - 2020-03-25 16:41 - 000230080 _____ (AVAST Software) C:\Users\BETH\Desktop\avast_free_antivirus_setup_online.exe
2020-03-25 16:39 - 2020-03-25 16:39 - 000003802 _____ C:\WINDOWS\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2020-03-25 16:39 - 2020-03-25 16:39 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
2020-03-25 16:37 - 2020-03-25 16:40 - 000000000 ____D C:\Program Files\Bitdefender Agent
2020-03-25 16:37 - 2020-03-25 16:37 - 000103972 _____ C:\ProgramData\agent.1585154226.bdinstall.v2.bin
2020-03-25 16:37 - 2020-03-25 16:37 - 000000000 ____D C:\ProgramData\Bitdefender Agent
2020-03-25 16:35 - 2020-03-25 16:35 - 010527368 _____ C:\Users\BETH\Desktop\bitdefender_online.exe
2020-03-25 14:16 - 2020-03-25 14:16 - 000643854 _____ C:\Users\BETH\Desktop\icopepdf.pdf
2020-03-24 18:03 - 2020-03-24 18:03 - 000021808 _____ C:\Users\BETH\Desktop\US SHARES 2019-20 Copy.ods
2020-03-11 08:37 - 2020-03-11 08:37 - 011723776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-03-11 08:37 - 2020-03-11 08:37 - 009941504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-03-11 08:37 - 2020-03-11 08:37 - 001461760 _____ C:\WINDOWS\system32\FaceProcessor.dll
2020-03-11 08:37 - 2020-03-11 08:37 - 001250152 _____ C:\WINDOWS\system32\FaceTrackerInternal.dll
2020-03-11 08:37 - 2020-03-11 08:37 - 000633184 _____ C:\WINDOWS\system32\FaceProcessorCore.dll
2020-03-11 08:37 - 2020-03-11 08:37 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 026807296 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 023463424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 020816384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 019284480 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 019020288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 013013504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 012306432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 008907776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 007923712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 007870976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 006060544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 005436904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 004872704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 004664320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 004066816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 003952760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 003909632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 003703808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 003550624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002986560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002751336 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002469432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002323688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002298880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002273296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002182456 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002150912 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeangle.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002100056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001876960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001750528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001707208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001605000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001430880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001296360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001292288 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001288648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001229824 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001201128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001076040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2020-03-11 08:36 - 2020-03-11 08:36 - 001062400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001022464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2020-03-11 08:36 - 2020-03-11 08:36 - 000949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000946688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2020-03-11 08:36 - 2020-03-11 08:36 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000870400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000850432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000829440 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000796160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000763032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000662528 ____R (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Pipeline.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000594432 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000522104 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-03-11 08:36 - 2020-03-11 08:36 - 000506368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.PredictionUnit.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provsvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000428544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000419840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceCenter.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provsvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFIPP.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000263576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSHExtensions.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-03-11 08:36 - 2020-03-11 08:36 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactHarvesterDS.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Analog.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000180736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-03-11 08:36 - 2020-03-11 08:36 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopView.Internal.Broker.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWSDAHost.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000098816 ____R (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Broker.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComputerDefaults.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 015220224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 006942720 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 006545096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 006445056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 006318840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005915936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005608120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005309080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005210896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005086208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 004628480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 004344832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 003873704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 003490304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 003429888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 003416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Controls.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 003096064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002981888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002917688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 002893312 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002832896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002779272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002701816 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002698752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002627088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 002349056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002279296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002264344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002074984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001994768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001962296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 001961984 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001899160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001890816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001862656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001837136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001761280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001759232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001753088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConstraintIndex.Search.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001720936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001702600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-03-11 08:35 - 2020-03-11 08:35 - 001702400 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001693696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001678800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001675008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001674696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001668752 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001606144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001590072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001573480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001568768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001495480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001485312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001484384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001473080 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001465344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001465264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001458056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001427592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001395056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001390888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001360912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 001346192 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-03-11 08:35 - 2020-03-11 08:35 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001294336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001292800 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001278808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001272360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001223168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001222456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001183504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001162088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001125392 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001122304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001098128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001076224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001022976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001012224 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2020-03-11 08:35 - 2020-03-11 08:35 - 001000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000993280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000976384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000964984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000964096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000934912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000926056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000909824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000909624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000908800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2020-03-11 08:35 - 2020-03-11 08:35 - 000879104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000845824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000828728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000821760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSMDesktopProvider.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000808272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000805504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000803328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000791864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000774968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000774656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000745472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000741376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000736272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000730112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000718944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsInternal.ComposableShell.ComposerFramework.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000661304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000661056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000658944 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000655160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 000651264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000648392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000641696 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000622632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000620032 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIsoCtnr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000615936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000604248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000589824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000574864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000555440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000542536 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000542504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000537088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000535048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000515448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000501760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000492216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000481280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000473832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000461488 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIso.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UiaManager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000453208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellAPI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2020-03-11 08:35 - 2020-03-11 08:35 - 000441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000439976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000439808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-03-11 08:35 - 2020-03-11 08:35 - 000414208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000409912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000408528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000389120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000378880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000373560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coml2.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000366728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000363320 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreShellAPI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000322560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000312632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000310784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Phoneutil.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000304952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000302592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnclient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000279416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000277840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000274448 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000267264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockScreenData.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposerFramework.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000264208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000263168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2020-03-11 08:35 - 2020-03-11 08:35 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationManager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000252264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\feclient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000243216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchangeHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000240376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000239664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcredprov.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000219656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Cortana.Persona.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2020-03-11 08:35 - 2020-03-11 08:35 - 000205312 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RstrtMgr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\feclient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsInternal.ComposableShell.DesktopHosting.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\oledlg.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000176112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000175928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000168488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpcsp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.SettingsExtensibility.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\EDPCleanup.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddisplay.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000157536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.OneCore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twext.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oledlg.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapistub.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000140304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000139648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000132480 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000124440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapistub.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapi32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DSCache.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\efslsaext.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000108392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.DisplayEnhancementOverride.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olecli32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000107008 _____ C:\WINDOWS\SysWOW64\WindowsDefaultHeatProcessor.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olethk32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000106376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000106048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000105784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsentUX.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\MuiUnattend.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountControlSettings.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000094496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountControlSettings.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvHelper.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsCtfMonitor.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000074752 ____R (Microsoft Corporation) C:\WINDOWS\system32\mdmpostprocessevaluator.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpussvr.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.internal.shellcommon.AccountsControlExperience.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Background.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvHelper.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olesvr32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFrameworkInternalPS.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.SystemManufacturers.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msauserext.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 022137120 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 017484800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 009672208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 007888896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 007645392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 007556600 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 006058032 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 005577872 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 005575168 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 005528576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 005301248 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004853760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Controls.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004736512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004589056 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 004417008 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 004303872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004050432 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004018688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 003636736 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 003630592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 003392000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 003361080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002848768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002634752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002620928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002611136 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002437344 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002433024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002418176 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 002233856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002197504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002185216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002086192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001929728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001844456 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001830712 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001796400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001794048 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001768960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001751640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001720320 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001715712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001701384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001664904 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001644544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001478968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001422336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001335296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001333248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001331536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001308672 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001287584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001267712 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001262592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001221120 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001194496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001169920 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001081656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001054712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 001052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001051648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 001049600 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001038336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001035264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001021952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001005568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000998928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000987736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000984888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000974848 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000938296 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000930816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000928768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000903368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000872960 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSMDesktopProvider.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000862224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 000848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000847872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000820736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000818640 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000788480 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000780408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000741688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000739840 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000736256 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000723456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000715776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgrSvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000681984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\UiaManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000678376 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Devices.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000650240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000622336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000605576 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000604552 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000603792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-03-11 08:34 - 2020-03-11 08:34 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_User.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxAPDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxHAPDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000508720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Display.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000496872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2020-03-11 08:34 - 2020-03-11 08:34 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000468792 _____ (Microsoft Corporation) C:\WINDOWS\system32\coml2.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtCangjieDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000460288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000458240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtBopomofoDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtHkStrokeDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChsStrokeDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtQuickDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000443368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000440832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000439096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 000437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000420352 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneDataSync.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000418576 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\eeprov.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000399376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000386360 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvctpSvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000377344 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpndecoder.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxDecoder.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenData.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnclient.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxinputrouter.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000351744 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvrcp.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000347784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtfDecoder.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000320728 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000314072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000312704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageOverlayServer.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000304952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000293856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpnranker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000282424 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Cortana.Persona.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_InputPersonalization.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiCloudStore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000262656 _____ C:\WINDOWS\system32\HeatCore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000262336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000239120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\VideoHandlers.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\RstrtMgr.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleBand.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddisplay.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000200720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000199680 _____ C:\WINDOWS\system32\IHDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twext.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.CredentialProvider.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngctasks.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingCSP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFFuzzyDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000152576 _____ (Microsoft Corporation) C:\WINDOWS\system32\VaultCDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\vfuprov.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000149240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.DisplayEnhancementOverride.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DSCache.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000148480 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdvancedEmojiDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\StaticDictDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsExtensibilityHandlers.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000138624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.ShellCommon.Broker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000134456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000133432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000125440 _____ C:\WINDOWS\system32\WindowsDefaultHeatProcessor.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000121536 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxranker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000120560 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\HashtagDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\sihost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFSpellcheckDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000106296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopShellExt.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFAppServiceDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000099896 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuntimeBroker.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpnUserService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuleBasedDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000090608 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PersonalizationCSP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.AccountsControlExperience.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Background.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\desktopimgdownldr.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityServicePal.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000072984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrameHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo-overrides.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAProfileNotificationHandler.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.SystemManufacturers.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 007700480 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 004997096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 003581440 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 003334496 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002707456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 002590944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002466816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002149160 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002015400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002004992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001893376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001771824 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001743376 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001677312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001674752 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001519488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001496576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001474560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001387512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001293768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001258296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 001205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001049400 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000988240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000985088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000904104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000902464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000902144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000890400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000871792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000863528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000779776 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000776272 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000769760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000702976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000681416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000680944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000667664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000652304 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000650552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000532184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000510504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000506408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000467984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2020-03-11 08:33 - 2020-03-11 08:33 - 000461840 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000451120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000446480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000438784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000407712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000390128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000389120 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingASDS.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000385552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000376784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000367208 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpr.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000298808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000283240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000276496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTF.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000255128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000252944 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacEncoder.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.OneCore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000222008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000213816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MTF.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000193552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000193336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000186464 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000163448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Security.Attestation.DeviceAttestation.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000149488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbrand.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000147944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000141728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000130872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000118472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvEmulation.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000109704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialUIBroker.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000103952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingFilterDS.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MuiUnattend.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsCtfMonitor.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-03-06 00:31 - 2020-03-06 00:31 - 000022002 _____ C:\Users\BETH\Desktop\mental health.odt
2020-03-05 23:06 - 2020-03-06 00:31 - 000000092 ____H C:\Users\BETH\Desktop\.~lock.mental health.odt#
2020-03-03 14:55 - 2020-03-03 14:55 - 000011811 _____ C:\Users\BETH\Desktop\House Bills Beginning November 2019 to End Jan 2020.odt
 
==================== One month (modified) ==================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2020-03-25 19:05 - 2017-12-13 02:10 - 000000000 ____D C:\ProgramData\{F7FC329F-7DBE-B859-FB78-261B613AADD5}
2020-03-25 18:21 - 2017-12-13 03:46 - 000000000 ____D C:\Users\BETH\AppData\LocalLow\Mozilla
2020-03-25 18:18 - 2018-12-19 20:30 - 000934840 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-03-25 18:18 - 2018-09-15 07:31 - 000000000 ____D C:\WINDOWS\INF
2020-03-25 18:18 - 2017-12-13 03:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2020-03-25 18:18 - 2015-09-13 14:58 - 000001239 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-03-25 18:16 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-03-25 18:15 - 2018-09-15 07:33 - 000000000 ___HD C:\Program Files\WindowsApps
2020-03-25 18:14 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2020-03-25 18:14 - 2018-09-15 07:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-03-25 18:13 - 2018-12-19 20:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-03-25 18:13 - 2018-09-15 06:09 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2020-03-25 18:13 - 2017-11-10 08:18 - 000065536 _____ C:\WINDOWS\psp_storage.bin
2020-03-25 17:27 - 2017-12-13 02:55 - 000000000 ____D C:\Program Files (x86)\AVG
2020-03-25 17:26 - 2018-09-15 07:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-03-25 17:21 - 2019-07-03 22:04 - 000000000 ____D C:\Users\BETH\AppData\Local\D3DSCache
2020-03-25 17:21 - 2018-12-19 20:26 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-03-25 17:21 - 2017-11-10 13:40 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-03-25 17:21 - 2017-11-10 13:40 - 000000870 _____ C:\ProgramData\Desktop\CCleaner.lnk
2020-03-25 17:13 - 2017-12-13 01:47 - 000000000 ____D C:\ProgramData\AVG
2020-03-25 16:57 - 2019-07-20 20:29 - 000000000 ____D C:\Users\BETH\AppData\Local\CrashDumps
2020-03-25 16:44 - 2017-12-13 01:47 - 000000000 ____D C:\ProgramData\AVAST Software
2020-03-25 16:22 - 2019-07-10 18:58 - 000000000 ____D C:\WINDOWS\Panther
2020-03-25 16:06 - 2017-12-19 10:52 - 000000000 ____D C:\Users\BETH\AppData\Roaming\audacity
2020-03-25 15:42 - 2019-03-25 11:29 - 000000000 ____D C:\Users\BETH\AppData\Local\ElevatedDiagnostics
2020-03-25 15:16 - 2018-12-19 20:17 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-03-25 11:57 - 2018-10-21 11:30 - 000000360 _____ C:\WINDOWS\Tasks\HPCeeScheduleForBETH.job
2020-03-25 11:47 - 2018-03-28 11:54 - 000000000 _____ C:\Users\BETH\Documents\HP ePrint
2020-03-25 11:14 - 2018-03-28 13:05 - 000002088 _____ C:\Users\Public\Desktop\HP Print and Scan Doctor.lnk
2020-03-25 11:14 - 2018-03-28 13:05 - 000002088 _____ C:\ProgramData\Desktop\HP Print and Scan Doctor.lnk
2020-03-25 06:55 - 2018-03-01 00:16 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-03-24 18:03 - 2019-06-28 10:27 - 000000092 ____H C:\Users\BETH\Desktop\.~lock.US SHARES 2019-20 Copy.ods#
2020-03-23 20:46 - 2018-12-19 20:26 - 000003248 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForBETH
2020-03-23 20:44 - 2018-12-19 20:26 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-259350032-3561555504-2751918716-1001
2020-03-23 20:44 - 2018-12-19 20:20 - 000002367 _____ C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-23 20:44 - 2017-12-09 15:19 - 000000000 ___RD C:\Users\BETH\OneDrive
2020-03-23 20:41 - 2019-02-18 18:43 - 000002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2020-03-23 20:41 - 2019-02-18 18:43 - 000002384 _____ C:\Users\Public\Desktop\Brave.lnk
2020-03-23 20:41 - 2019-02-18 18:43 - 000002384 _____ C:\ProgramData\Desktop\Brave.lnk
2020-03-21 14:15 - 2018-12-19 20:26 - 000003420 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-03-21 14:15 - 2018-12-19 20:26 - 000003296 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-03-18 18:19 - 2017-12-15 23:32 - 000002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-03-18 18:19 - 2017-12-15 23:32 - 000002267 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-03-18 18:19 - 2015-09-10 11:40 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-03-15 17:35 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-03-15 17:35 - 2017-12-13 03:46 - 000000000 ___RD C:\Users\BETH\3D Objects
2020-03-15 17:35 - 2017-03-18 03:53 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-03-15 17:34 - 2018-12-19 20:17 - 000719808 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-03-15 17:34 - 2017-11-10 08:21 - 000000000 ____D C:\ProgramData\Realtek
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ___RD C:\WINDOWS\PrintDialog
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ___RD C:\Program Files\Windows Defender
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\setup
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\ShellComponents
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-03-15 17:33 - 2018-09-15 06:09 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-03-15 17:33 - 2018-09-15 06:09 - 000000000 ____D C:\WINDOWS\servicing
2020-03-11 08:49 - 2017-12-12 10:55 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-03-11 08:43 - 2018-09-15 07:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-03-11 08:43 - 2017-12-12 10:55 - 121542864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-02-25 20:30 - 2018-04-17 23:53 - 000000000 ____D C:\Users\BETH\AppData\Local\Packages
 
==================== Files in the root of some directories ========
 
2017-12-09 15:17 - 2020-03-25 18:14 - 004771783 _____ () C:\Users\BETH\AppData\Local\BTServer.log
2019-10-19 18:29 - 2019-10-19 18:29 - 000011895 _____ () C:\Users\BETH\AppData\Local\recently-used.xbel
 
==================== SigCheck ============================
 
(There is no automatic fix for files that do not pass verification.)
 
==================== End of FRST.txt ========================
 
And Adition.txt
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-03-2020
Ran by BETH (25-03-2020 19:41:50)
Running from C:\Users\BETH\Desktop
Windows 10 Home Version 1809 17763.1098 (X64) (2018-12-19 20:26:22)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-259350032-3561555504-2751918716-500 - Administrator - Disabled)
BETH (S-1-5-21-259350032-3561555504-2751918716-1001 - Administrator - Enabled) => C:\Users\BETH
DefaultAccount (S-1-5-21-259350032-3561555504-2751918716-503 - Limited - Disabled)
Guest (S-1-5-21-259350032-3561555504-2751918716-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-259350032-3561555504-2751918716-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG Antivirus (Disabled - Out of date) {18A975F9-A60C-37D8-E30B-4BEF31AD3411}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: AVG Antivirus (Disabled - Out of date) {A3C8941D-8036-3856-D9BB-709D4A2A7EAC}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Amazon Kindle (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Amazon Kindle) (Version: 1.26.0.55076 - Amazon)
AMD Radeon Settings (HKLM\...\WUCCCApp) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.)
Amd Virtual Buttons (HKLM-x32\...\{c4533844-2182-4202-a5ae-b2b86ee0de48}) (Version: 1.1.7.1 - Softeq Development Corporation)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 20.1.2397 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 80.0.3765.150 - AVAST Software)
AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 20.1.3112 - AVG Technologies)
AVG Secure Browser (HKLM-x32\...\AVG Secure Browser) (Version: 80.0.3624.134 - AVG Technologies)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 1.0.1 - Bitdefender)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 80.1.5.115 - The Brave Authors)
Catalyst Control Center Next Localization BR (HKLM\...\{F19E577C-B96A-F5B4-C182-95DB528E738E}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{5C3A8F7B-BCBC-C606-1B29-663FC76C29F3}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{C063D61F-ACA0-0183-5418-CCBB0E970BB6}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{66412088-63B8-6DC0-5D6D-04EC3320AFF8}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{33DA9CCA-788F-BA66-A7D2-438F9E04D44C}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{BEB06773-0749-3D09-A468-26E3D8809CD3}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{6A943F2E-1420-F802-ED9A-4EE2D96416A8}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{769B7565-821D-5049-D4A8-C9E2711BA9E1}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{6BF5317D-5944-7B95-5D6E-80A3CF190572}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{E88DA42C-BE55-3C82-CA66-BA957A9849F7}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{9A5F310D-A58C-24E6-5B1D-B1444E4CCED7}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{A372146C-9135-D187-8DD1-0EE49D082480}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{182F1B4F-5B4C-9BAF-B009-162B89EEE456}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{1B85079E-5B56-B936-54BB-D9553B6EEA1B}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{6E9FD6B8-F8A3-5DE3-E48F-35EB8727B88F}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{93FA4450-5B45-E967-A210-F034831F6C22}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{94CE1BA4-1698-D27E-46DF-4BA15AB610D4}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{D363D01E-C047-2178-CFC1-57F93C9602C1}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{E2ED8680-FBAA-2EB2-B002-2CD8CDB9C5BC}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{7D33F00E-F5F8-7C7A-8008-964C4098EE45}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{D5078349-5904-44F3-FE0E-89F31B30865C}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.65 - Piriform)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)
Dropbox 25 GB (HKLM-x32\...\{84D8451D-2ED6-3A59-ABA5-2A447F7C6310}) (Version: 4.1.2.0 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
Energy Star (HKLM\...\{5CB22648-35F8-41BC-9C35-1E41FE6E12A5}) (Version: 1.1.1 - HP Inc.)
f.lux (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Flux) (Version:  - f.lux Software LLC)
GIMP 2.10.6 (HKLM\...\GIMP-2_is1) (Version: 2.10.6 - The GIMP Team)
Ginger (HKLM-x32\...\{1EBF9A59-F4E3-4EA7-BA97-76703C1432F6}) (Version: 3.7.179 - Ginger Software) Hidden
Ginger (HKLM-x32\...\InstallShield_{1EBF9A59-F4E3-4EA7-BA97-76703C1432F6}) (Version: 3.7.179 - Ginger Software)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.149 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.99.0 - Google Inc.) Hidden
Grammarly (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\GrammarlyForWindows) (Version: 1.5.39 - Grammarly)
HP Audio Switch (HKLM-x32\...\{3A5141D4-47DB-4302-9B1C-272BE585BC8A}) (Version: 1.0.179.0 - HP Inc.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.15.0 - HP Inc.)
HP CoolSense (HKLM-x32\...\{20CC03C7-7B48-4130-B7FA-39BC128E3A9E}) (Version: 2.21.5 - HP Inc.)
HP ENVY 4500 series Basic Device Software (HKLM\...\{6915424E-704F-4F5D-9057-9C7B406B36DB}) (Version: 32.3.198.49673 - Hewlett-Packard Co.)
HP ENVY 4500 series Help (HKLM-x32\...\{95BECC50-22B4-4FCA-8A2E-BF77713E6D3A}) (Version: 30.0.0 - Hewlett Packard)
HP ePrint SW (HKLM-x32\...\{54da9769-2364-4bd3-8139-6400500778b3}) (Version: 5.3.22034 - HP Inc.)
HP Pen Control (HKLM-x32\...\{259BAC8D-CF33-4229-84E9-22DC267A44A9}}_is1) (Version: 2.0.0.20 - ELAN microelectronics Corp.)
HP Support Assistant (HKLM-x32\...\{4780AF24-213D-4187-86F2-0014A6D6077B}) (Version: 8.8.24.33 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{00612F78-52C4-46C0-97F0-F50B6036B5E2}) (Version: 12.14.49.15 - HP Inc.)
HP System Event Utility (HKLM-x32\...\{1BB20774-0FA8-4CFF-AB69-7B7AAE2DCE6C}) (Version: 1.4.19 - HP Inc.)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
IrfanView 4.50 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.50 - Irfan Skiljan)
Kindle Create (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Kindle Create) (Version: 1.11.576.0 - Amazon)
Kindle Previewer 3 (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Kindle Previewer 3) (Version: 3.25.0 - Amazon)
LibreOffice 6.1.0.3 (HKLM\...\{DD50CAE9-27C5-452F-A910-1E7A00D8EEE2}) (Version: 6.1.0.3 - The Document Foundation)
Microsoft OneDrive (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Mozilla Firefox 69.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 69.0.1 (x64 en-US)) (Version: 69.0.1 - Mozilla)
Neon 0.0.7 (only current user) (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\211a501f-25dd-501b-8c98-509ac17aedfa) (Version: 0.0.7 - Ethan Fast)
OEM Application Profile (HKLM-x32\...\{B4B7FD8F-06FC-E277-4F29-8F75F8281D8F}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
OpenOffice 4.1.5 (HKLM-x32\...\{708F0253-F566-48F3-9B88-06F48F16548B}) (Version: 4.15.9789 - Apache Software Foundation)
REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.63 - REALTEK Semiconductor Corp.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.21299 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8720.1 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.90 - REALTEK Semiconductor Corp.)
Sky Go 1.4.15.0 (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\com.bskyb.skygoplayer_is1) (Version: 1.4.15.0 - Sky)
Skype version 8.37 (HKLM-x32\...\Skype_is1) (Version: 8.37 - Skype Technologies S.A.)
Vulkan Run Time Libraries 1.0.37.0 (HKLM\...\VulkanRT1.0.37.0) (Version: 1.0.37.0 - LunarG, Inc.)
WD Backup (HKLM-x32\...\{67C2F93C-8E4E-4BD2-863A-4DCE7EB359D9}) (Version: 1.2.5721.28811 - Western Digital Technologies, Inc) Hidden
WD Backup (HKLM-x32\...\{953eccd5-26ad-450b-af24-c50227e0fb74}) (Version: 1.2.5721.28811 - Western Digital Technologies, Inc.)
WD Drive Utilities (HKLM-x32\...\{48996CDD-DD81-4197-93FE-0971E73C5CA7}) (Version: 1.3.2.2 - Western Digital Technologies, Inc.) Hidden
WD Drive Utilities (HKLM-x32\...\{eab1fb93-61fb-48de-b815-b4e9b68d2ef1}) (Version: 1.3.2.2 - Western Digital Technologies, Inc.)
WD Quick View (HKLM-x32\...\{965D28B5-3C86-41FD-994E-D6376815C9B3}) (Version: 2.4.10.17 - Western Digital Technologies, Inc.)
WD Security (HKLM-x32\...\{249644e6-451a-4a5c-bd5c-21eeb9eec79d}) (Version: 1.3.1.2 - Western Digital Technologies, Inc.)
WD Security (HKLM-x32\...\{7CC2EDF2-83EC-4707-BDD3-72469236A6CC}) (Version: 1.3.1.2 - Western Digital Technologies, Inc.) Hidden
WildTangent ShortcutProvider (HKLM-x32\...\{80831F60-19D7-43B3-A60C-5CAF8C478DF6}) (Version: 1.0.0.60 - WildTangent) Hidden
Xperia Companion (HKLM-x32\...\{5b7c1b25-5fb6-442c-a1b5-cb8dfc2267bf}) (Version: 2.8.3.0 - Sony)
Xperia Companion (HKLM-x32\...\{66EABD35-6233-4926-9AB1-AB31CC6BC7D9}) (Version: 2.8.3.0 - Sony) Hidden
Xperia Companion Service (HKLM\...\{E41065E8-67E2-448F-940C-FF9D7C51E4E3}) (Version: 2.8.3.0 - Sony) Hidden
 
Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
HP Scan and Capture -> C:\Program Files\WindowsApps\AD2F1837.HPScanandCapture_40.0.245.0_x64__v10z8vjag6ke6 [2017-12-28] (Hewlett-Packard Company)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_110.1.671.0_x64__v10z8vjag6ke6 [2020-02-06] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2018-11-12] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
 
==================== Custom CLSID (Whitelisted): ==============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2017-02-16] (Advanced Micro Devices, Inc.) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
 
==================== Codecs (Whitelisted) ====================
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
ShortcutWithArgument: C:\Users\BETH\Desktop\Gmail fitt.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\Desktop\Gmail muds.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\Desktop\Google Calendar -.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mgfijnnecdoifcadgfpbajeonhfendki
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_nglheapbdkhgpidedbaaiohcgmkmilbo\Gmail [email protected] -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nglheapbdkhgpidedbaaiohcgmkmilbo
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_nghldiaiamokmpalgdbfiokpgapocnnf\Hootsuite.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_mngniccdaoonfbddldojodbjdfknokll\Time Converter and World Clock - Conv.._.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mngniccdaoonfbddldojodbjdfknokll
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_miilmjmgkdhdabfkjkilgecbhbchboem\Gmail mudskipps.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_kmhopmchchfpfdcdjodmpfaaphdclmlj\Gmail bethsmyls.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_celnaknmndcdcjcagffhbhciignkeokb\(1) Facebook.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=celnaknmndcdcjcagffhbhciignkeokb
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_bnlchlfjjebdblaoolggbonifknnfcpp\Google Calendar.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=bnlchlfjjebdblaoolggbonifknnfcpp
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail fitt.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail muds.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=bnlchlfjjebdblaoolggbonifknnfcpp
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar (2).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=fpjpknijfapadpaeaikbcmpfghnjeopa
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar - biz.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=ocbolilgjhgobopeapoajppmaoikccid
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar -.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mgfijnnecdoifcadgfpbajeonhfendki
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=bnlchlfjjebdblaoolggbonifknnfcpp
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Hootsuite (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Hootsuite (2).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Hootsuite.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Join a Meeting - Zoom.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=ajojicfljchadpndofllmcfcddapmpkn
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Time Converter and World Clock - Conv.._.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mngniccdaoonfbddldojodbjdfknokll
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gmail fitt.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gmail muds.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Calendar -.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mgfijnnecdoifcadgfpbajeonhfendki
 
==================== Loaded Modules (Whitelisted) =============
 
2020-02-14 13:50 - 2020-02-14 13:50 - 000138240 _____ ( ) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Interop.IWs06dcaa36#\803ddc517fb122da5941404364d527d7\Interop.IWshRuntimeLibrary.ni.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000011776 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 002013696 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000014336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000739840 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000191488 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000071168 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000014336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2015-09-03 08:55 - 2015-09-03 08:55 - 000333824 _____ (Ginger Software) [File not signed] C:\Program Files (x86)\Ginger\GingerUpdateService\GSDL.dll
2020-02-14 13:50 - 2020-02-14 13:50 - 000134656 _____ (hardcodet.net) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Hardcodet.W6cab32f3#\71e1b3de68bbf0e60ccc7503889c4fd8\Hardcodet.Wpf.TaskbarNotification.ni.dll
2020-02-14 13:50 - 2020-02-14 13:50 - 001701888 _____ (Mark Heath & Contributors) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\NAudio\9916d9afb7a4640017518813b2dcbbf4\NAudio.ni.dll
2020-02-14 13:50 - 2020-02-14 13:50 - 003060736 _____ (Newtonsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Newtonsoft.Json\7b0f325f64aa9777a67acba7d9ae5e03\Newtonsoft.Json.ni.dll
2020-02-14 13:48 - 2020-02-14 13:48 - 000793088 _____ (The Apache Software Foundation) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\log4net\bcb2909b52552fdb2ac2c83f49f28a34\log4net.ni.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000049664 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qdds.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000029696 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000037376 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000030208 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000459776 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjp2.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000236544 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000275456 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qmng.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000023552 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000022528 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000351744 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtiff.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000021504 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000374784 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 001212416 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000912384 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Charts.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 005496320 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 005804544 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 001061376 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 003187712 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 002924544 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000310784 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 005444608 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000277504 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000193024 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
 
==================== Alternate Data Streams (Whitelisted) ========
 
==================== Safe Mode (Whitelisted) ==================
 
==================== Association (Whitelisted) =================
 
==================== Internet Explorer trusted/restricted ==========
 
==================== Hosts content: =========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2017-03-18 21:03 - 2017-03-18 21:01 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
 
==================== Other Areas ===========================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\BETH\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\internet explorer wallpaper.bmp
DNS Servers: 194.168.4.100 - 194.168.8.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(If an entry is included in the fixlist, it will be removed.)
 
MSCONFIG\Services: AJRouter => 3
HKLM\...\StartupApproved\StartupFolder: => "Ginger.lnk"
HKLM\...\StartupApproved\Run32: => "WDAppManager"
HKLM\...\StartupApproved\Run32: => "WD Drive Unlocker"
HKLM\...\StartupApproved\Run32: => "DriveUtilitiesHelper"
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\StartupApproved\Run: => "HP ENVY 4500 series (NET)"
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\StartupApproved\Run: => "XperiaCompanionAgent"
 
==================== FirewallRules (Whitelisted) ================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{D00E443E-A4EB-48FF-A252-81E75AA11D10}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{50115D1F-6B84-4CCA-B325-EF688EE558F6}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{A39C0F23-FDB4-4AE3-B6EF-12388ECE234A}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{F65CD848-534C-4C96-B64A-97221A42F7B0}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{C4C60CA7-3AA2-48C2-9EC0-9E4C20798007}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [TCP Query User{9BF470A1-FBA7-4B56-95DF-672EB8EA48CC}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [UDP Query User{DA5A6993-B4E5-48CF-BA52-BFE848308991}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [TCP Query User{A8EE502F-DB07-4825-B766-003381E8B1C6}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [UDP Query User{14EEFBB1-31AC-42D4-8C68-E300793B2CA0}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [TCP Query User{B56344F2-400C-4447-9DE8-EFC3A6CE8CBA}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [UDP Query User{50C4BFAC-5581-4A69-A3E8-CDF9E3CD4DF2}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [TCP Query User{324EE441-62F0-4718-9736-6713B9A3D840}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [UDP Query User{A5B282E5-BA42-4423-B85E-639B10E0AB67}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [TCP Query User{66018E01-D64F-4B02-B18F-7451215247F8}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [UDP Query User{879D30EC-C012-4AE3-9CE2-8F770D66DB2D}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe () [File not signed]
FirewallRules: [TCP Query User{ADC54DF6-6D04-4EFB-8C64-57061757CD12}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe () [File not signed]
FirewallRules: [UDP Query User{294F16E6-A9D3-42C1-AE0D-ABD18BAD3133}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [TCP Query User{F62C0FB8-620D-4978-9ECA-81C530652D61}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [UDP Query User{CA18A181-9B86-444C-9B6C-04EF5F32D4E9}C:\itunes\itunes.exe] => (Allow) C:\itunes\itunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{9853EC8B-2F3B-469B-A304-09C454C3FADD}C:\itunes\itunes.exe] => (Allow) C:\itunes\itunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{7890E50B-118E-4EBE-89B5-AA15FB35EB9A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{8094509D-BF4F-45B3-9286-4381EFCEDAF5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{EADD9160-5046-487D-B4B0-ACADBA6927FE}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{7DDFF63E-9D3A-4259-9D68-EAE421DBE574}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{05E4561A-3861-4E51-A5D3-08E298E33FBD}] => (Allow) C:\Program Files\HP\HP ENVY 4500 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{D28416D5-7021-4162-807A-C98C0ED46CD9}] => (Allow) LPort=5357
FirewallRules: [{90FDAEF9-453B-48DB-847E-A96089A5EAD4}] => (Allow) C:\Program Files\HP\HP ENVY 4500 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{5B10767B-0679-4ADC-89C2-DED60C717416}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1F4F7BC1-51C7-4B47-94B7-3BE6BA5E77DD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{28CF5D21-3B12-4546-9FD5-3EFEEADCD4E1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{353C3CB0-16AB-4EFA-95CE-E451BD942241}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E1D36C49-0C4E-4838-BAD7-F0E51DEE044A}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{36F32AFB-B5C9-460D-9F93-3D0BAFE4F55A}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{AB58FED1-6473-4741-B888-21CEFF736010}C:\users\beth\appdata\roaming\sky\sky go\sky go.exe] => (Allow) C:\users\beth\appdata\roaming\sky\sky go\sky go.exe (Sky UK Limited -> Sky UK)
FirewallRules: [UDP Query User{AF782DA4-F34E-4617-80A6-48DA4E9686E2}C:\users\beth\appdata\roaming\sky\sky go\sky go.exe] => (Allow) C:\users\beth\appdata\roaming\sky\sky go\sky go.exe (Sky UK Limited -> Sky UK)
FirewallRules: [{3324C49B-AF81-49E4-A65A-34D01E4AB967}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS059C\HPDiagnosticCoreUI.exe No File
FirewallRules: [{711A1576-DBCB-44DE-AC34-7F75F765A71E}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS059C\HPDiagnosticCoreUI.exe No File
FirewallRules: [TCP Query User{B5A299A4-BC03-4087-93D5-17960A886D52}C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe] => (Allow) C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe No File
FirewallRules: [UDP Query User{CB432846-FB5D-4F26-BA9D-C6C34A931716}C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe] => (Allow) C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe No File
FirewallRules: [{A62D9C6C-8958-4DFB-A52B-C1E360929F2D}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS17F9\HPDiagnosticCoreUI.exe No File
FirewallRules: [{578E924B-99EB-4966-A056-517A471901A7}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS17F9\HPDiagnosticCoreUI.exe No File
FirewallRules: [{7D27C104-060E-4AB2-BEB7-2680D2F4CAED}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS18C7\HPDiagnosticCoreUI.exe No File
FirewallRules: [{B743FC8D-08F0-4D31-A0CE-CC683B9A6E26}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS18C7\HPDiagnosticCoreUI.exe No File
FirewallRules: [{5A00EDD8-EC2F-4456-8895-3E2A2E68A9AD}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe (Sony Mobile Communications AB -> Sony)
FirewallRules: [{3BF6885F-0BA6-4462-8B95-E73DD12E9891}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{46F41944-368C-49B3-AF31-397255A7F5FB}] => (Allow) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{FA30F225-E0F4-469C-8071-7A5D28B71F7A}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2E32\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{A1783E92-96B7-4DAF-A4C6-9F08D085D95A}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2E32\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{D4A1DFA6-B891-49CB-8D3D-C1FF6537B91C}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2F17\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{966BF1A5-A91B-43E6-BA94-5F8F5C62B5E4}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2F17\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{6089B0DA-EA15-4C2E-92BB-1E3E2335EBE7}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS4616\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{031844B1-5B4B-4DB0-B173-133C040D4159}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS4616\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{14862E95-09E9-440A-B183-900492B23A0B}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{B3A4DCE5-7029-4F98-9CD6-9D7BDE78442D}] => (Allow) C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe (AVG Technologies USA, LLC -> AVG Technologies)
 
==================== Restore Points =========================
 
11-03-2020 08:07:11 Windows Update
19-03-2020 07:50:32 Scheduled Checkpoint
 
==================== Faulty Device Manager Devices ============
 
Name: HID-compliant touch screen
Description: HID-compliant touch screen
Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Manufacturer: (Standard system devices)
Service: 
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
==================== Event log errors: ========================
 
Application errors:
==================
Error: (03/25/2020 07:32:43 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: AVG Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 06:58:10 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 06:33:29 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: AVG Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 06:23:02 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Audacity\audacity.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.17763.1098_none_de762ed45346ee8a.manifest.
Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.17763.1098_none_262365ab67c31790.manifest.
 
Error: (03/25/2020 05:58:29 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 05:32:53 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: AVG Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 05:02:42 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 04:57:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: securebrowser_setup_15851551189860.exe, version: 6.4.5.1885, time stamp: 0x597fcc77
Faulting module name: jsis.dll_unloaded, version: 1.0.0.393, time stamp: 0x5da37407
Exception code: 0xc0000005
Fault offset: 0x000050a0
Faulting process ID: 0x1f00
Faulting application start time: 0x01d602c5b94d1957
Faulting application path: C:\Program Files\AVAST Software\Avast\setup\securebrowser_setup_15851551189860.exe
Faulting module path: jsis.dll
Report ID: 23137e95-38af-46ef-8802-d537134b80fb
Faulting package full name: 
Faulting package-relative application ID:
 
 
System errors:
=============
Error: (03/25/2020 07:28:43 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:38:47 PM) (Source: BTHUSB) (EventID: 5) (User: )
Description: The Bluetooth driver expected an HCI event with a certain size but did not receive it.
 
Error: (03/25/2020 06:37:36 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:37:16 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:29:53 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:29:22 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:29:20 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:28:18 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
 
Windows Defender:
===================================
Date: 2020-02-15 18:27:07.959
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {D6DCC298-1583-4EC2-8E9B-FB9F4BA1E10E}
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2020-02-14 13:52:09.313
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {729C1B82-EC35-4949-BA9D-4AE94A156C5D}
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
CodeIntegrity:
===================================
 
Date: 2020-03-25 19:43:01.037
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:43:00.697
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:38:03.068
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:38:00.842
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:35:58.150
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:35:44.555
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:34:16.554
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:34:10.438
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
==================== Memory info =========================== 
 
BIOS: Insyde F.04 07/12/2017
Motherboard: HP 8312
Processor: AMD A9-9420 RADEON R5, 5 COMPUTE CORES 2C+3G 
Percentage of memory in use: 72%
Total physical RAM: 7647.18 MB
Available physical RAM: 2134.78 MB
Total Virtual: 18399.18 MB
Available Virtual: 11540.77 MB
 
==================== Drives ================================
 
Drive c: (Windows) (Fixed) (Total:222.99 GB) (Free:78.61 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:14.25 GB) (Free:14.19 GB) NTFS
 
\\?\Volume{3457130b-1a01-4c24-81c2-98d98c8f7562}\ (Windows RE tools) (Fixed) (Total:0.96 GB) (Free:0.36 GB) NTFS
\\?\Volume{6ac0d53e-55d4-4071-be5a-7f570807596e}\ () (Fixed) (Total:0.25 GB) (Free:0.15 GB) FAT32
 
==================== MBR & Partition Table ====================
 
==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: A50E1C7D)
 
Partition: GPT.
 
==================== End of Addition.txt =======================

  • 0

#5
zclesa

zclesa

    Member

  • Topic Starter
  • Member
  • PipPip
  • 14 posts

 

Thanks so much mate FRST.txt log

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-03-2020
Ran by BETH (administrator) on DESKTOP-RRNF5R7 (HP HP ENVY x360 Convertible 15-bq0xx) (25-03-2020 19:39:29)
Running from C:\Users\BETH\Desktop
Loaded Profiles: BETH (Available Profiles: BETH)
Platform: Windows 10 Home Version 1809 17763.1098 (X64) Language: English (United Kingdom)
Default browser: "C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe" -- "%1"
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Advanced Micro Devices, Inc. -> ) C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Avast Software s.r.o. -> ) C:\Program Files\AVAST Software\Avast\AvastNM.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.6.605.0\AvastBrowserCrashHandler.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.6.605.0\AvastBrowserCrashHandler64.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(AVG Technologies USA, Inc. -> AVG Technologies) C:\Program Files (x86)\AVG\Browser\Update\1.6.609.0\AVGBrowserCrashHandler.exe
(AVG Technologies USA, Inc. -> AVG Technologies) C:\Program Files (x86)\AVG\Browser\Update\1.6.609.0\AVGBrowserCrashHandler64.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\DiscoverySrv.exe
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(F.lux Software LLC -> f.lux Software LLC) C:\Users\BETH\AppData\Local\FluxSoftware\Flux\flux.exe
(Ginger Software inc -> Ginger Software) C:\Program Files (x86)\Ginger\GingerUpdateService\GingerUpdateService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(HP Inc. -> HP Development Company, L.P.) C:\Program Files (x86)\HP\HP CoolSense\CoolSense.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19081.28230.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1910.0.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20212.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20212.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20022.81.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtAudioServ.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTServer.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Sony) [File not signed] C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe
(Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
 
==================== Registry (Whitelisted) ===================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [231640 2016-09-20] (Realtek Semiconductor Corp -> Realtek Semiconductor Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [277664 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [325704 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [1062392 2017-03-15] (HP Inc. -> HP Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [WDAppManager] => C:\Program Files (x86)\Western Digital\WD App Manager\AppManagerLauncher.exe [14688 2015-08-31] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [WD Quick View] => C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5564784 2015-02-12] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [WD Drive Unlocker] => C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe [1761120 2015-12-07] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [DriveUtilitiesHelper] => C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [1890664 2016-01-14] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [HP ENVY 4500 series (NET)] => C:\Program Files\HP\HP ENVY 4500 series\Bin\ScanToPCActivationApp.exe [3487240 2014-07-21] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [f.lux] => C:\Users\BETH\AppData\Local\FluxSoftware\Flux\flux.exe [1385480 2019-08-30] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [1687392 2019-10-22] (Sony Mobile Communications AB -> Sony)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [AvastBrowserAutoLaunch_985DEF4921D213B104994FE16EF7B88F] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2023832 2020-03-19] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\MountPoints2: {3d453b0a-199c-11e9-99c2-b05216366f28} - "F:\startme.exe" 
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\MountPoints2: {4f2a635e-515e-11e9-99c8-b05216366f28} - "F:\startme.exe" 
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\MountPoints2: {70328973-fae3-11e7-9959-b05216366f28} - "E:\WD Drive Unlock.exe" autoplay=true
HKLM\Software\Microsoft\Active Setup\Installed Components: [{48F69C39-1356-4A7B-A899-70E3539D4982}] -> C:\Program Files (x86)\AVG\Browser\Application\80.0.3624.134\Installer\chrmstp.exe [2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe [2020-03-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\80.0.3765.150\Installer\chrmstp.exe [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\80.1.5.115\Installer\chrmstp.exe [2020-03-23] (Brave Software, Inc.) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Ginger.lnk [2017-12-27]
ShortcutTarget: Ginger.lnk -> C:\Windows\Installer\{1EBF9A59-F4E3-4EA7-BA97-76703C1432F6}\GingerClientStartu_E7648186C0BE4AE6AF2E431C614DBB20.exe (Flexera Software LLC) [File not signed]
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
 
==================== Scheduled Tasks (Whitelisted) ============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {07515A5C-6228-4E62-8A4D-DCE4A7C982F9} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2023832 2020-03-19] (Avast Software s.r.o. -> AVAST Software)
Task: {08B3B8C2-6481-450F-B109-E95179069C53} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [308088 2020-02-12] (HP Inc. -> HP Inc.)
Task: {0AB4B3B2-DA89-40D8-A5C3-38513F2DC1D4} - System32\Tasks\HPCeeScheduleForBETH => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [97656 2018-09-11] (HP Inc. -> HP Inc.)
Task: {0E3B1F45-B57E-46A0-8C0F-1D48259609AD} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [52104 2017-02-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {228252BC-A87A-4F2C-99BB-E0092A345396} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2016-12-06] (HP Inc. -> HP Inc.)
Task: {37108D90-D44C-41FA-8FB7-0DE55F469871} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1116024 2020-02-26] (HP Inc. -> HP Inc.)
Task: {49989AB4-0488-4998-9740-EA80F37D7C8F} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [199376 2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
Task: {596EDB11-74C5-4339-B8E9-2A0C07A6A19D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {5A5E0904-28CA-4649-A283-14E5182E98AD} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5B8A15CB-A980-4438-B322-A6C47C299309} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [2026976 2020-03-09] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {5CDBB4B6-0EF4-4D78-9DD0-955E864E16CC} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5F235F4A-C007-435C-B23C-57CF5B99CA62} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [489272 2019-08-07] (Bitdefender SRL -> Bitdefender)
Task: {63414BE2-0D79-446C-BDD9-082E6E9AF8AF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1116024 2020-02-26] (HP Inc. -> HP Inc.)
Task: {636E28A0-E18B-46A0-93F3-CAE915CCBD97} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-10] (Google Inc -> Google Inc.)
Task: {66B56894-5D17-40C6-8D15-8470FE3D0F20} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {6749149A-FBBB-4600-994E-05C858FEA3D8} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3894664 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
Task: {6DE168B7-79B3-45D8-BEFD-05A117E34228} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [3942704 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
Task: {7168BE73-1E47-40CF-B60E-BB681F6B8EF2} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe
Task: {72FCDAFB-B1CA-467E-A112-EB9CCB06DBEC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-10] (Google Inc -> Google Inc.)
Task: {7CF72DF1-F4EF-47FE-961A-9EEE96CB67CA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [147832 2020-02-24] (HP Inc. -> HP Inc.)
Task: {7F5277CC-3DA4-442C-AA52-C89C3F83CF51} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.)
Task: {9012EFC1-72F4-402F-8537-584159FB42B0} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2023832 2020-03-19] (Avast Software s.r.o. -> AVAST Software)
Task: {97FB53A6-053F-4B04-B693-DBBDB85FEDB1} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs]
Task: {A7D04C2B-0789-49A0-AFB0-302DA70088E3} - System32\Tasks\HP\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\HP\HP CoolSense\CoolSense.exe [1356648 2017-01-12] (HP Inc. -> HP Development Company, L.P.)
Task: {AC830C9A-E993-40A4-95F4-5EFE89EED3C1} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {AFD848C2-DA05-4FCF-B816-94A7A9512D91} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [2026976 2020-03-09] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {B05D93B8-0483-4D3B-AE06-EC3AD9876AA5} - System32\Tasks\AVGUpdateTaskMachineUA => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [217528 2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
Task: {BFCC10E8-4CB8-4440-83AF-3FE8329D6B4C} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9277528 2019-06-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {C83FA2BD-F570-478F-82C3-546E04AEE8EB} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [199376 2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
Task: {CD51F404-07D0-4064-A59F-194B907BBE98} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1692296 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {D8F39F0D-CEE0-4B4D-BDD8-614B34A0B74F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {DDAACF5B-F0AB-48D4-8A20-97416AC7F122} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1660520 2020-03-25] (Avast Software s.r.o. -> Avast Software)
Task: {E278F2FB-7BD0-4055-8F5E-C0445A8702CA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {E494E78B-B81A-49AE-9C4A-C04EE8E93E39} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
Task: {E8F38C78-F8CB-4B73-9E84-CBC8898A4F8A} - System32\Tasks\AVGUpdateTaskMachineCore => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [217528 2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
Task: {F1F83EE3-4BCC-413F-9D9E-DB77BBFF78DA} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForBETH.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 194.168.4.100 194.168.8.100
Tcpip\..\Interfaces\{32cfc47b-1c9b-40f4-8bad-ca172193dc8c}: [DhcpNameServer] 194.168.4.100 194.168.8.100
Tcpip\..\Interfaces\{d538f888-2a26-47fc-bb77-ff0e288a7bc4}: [DhcpNameServer] 172.168.0.7
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
SearchScopes: HKLM -> {7A28FEF7-F36F-4C62-BE8E-C078206D42A9} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {7A28FEF7-F36F-4C62-BE8E-C078206D42A9} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-259350032-3561555504-2751918716-1001 -> {7A28FEF7-F36F-4C62-BE8E-C078206D42A9} URL = 
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -> HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -> HP Inc.)
IE Session Restore: HKU\S-1-5-21-259350032-3561555504-2751918716-1001 -> is enabled.
 
Edge: 
======
DownloadDir: C:\Users\BETH\Downloads
Edge Session Restore: HKU\S-1-5-21-259350032-3561555504-2751918716-1001 -> is enabled.
 
FireFox:
========
FF DefaultProfile: lewi11ew.default
FF ProfilePath: C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default [2020-03-25]
FF Homepage: Mozilla\Firefox\Profiles\lewi11ew.default -> about:blank
FF Session Restore: Mozilla\Firefox\Profiles\lewi11ew.default -> is enabled.
FF Extension: (Firebug) - C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default\Extensions\[email protected] [2018-01-02] [Legacy]
FF Extension: (LastPass: Free Password Manager) - C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default\Extensions\[email protected] [2020-03-23]
FF Extension: (uBlock Origin) - C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default\Extensions\[email protected] [2019-02-14]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Ginger\Mozilla\[email protected]
FF Extension: (Ginger) - C:\Program Files (x86)\Ginger\Mozilla\[email protected] [2017-12-13] [Legacy] [not signed]
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.6.605.0\npAvastBrowserUpdate3.dll [2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.6.605.0\npAvastBrowserUpdate3.dll [2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.6.609.0\npAvgBrowserUpdate3.dll [2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.6.609.0\npAvgBrowserUpdate3.dll [2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
FF Plugin HKU\S-1-5-21-259350032-3561555504-2751918716-1001: gingersoftware.com/gingerPlugin -> C:\Program Files (x86)\Ginger\GingerServices\GingerServicesProxy.dll [2017-03-21] (Ginger Software) [File not signed]
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default [2020-03-25]
CHR HomePage: Default -> hxxp://www.google.co.uk/
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3331316&octid=EB_ORIGINAL_CTID&ISID=MCFFD7245-7BC9-49DC-B424-F05055F63456&SearchSource=55&CUI=&UM=6&UP=SPA78BD1B1-1931-4ADE-8DDA-972D132E8B49&SSPV="
CHR Session Restore: Default -> is enabled.
CHR Extension: (Slides) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-12-15]
CHR Extension: (Join a Meeting - Zoom) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajojicfljchadpndofllmcfcddapmpkn [2018-01-01]
CHR Extension: (Docs) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-12-15]
CHR Extension: (Google Drive) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-21]
CHR Extension: (YouTube) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-12-15]
CHR Extension: (Firebug Lite for Google Chrome™) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmagokdooijbeehmkpknfglimnifench [2018-01-01]
CHR Extension: (Google Calendar) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnlchlfjjebdblaoolggbonifknnfcpp [2018-01-01]
CHR Extension: ((1) Facebook) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\celnaknmndcdcjcagffhbhciignkeokb [2018-01-01]
CHR Extension: (uBlock Origin) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2020-02-14]
CHR Extension: (Alexa Traffic Rank) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel [2019-08-05]
CHR Extension: (Google Calendar) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2018-01-01]
CHR Extension: (Sheets) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-12-15]
CHR Extension: (Google Calendar) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpjpknijfapadpaeaikbcmpfghnjeopa [2018-01-01]
CHR Extension: (Google Docs Offline) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-15]
CHR Extension: (World Time Buddy) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdhpjomiingppeefgnohkiapmnaeakoj [2018-01-01]
CHR Extension: (Grammarly for Chrome) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2020-03-25]
CHR Extension: (Grammar and Spelling checker by Ginger) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdfieneakcjfaiglcfcgkidlkmlijjnh [2020-02-14]
CHR Extension: (The Great Suspender) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\klbibkeccnjlkjkiokjodocebajanakg [2019-08-31]
CHR Extension: (Gmail fitt) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhopmchchfpfdcdjodmpfaaphdclmlj [2017-12-17]
CHR Extension: (Google Calendar -) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgfijnnecdoifcadgfpbajeonhfendki [2017-12-16]
CHR Extension: (Gmail muds) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\miilmjmgkdhdabfkjkilgecbhbchboem [2017-12-17]
CHR Extension: (Time Converter and World Clock - Conv...) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\mngniccdaoonfbddldojodbjdfknokll [2018-01-01]
CHR Extension: (Hootsuite) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nghldiaiamokmpalgdbfiokpgapocnnf [2018-01-01]
CHR Extension: (Gmail Bethsmyls@gmail) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nglheapbdkhgpidedbaaiohcgmkmilbo [2018-01-01]
CHR Extension: (MetaMask) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2020-03-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]
CHR Extension: (Cite This For Me: Web Citer) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnnmhgkokpalnmbeighfomegjfkklkle [2018-01-01]
CHR Extension: (Buffer) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\noojglkidnpfjbincgijbaiedldjfbhh [2020-03-25]
CHR Extension: (Google Calendar - biz) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocbolilgjhgobopeapoajppmaoikccid [2018-01-01]
CHR Extension: (Nash Extension) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\onofpnbbkehpmmoabgpcpmigafmmnjhl [2019-03-01]
CHR Extension: (Gmail) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-24]
CHR Extension: (Chrome Media Router) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-25]
CHR Profile: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-08-14]
CHR Profile: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\System Profile [2018-08-14]
CHR HKLM\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Program Files (x86)\EagleGet\addon\[email protected] <not found>
CHR HKU\S-1-5-21-259350032-3561555504-2751918716-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [hdkdmoacnkphoadmfidlhfdobieblphn] - C:\Program Files (x86)\EagleGet\addon\eagleget_newtab.crx <not found>
 
==================== Services (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [155016 2017-02-16] (Advanced Micro Devices, Inc. -> )
R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe [508000 2019-09-18] (Advanced Micro Devices, Inc. -> AMD)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6046624 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [199376 2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [413472 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [199376 2020-03-25] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\80.0.3765.150\elevation_service.exe [1124080 2020-03-19] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57536 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
S2 avg; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [217528 2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [413544 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [6094272 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgm; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [217528 2020-03-25] (AVG Technologies USA, Inc. -> AVG Technologies)
S3 AVGSecureBrowserElevationService; C:\Program Files (x86)\AVG\Browser\Application\80.0.3624.134\elevation_service.exe [1124112 2020-03-09] (AVG Technologies USA, LLC -> AVG Technologies)
R2 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [110608 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [126944 2017-03-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
R2 GingerUpdateService; C:\Program Files (x86)\Ginger\GingerUpdateService\GingerUpdateService.exe [534200 2017-03-21] (Ginger Software inc -> Ginger Software)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1321096 2018-09-28] (HP Inc. -> HP Inc.)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [361848 2019-12-06] (HP Inc. -> HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [630776 2017-02-06] (HP Inc. -> HP Inc.)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1296560 2019-08-07] (Bitdefender SRL -> Bitdefender)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [267552 2019-06-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 RtkBtAudioServ; C:\WINDOWS\RtkBtAudioServ.exe [215992 2018-05-31] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [738712 2019-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 SynTPEnhService; C:\WINDOWS\System32\SynTPEnhService.exe [394672 2019-04-16] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WD Backup Drive Helper; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{4AB831D3-8315-414C-8A7A-303105288D0B} [19256 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WD Backup Drive Helper; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{4AB831D3-8315-414C-8A7A-303105288D0B} [19256 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WD Backup Snapshot; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{302480DF-3AC5-4400-BE7B-DD77AF93B6DD} [19256 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WD Backup Snapshot; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{302480DF-3AC5-4400-BE7B-DD77AF93B6DD} [19256 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [308088 2015-12-07] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\NisSrv.exe [3294680 2020-03-25] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MsMpEng.exe [103168 2020-03-25] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2548224 2019-10-22] (Sony) [File not signed]
 
===================== Drivers (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 Accelerometer; C:\WINDOWS\System32\drivers\Accelerometer.sys [53904 2019-07-22] (HP Inc. -> HP)
R3 AmdAS4; C:\WINDOWS\System32\drivers\AmdAS4.sys [35848 2019-04-22] (Advanced Micro Devices Inc. -> Advanced Micro Devices, INC.)
R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [34568 2019-04-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 amdi2c; C:\WINDOWS\System32\drivers\amdi2c.sys [61728 2019-04-18] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [49448 2016-08-17] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 amdkmcsp; C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys [101232 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atikmdag.sys [55249504 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atikmpag.sys [595040 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdpsp; C:\WINDOWS\System32\DRIVERS\amdpsp.sys [146304 2019-04-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
R3 amduart; C:\WINDOWS\System32\drivers\amduart.sys [89640 2019-04-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc)
R0 amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [92400 2016-08-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R0 amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [32496 2016-08-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37864 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [205576 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [271120 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [206608 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [64272 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2020-03-25] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [279360 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42976 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [175400 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110560 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84056 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848672 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [458584 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [235184 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316256 2020-03-25] (Avast Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [101376 2017-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R0 avgArDisk; C:\WINDOWS\System32\drivers\avgArDisk.sys [37928 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [206160 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriver.sys [271704 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsh.sys [207192 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniv.sys [64344 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgElam; C:\WINDOWS\System32\drivers\avgElam.sys [16520 2020-03-25] (Microsoft Windows Early Launch Anti-malware Publisher -> AVG Technologies CZ, s.r.o.)
S3 avgKbd; C:\WINDOWS\System32\drivers\avgKbd.sys [43560 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [175472 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [111144 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [84096 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [849256 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [459192 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [235280 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [316840 2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 EzTouchFilter; C:\WINDOWS\System32\drivers\EzTouchFilter.sys [64192 2018-12-20] (ELAN Microelectronics Corporation -> ELAN)
R0 hpdskflt; C:\WINDOWS\System32\drivers\hpdskflt.sys [41104 2019-07-22] (HP Inc. -> HP)
R3 HpqKbFiltr; C:\WINDOWS\System32\drivers\HpqKbFiltr64.sys [37112 2015-06-17] (Hewlett-Packard Company -> Hewlett-Packard Company)
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [787232 2019-11-30] (WDKTestCert VSAuto,131800073559665678 -> Realtek Semiconductor Corporation)
S3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [782304 2017-04-19] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
S3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3221504 2017-02-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [11722328 2019-12-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
R0 secnvme; C:\WINDOWS\System32\drivers\secnvme.sys [134000 2019-01-21] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd)
R3 SmbDrv; C:\WINDOWS\system32\DRIVERS\Smb_driver_AMDASF.sys [53864 2018-09-21] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [64088 2017-04-17] (Synaptics Incorporated -> Synaptics Incorporated)
R3 VirtualButtons; C:\WINDOWS\System32\drivers\VirtualButtons.sys [32984 2017-04-07] (Softeq Development Corporation -> Softeq Development Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45960 2020-03-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [391392 2020-03-25] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [59104 2020-03-25] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2019-11-15] (HP Inc. -> HP)
U3 avgbdisk; no ImagePath
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) ===================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2020-03-25 19:39 - 2020-03-25 19:40 - 000049374 _____ C:\Users\BETH\Desktop\FRST.txt
2020-03-25 19:39 - 2020-03-25 19:40 - 000000000 ____D C:\FRST
2020-03-25 19:36 - 2020-03-25 19:36 - 002279936 _____ (Farbar) C:\Users\BETH\Desktop\FRST64.exe
2020-03-25 17:28 - 2020-03-25 17:28 - 000003826 _____ C:\WINDOWS\system32\Tasks\AVG Secure Browser Heartbeat Task (Hourly)
2020-03-25 17:28 - 2020-03-25 17:28 - 000003242 _____ C:\WINDOWS\system32\Tasks\AVG Secure Browser Heartbeat Task (Logon)
2020-03-25 17:28 - 2020-03-25 17:28 - 000002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Secure Browser.lnk
2020-03-25 17:27 - 2020-03-25 17:27 - 000003412 _____ C:\WINDOWS\system32\Tasks\AVGUpdateTaskMachineUA
2020-03-25 17:27 - 2020-03-25 17:27 - 000003288 _____ C:\WINDOWS\system32\Tasks\AVGUpdateTaskMachineCore
2020-03-25 17:26 - 2020-03-25 17:26 - 000235280 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys
2020-03-25 17:26 - 2020-03-25 17:26 - 000111144 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRdr2.sys
2020-03-25 17:26 - 2020-03-25 17:13 - 000368088 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe
2020-03-25 17:17 - 2020-03-25 18:14 - 000002006 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG AntiVirus FREE.lnk
2020-03-25 17:17 - 2020-03-25 18:14 - 000001994 _____ C:\Users\Public\Desktop\AVG AntiVirus FREE.lnk
2020-03-25 17:17 - 2020-03-25 18:14 - 000001994 _____ C:\ProgramData\Desktop\AVG AntiVirus FREE.lnk
2020-03-25 17:17 - 2020-03-25 17:28 - 000000000 ____D C:\Users\BETH\AppData\Local\Avg
2020-03-25 17:17 - 2020-03-25 17:17 - 000000000 ____D C:\Users\BETH\AppData\Roaming\AVG
2020-03-25 17:14 - 2020-03-25 17:30 - 000003992 _____ C:\WINDOWS\system32\Tasks\Antivirus Emergency Update
2020-03-25 17:14 - 2020-03-25 17:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVG
2020-03-25 17:13 - 2020-03-25 17:31 - 000459192 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSP.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000849256 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSnx.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000316840 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgVmm.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000271704 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsdriver.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000207192 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsh.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000206160 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgArPot.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000175472 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000084096 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRvrt.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000064344 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbuniv.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000043560 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgKbd.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000037928 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgArDisk.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000016520 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgElam.sys
2020-03-25 17:13 - 2020-03-25 17:13 - 000000000 ____D C:\Program Files\Common Files\AVG
2020-03-25 17:12 - 2020-03-25 17:12 - 000000000 ____D C:\Program Files\AVG
2020-03-25 17:10 - 2020-03-25 17:10 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\BETH\Downloads\avg_antivirus_free_setup (1).exe
2020-03-25 17:07 - 2020-03-25 17:07 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\BETH\Downloads\avg_antivirus_free_setup.exe
2020-03-25 17:01 - 2020-03-25 17:01 - 022267336 _____ (Piriform Software Ltd) C:\Users\BETH\Downloads\ccsetup565.exe
2020-03-25 16:54 - 2020-03-25 18:27 - 000000000 ____D C:\Users\BETH\AppData\Local\AVAST Software
2020-03-25 16:54 - 2020-03-25 16:54 - 000003856 _____ C:\WINDOWS\system32\Tasks\Avast Secure Browser Heartbeat Task (Hourly)
2020-03-25 16:54 - 2020-03-25 16:54 - 000003272 _____ C:\WINDOWS\system32\Tasks\Avast Secure Browser Heartbeat Task (Logon)
2020-03-25 16:54 - 2020-03-25 16:54 - 000002577 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2020-03-25 16:54 - 2020-03-25 16:54 - 000002542 _____ C:\Users\Public\Desktop\Avast Secure Browser.lnk
2020-03-25 16:54 - 2020-03-25 16:54 - 000002542 _____ C:\ProgramData\Desktop\Avast Secure Browser.lnk
2020-03-25 16:53 - 2020-03-25 16:53 - 000003454 _____ C:\WINDOWS\system32\Tasks\AvastUpdateTaskMachineUA
2020-03-25 16:53 - 2020-03-25 16:53 - 000003330 _____ C:\WINDOWS\system32\Tasks\AvastUpdateTaskMachineCore
2020-03-25 16:52 - 2020-03-25 16:52 - 000000000 ____D C:\Program Files (x86)\AVAST Software
2020-03-25 16:49 - 2020-03-25 16:49 - 000002167 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2020-03-25 16:49 - 2020-03-25 16:49 - 000002155 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2020-03-25 16:49 - 2020-03-25 16:49 - 000002155 _____ C:\ProgramData\Desktop\Avast Free Antivirus.lnk
2020-03-25 16:49 - 2020-03-25 16:49 - 000000000 ____D C:\Users\BETH\AppData\Roaming\AVAST Software
2020-03-25 16:45 - 2020-03-25 16:45 - 000458584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2020-03-25 16:45 - 2020-03-25 16:45 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2020-03-25 16:45 - 2020-03-25 16:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2020-03-25 16:45 - 2020-03-25 16:44 - 000368056 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2020-03-25 16:45 - 2020-03-25 16:44 - 000316256 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000279360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000235184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000205576 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000175400 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000110560 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000084056 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000042976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2020-03-25 16:45 - 2020-03-25 16:44 - 000016304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000848672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000271120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000206608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000064272 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000037864 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2020-03-25 16:44 - 2020-03-25 16:44 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2020-03-25 16:43 - 2020-03-25 16:43 - 000000000 ____D C:\Program Files\AVAST Software
2020-03-25 16:41 - 2020-03-25 16:41 - 000230080 _____ (AVAST Software) C:\Users\BETH\Desktop\avast_free_antivirus_setup_online.exe
2020-03-25 16:39 - 2020-03-25 16:39 - 000003802 _____ C:\WINDOWS\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2020-03-25 16:39 - 2020-03-25 16:39 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
2020-03-25 16:37 - 2020-03-25 16:40 - 000000000 ____D C:\Program Files\Bitdefender Agent
2020-03-25 16:37 - 2020-03-25 16:37 - 000103972 _____ C:\ProgramData\agent.1585154226.bdinstall.v2.bin
2020-03-25 16:37 - 2020-03-25 16:37 - 000000000 ____D C:\ProgramData\Bitdefender Agent
2020-03-25 16:35 - 2020-03-25 16:35 - 010527368 _____ C:\Users\BETH\Desktop\bitdefender_online.exe
2020-03-25 14:16 - 2020-03-25 14:16 - 000643854 _____ C:\Users\BETH\Desktop\icopepdf.pdf
2020-03-24 18:03 - 2020-03-24 18:03 - 000021808 _____ C:\Users\BETH\Desktop\US SHARES 2019-20 Copy.ods
2020-03-11 08:37 - 2020-03-11 08:37 - 011723776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-03-11 08:37 - 2020-03-11 08:37 - 009941504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-03-11 08:37 - 2020-03-11 08:37 - 001461760 _____ C:\WINDOWS\system32\FaceProcessor.dll
2020-03-11 08:37 - 2020-03-11 08:37 - 001250152 _____ C:\WINDOWS\system32\FaceTrackerInternal.dll
2020-03-11 08:37 - 2020-03-11 08:37 - 000633184 _____ C:\WINDOWS\system32\FaceProcessorCore.dll
2020-03-11 08:37 - 2020-03-11 08:37 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 026807296 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 023463424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 020816384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 019284480 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 019020288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 013013504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 012306432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 008907776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 007923712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 007870976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 006060544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 005436904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 004872704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 004664320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 004066816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 003952760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 003909632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 003703808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 003550624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002986560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002751336 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002469432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002323688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002298880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002273296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002182456 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002150912 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeangle.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 002100056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001876960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001750528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001707208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001605000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001430880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001296360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001292288 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001288648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001229824 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001201128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001076040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2020-03-11 08:36 - 2020-03-11 08:36 - 001062400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 001022464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2020-03-11 08:36 - 2020-03-11 08:36 - 000949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000946688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2020-03-11 08:36 - 2020-03-11 08:36 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000870400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000850432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000829440 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000796160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000763032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000662528 ____R (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Pipeline.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000594432 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000522104 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-03-11 08:36 - 2020-03-11 08:36 - 000506368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.PredictionUnit.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provsvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000428544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000419840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceCenter.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provsvc.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFIPP.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000263576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSHExtensions.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-03-11 08:36 - 2020-03-11 08:36 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactHarvesterDS.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Analog.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000180736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-03-11 08:36 - 2020-03-11 08:36 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopView.Internal.Broker.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWSDAHost.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000098816 ____R (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Broker.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2020-03-11 08:36 - 2020-03-11 08:36 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComputerDefaults.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 015220224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 006942720 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 006545096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 006445056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 006318840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005915936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005608120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005309080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005210896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 005086208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 004628480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 004344832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 003873704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 003490304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 003429888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 003416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Controls.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 003096064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002981888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002917688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 002893312 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002832896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002779272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002701816 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002698752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002627088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 002349056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002279296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002264344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 002074984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001994768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001962296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 001961984 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001899160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001890816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001862656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001837136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001761280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001759232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001753088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConstraintIndex.Search.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001720936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001702600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-03-11 08:35 - 2020-03-11 08:35 - 001702400 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001693696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001678800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001675008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001674696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001668752 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001606144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001590072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001573480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001568768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001495480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001485312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001484384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001473080 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001465344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001465264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001458056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001427592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001395056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001390888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001360912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 001346192 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-03-11 08:35 - 2020-03-11 08:35 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001294336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001292800 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001278808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001272360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001223168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001222456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001183504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001162088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001125392 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001122304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001098128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001076224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001022976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 001012224 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2020-03-11 08:35 - 2020-03-11 08:35 - 001000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000993280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000976384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000964984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000964096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000934912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000926056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000909824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000909624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000908800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2020-03-11 08:35 - 2020-03-11 08:35 - 000879104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000845824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000828728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000821760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSMDesktopProvider.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000808272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000805504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000803328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000791864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000774968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000774656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000745472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000741376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000736272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000730112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000718944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsInternal.ComposableShell.ComposerFramework.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000661304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000661056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000658944 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000655160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 000651264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000648392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000641696 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000622632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000620032 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIsoCtnr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000615936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000604248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000589824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000574864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000555440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000542536 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000542504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000537088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000535048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000515448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000501760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000492216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000481280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000473832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000461488 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIso.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UiaManager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000453208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellAPI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2020-03-11 08:35 - 2020-03-11 08:35 - 000441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000439976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000439808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-03-11 08:35 - 2020-03-11 08:35 - 000414208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000409912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000408528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000389120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000378880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000373560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coml2.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000366728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000363320 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreShellAPI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000322560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000312632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000310784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Phoneutil.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000304952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000302592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnclient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2020-03-11 08:35 - 2020-03-11 08:35 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000279416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000277840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000274448 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000267264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockScreenData.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposerFramework.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000264208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000263168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2020-03-11 08:35 - 2020-03-11 08:35 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationManager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000252264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\feclient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000243216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchangeHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000240376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000239664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcredprov.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000219656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Cortana.Persona.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2020-03-11 08:35 - 2020-03-11 08:35 - 000205312 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RstrtMgr.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\feclient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsInternal.ComposableShell.DesktopHosting.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\oledlg.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000176112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000175928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000168488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpcsp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.SettingsExtensibility.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\EDPCleanup.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddisplay.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000157536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.OneCore.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twext.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oledlg.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapistub.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000140304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000139648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000132480 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000124440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapistub.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapi32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DSCache.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\efslsaext.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000108392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.DisplayEnhancementOverride.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olecli32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000107008 _____ C:\WINDOWS\SysWOW64\WindowsDefaultHeatProcessor.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olethk32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000106376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000106048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000105784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsentUX.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\MuiUnattend.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountControlSettings.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000094496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerHost.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountControlSettings.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvHelper.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsCtfMonitor.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000074752 ____R (Microsoft Corporation) C:\WINDOWS\system32\mdmpostprocessevaluator.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpussvr.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.internal.shellcommon.AccountsControlExperience.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Background.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvHelper.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olesvr32.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFrameworkInternalPS.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.SystemManufacturers.dll
2020-03-11 08:35 - 2020-03-11 08:35 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe
2020-03-11 08:35 - 2020-03-11 08:35 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msauserext.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 022137120 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 017484800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 009672208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 007888896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 007645392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 007556600 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 006058032 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 005577872 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 005575168 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 005528576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 005301248 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004853760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Controls.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004736512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004589056 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 004417008 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 004303872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004050432 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 004018688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 003636736 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 003630592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 003392000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 003361080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002848768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002634752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002620928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002611136 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002437344 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002433024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002418176 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 002233856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002197504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002185216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002086192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 002050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001929728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001844456 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001830712 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001796400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001794048 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001768960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001751640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001720320 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001715712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001701384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001664904 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001644544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001478968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001422336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001335296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001333248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001331536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001308672 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001287584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001267712 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001262592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001221120 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001194496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001169920 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001081656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001054712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 001052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001051648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 001049600 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001038336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001035264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001021952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 001005568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000998928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000987736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000984888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000974848 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000938296 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000930816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000928768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000903368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000872960 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSMDesktopProvider.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000862224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 000848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000847872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000820736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000818640 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000788480 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000780408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000741688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000739840 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000736256 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000723456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000715776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgrSvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000681984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\UiaManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000678376 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Devices.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000650240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000622336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000605576 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000604552 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000603792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-03-11 08:34 - 2020-03-11 08:34 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_User.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxAPDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxHAPDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000508720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Display.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000496872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2020-03-11 08:34 - 2020-03-11 08:34 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000468792 _____ (Microsoft Corporation) C:\WINDOWS\system32\coml2.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtCangjieDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000460288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000458240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtBopomofoDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtHkStrokeDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChsStrokeDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtQuickDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000443368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000440832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000439096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 000437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000420352 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneDataSync.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000418576 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\eeprov.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000399376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000386360 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvctpSvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000377344 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpndecoder.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxDecoder.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenData.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnclient.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxinputrouter.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000351744 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvrcp.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000347784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtfDecoder.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000320728 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000314072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000312704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageOverlayServer.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000304952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000293856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpnranker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000282424 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Cortana.Persona.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_InputPersonalization.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiCloudStore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000262656 _____ C:\WINDOWS\system32\HeatCore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000262336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000239120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\VideoHandlers.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\RstrtMgr.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleBand.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddisplay.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000200720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000199680 _____ C:\WINDOWS\system32\IHDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twext.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.CredentialProvider.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngctasks.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingCSP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFFuzzyDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000152576 _____ (Microsoft Corporation) C:\WINDOWS\system32\VaultCDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\vfuprov.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000149240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.DisplayEnhancementOverride.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DSCache.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000148480 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdvancedEmojiDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\StaticDictDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsExtensibilityHandlers.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000138624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.ShellCommon.Broker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000134456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000133432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000125440 _____ C:\WINDOWS\system32\WindowsDefaultHeatProcessor.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000121536 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxranker.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000120560 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\HashtagDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\sihost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFSpellcheckDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000106296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopShellExt.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFAppServiceDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000099896 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuntimeBroker.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpnUserService.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuleBasedDS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2020-03-11 08:34 - 2020-03-11 08:34 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000090608 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PersonalizationCSP.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.AccountsControlExperience.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Background.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\desktopimgdownldr.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityServicePal.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000072984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrameHost.exe
2020-03-11 08:34 - 2020-03-11 08:34 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo-overrides.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAProfileNotificationHandler.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.SystemManufacturers.dll
2020-03-11 08:34 - 2020-03-11 08:34 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 007700480 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 004997096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 003581440 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 003334496 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002707456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 002590944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002466816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002149160 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002015400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 002004992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001893376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001771824 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001743376 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001677312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001674752 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001519488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001496576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001474560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001387512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001293768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001258296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 001205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 001049400 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000988240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000985088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000904104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000902464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000902144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000890400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000871792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000863528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000779776 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000776272 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000769760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000702976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000681416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000680944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000667664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000652304 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000650552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000532184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000510504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000506408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000467984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2020-03-11 08:33 - 2020-03-11 08:33 - 000461840 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000451120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000446480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000438784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000407712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000390128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000389120 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingASDS.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000385552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000376784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000367208 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpr.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000298808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000283240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000276496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTF.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000255128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000252944 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacEncoder.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.OneCore.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000222008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000213816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MTF.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000193552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000193336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000186464 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000163448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Security.Attestation.DeviceAttestation.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000149488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbrand.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000147944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000141728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000130872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000118472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvEmulation.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000109704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialUIBroker.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000103952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2020-03-11 08:33 - 2020-03-11 08:33 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingFilterDS.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MuiUnattend.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2020-03-11 08:33 - 2020-03-11 08:33 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsCtfMonitor.dll
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-03-11 08:33 - 2020-03-11 08:33 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-03-06 00:31 - 2020-03-06 00:31 - 000022002 _____ C:\Users\BETH\Desktop\mental health.odt
2020-03-05 23:06 - 2020-03-06 00:31 - 000000092 ____H C:\Users\BETH\Desktop\.~lock.mental health.odt#
2020-03-03 14:55 - 2020-03-03 14:55 - 000011811 _____ C:\Users\BETH\Desktop\House Bills Beginning November 2019 to End Jan 2020.odt
 
==================== One month (modified) ==================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2020-03-25 19:05 - 2017-12-13 02:10 - 000000000 ____D C:\ProgramData\{F7FC329F-7DBE-B859-FB78-261B613AADD5}
2020-03-25 18:21 - 2017-12-13 03:46 - 000000000 ____D C:\Users\BETH\AppData\LocalLow\Mozilla
2020-03-25 18:18 - 2018-12-19 20:30 - 000934840 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-03-25 18:18 - 2018-09-15 07:31 - 000000000 ____D C:\WINDOWS\INF
2020-03-25 18:18 - 2017-12-13 03:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2020-03-25 18:18 - 2015-09-13 14:58 - 000001239 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-03-25 18:16 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-03-25 18:15 - 2018-09-15 07:33 - 000000000 ___HD C:\Program Files\WindowsApps
2020-03-25 18:14 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2020-03-25 18:14 - 2018-09-15 07:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-03-25 18:13 - 2018-12-19 20:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-03-25 18:13 - 2018-09-15 06:09 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2020-03-25 18:13 - 2017-11-10 08:18 - 000065536 _____ C:\WINDOWS\psp_storage.bin
2020-03-25 17:27 - 2017-12-13 02:55 - 000000000 ____D C:\Program Files (x86)\AVG
2020-03-25 17:26 - 2018-09-15 07:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-03-25 17:21 - 2019-07-03 22:04 - 000000000 ____D C:\Users\BETH\AppData\Local\D3DSCache
2020-03-25 17:21 - 2018-12-19 20:26 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-03-25 17:21 - 2017-11-10 13:40 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-03-25 17:21 - 2017-11-10 13:40 - 000000870 _____ C:\ProgramData\Desktop\CCleaner.lnk
2020-03-25 17:13 - 2017-12-13 01:47 - 000000000 ____D C:\ProgramData\AVG
2020-03-25 16:57 - 2019-07-20 20:29 - 000000000 ____D C:\Users\BETH\AppData\Local\CrashDumps
2020-03-25 16:44 - 2017-12-13 01:47 - 000000000 ____D C:\ProgramData\AVAST Software
2020-03-25 16:22 - 2019-07-10 18:58 - 000000000 ____D C:\WINDOWS\Panther
2020-03-25 16:06 - 2017-12-19 10:52 - 000000000 ____D C:\Users\BETH\AppData\Roaming\audacity
2020-03-25 15:42 - 2019-03-25 11:29 - 000000000 ____D C:\Users\BETH\AppData\Local\ElevatedDiagnostics
2020-03-25 15:16 - 2018-12-19 20:17 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-03-25 11:57 - 2018-10-21 11:30 - 000000360 _____ C:\WINDOWS\Tasks\HPCeeScheduleForBETH.job
2020-03-25 11:47 - 2018-03-28 11:54 - 000000000 _____ C:\Users\BETH\Documents\HP ePrint
2020-03-25 11:14 - 2018-03-28 13:05 - 000002088 _____ C:\Users\Public\Desktop\HP Print and Scan Doctor.lnk
2020-03-25 11:14 - 2018-03-28 13:05 - 000002088 _____ C:\ProgramData\Desktop\HP Print and Scan Doctor.lnk
2020-03-25 06:55 - 2018-03-01 00:16 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-03-24 18:03 - 2019-06-28 10:27 - 000000092 ____H C:\Users\BETH\Desktop\.~lock.US SHARES 2019-20 Copy.ods#
2020-03-23 20:46 - 2018-12-19 20:26 - 000003248 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForBETH
2020-03-23 20:44 - 2018-12-19 20:26 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-259350032-3561555504-2751918716-1001
2020-03-23 20:44 - 2018-12-19 20:20 - 000002367 _____ C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-23 20:44 - 2017-12-09 15:19 - 000000000 ___RD C:\Users\BETH\OneDrive
2020-03-23 20:41 - 2019-02-18 18:43 - 000002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2020-03-23 20:41 - 2019-02-18 18:43 - 000002384 _____ C:\Users\Public\Desktop\Brave.lnk
2020-03-23 20:41 - 2019-02-18 18:43 - 000002384 _____ C:\ProgramData\Desktop\Brave.lnk
2020-03-21 14:15 - 2018-12-19 20:26 - 000003420 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-03-21 14:15 - 2018-12-19 20:26 - 000003296 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-03-18 18:19 - 2017-12-15 23:32 - 000002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-03-18 18:19 - 2017-12-15 23:32 - 000002267 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-03-18 18:19 - 2015-09-10 11:40 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-03-15 17:35 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-03-15 17:35 - 2017-12-13 03:46 - 000000000 ___RD C:\Users\BETH\3D Objects
2020-03-15 17:35 - 2017-03-18 03:53 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-03-15 17:34 - 2018-12-19 20:17 - 000719808 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-03-15 17:34 - 2017-11-10 08:21 - 000000000 ____D C:\ProgramData\Realtek
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ___RD C:\WINDOWS\PrintDialog
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ___RD C:\Program Files\Windows Defender
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\setup
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\ShellComponents
2020-03-15 17:33 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-03-15 17:33 - 2018-09-15 06:09 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-03-15 17:33 - 2018-09-15 06:09 - 000000000 ____D C:\WINDOWS\servicing
2020-03-11 08:49 - 2017-12-12 10:55 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-03-11 08:43 - 2018-09-15 07:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-03-11 08:43 - 2017-12-12 10:55 - 121542864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-02-25 20:30 - 2018-04-17 23:53 - 000000000 ____D C:\Users\BETH\AppData\Local\Packages
 
==================== Files in the root of some directories ========
 
2017-12-09 15:17 - 2020-03-25 18:14 - 004771783 _____ () C:\Users\BETH\AppData\Local\BTServer.log
2019-10-19 18:29 - 2019-10-19 18:29 - 000011895 _____ () C:\Users\BETH\AppData\Local\recently-used.xbel
 
==================== SigCheck ============================
 
(There is no automatic fix for files that do not pass verification.)
 
==================== End of FRST.txt ========================
 
And Adition.txt
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-03-2020
Ran by BETH (25-03-2020 19:41:50)
Running from C:\Users\BETH\Desktop
Windows 10 Home Version 1809 17763.1098 (X64) (2018-12-19 20:26:22)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-259350032-3561555504-2751918716-500 - Administrator - Disabled)
BETH (S-1-5-21-259350032-3561555504-2751918716-1001 - Administrator - Enabled) => C:\Users\BETH
DefaultAccount (S-1-5-21-259350032-3561555504-2751918716-503 - Limited - Disabled)
Guest (S-1-5-21-259350032-3561555504-2751918716-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-259350032-3561555504-2751918716-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG Antivirus (Disabled - Out of date) {18A975F9-A60C-37D8-E30B-4BEF31AD3411}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: AVG Antivirus (Disabled - Out of date) {A3C8941D-8036-3856-D9BB-709D4A2A7EAC}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Amazon Kindle (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Amazon Kindle) (Version: 1.26.0.55076 - Amazon)
AMD Radeon Settings (HKLM\...\WUCCCApp) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.)
Amd Virtual Buttons (HKLM-x32\...\{c4533844-2182-4202-a5ae-b2b86ee0de48}) (Version: 1.1.7.1 - Softeq Development Corporation)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 20.1.2397 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 80.0.3765.150 - AVAST Software)
AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 20.1.3112 - AVG Technologies)
AVG Secure Browser (HKLM-x32\...\AVG Secure Browser) (Version: 80.0.3624.134 - AVG Technologies)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 1.0.1 - Bitdefender)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 80.1.5.115 - The Brave Authors)
Catalyst Control Center Next Localization BR (HKLM\...\{F19E577C-B96A-F5B4-C182-95DB528E738E}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{5C3A8F7B-BCBC-C606-1B29-663FC76C29F3}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{C063D61F-ACA0-0183-5418-CCBB0E970BB6}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{66412088-63B8-6DC0-5D6D-04EC3320AFF8}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{33DA9CCA-788F-BA66-A7D2-438F9E04D44C}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{BEB06773-0749-3D09-A468-26E3D8809CD3}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{6A943F2E-1420-F802-ED9A-4EE2D96416A8}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{769B7565-821D-5049-D4A8-C9E2711BA9E1}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{6BF5317D-5944-7B95-5D6E-80A3CF190572}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{E88DA42C-BE55-3C82-CA66-BA957A9849F7}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{9A5F310D-A58C-24E6-5B1D-B1444E4CCED7}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{A372146C-9135-D187-8DD1-0EE49D082480}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{182F1B4F-5B4C-9BAF-B009-162B89EEE456}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{1B85079E-5B56-B936-54BB-D9553B6EEA1B}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{6E9FD6B8-F8A3-5DE3-E48F-35EB8727B88F}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{93FA4450-5B45-E967-A210-F034831F6C22}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{94CE1BA4-1698-D27E-46DF-4BA15AB610D4}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{D363D01E-C047-2178-CFC1-57F93C9602C1}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{E2ED8680-FBAA-2EB2-B002-2CD8CDB9C5BC}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{7D33F00E-F5F8-7C7A-8008-964C4098EE45}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{D5078349-5904-44F3-FE0E-89F31B30865C}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.65 - Piriform)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)
Dropbox 25 GB (HKLM-x32\...\{84D8451D-2ED6-3A59-ABA5-2A447F7C6310}) (Version: 4.1.2.0 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
Energy Star (HKLM\...\{5CB22648-35F8-41BC-9C35-1E41FE6E12A5}) (Version: 1.1.1 - HP Inc.)
f.lux (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Flux) (Version:  - f.lux Software LLC)
GIMP 2.10.6 (HKLM\...\GIMP-2_is1) (Version: 2.10.6 - The GIMP Team)
Ginger (HKLM-x32\...\{1EBF9A59-F4E3-4EA7-BA97-76703C1432F6}) (Version: 3.7.179 - Ginger Software) Hidden
Ginger (HKLM-x32\...\InstallShield_{1EBF9A59-F4E3-4EA7-BA97-76703C1432F6}) (Version: 3.7.179 - Ginger Software)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.149 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.99.0 - Google Inc.) Hidden
Grammarly (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\GrammarlyForWindows) (Version: 1.5.39 - Grammarly)
HP Audio Switch (HKLM-x32\...\{3A5141D4-47DB-4302-9B1C-272BE585BC8A}) (Version: 1.0.179.0 - HP Inc.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.15.0 - HP Inc.)
HP CoolSense (HKLM-x32\...\{20CC03C7-7B48-4130-B7FA-39BC128E3A9E}) (Version: 2.21.5 - HP Inc.)
HP ENVY 4500 series Basic Device Software (HKLM\...\{6915424E-704F-4F5D-9057-9C7B406B36DB}) (Version: 32.3.198.49673 - Hewlett-Packard Co.)
HP ENVY 4500 series Help (HKLM-x32\...\{95BECC50-22B4-4FCA-8A2E-BF77713E6D3A}) (Version: 30.0.0 - Hewlett Packard)
HP ePrint SW (HKLM-x32\...\{54da9769-2364-4bd3-8139-6400500778b3}) (Version: 5.3.22034 - HP Inc.)
HP Pen Control (HKLM-x32\...\{259BAC8D-CF33-4229-84E9-22DC267A44A9}}_is1) (Version: 2.0.0.20 - ELAN microelectronics Corp.)
HP Support Assistant (HKLM-x32\...\{4780AF24-213D-4187-86F2-0014A6D6077B}) (Version: 8.8.24.33 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{00612F78-52C4-46C0-97F0-F50B6036B5E2}) (Version: 12.14.49.15 - HP Inc.)
HP System Event Utility (HKLM-x32\...\{1BB20774-0FA8-4CFF-AB69-7B7AAE2DCE6C}) (Version: 1.4.19 - HP Inc.)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
IrfanView 4.50 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.50 - Irfan Skiljan)
Kindle Create (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Kindle Create) (Version: 1.11.576.0 - Amazon)
Kindle Previewer 3 (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Kindle Previewer 3) (Version: 3.25.0 - Amazon)
LibreOffice 6.1.0.3 (HKLM\...\{DD50CAE9-27C5-452F-A910-1E7A00D8EEE2}) (Version: 6.1.0.3 - The Document Foundation)
Microsoft OneDrive (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Mozilla Firefox 69.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 69.0.1 (x64 en-US)) (Version: 69.0.1 - Mozilla)
Neon 0.0.7 (only current user) (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\211a501f-25dd-501b-8c98-509ac17aedfa) (Version: 0.0.7 - Ethan Fast)
OEM Application Profile (HKLM-x32\...\{B4B7FD8F-06FC-E277-4F29-8F75F8281D8F}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
OpenOffice 4.1.5 (HKLM-x32\...\{708F0253-F566-48F3-9B88-06F48F16548B}) (Version: 4.15.9789 - Apache Software Foundation)
REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.63 - REALTEK Semiconductor Corp.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.21299 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8720.1 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.90 - REALTEK Semiconductor Corp.)
Sky Go 1.4.15.0 (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\com.bskyb.skygoplayer_is1) (Version: 1.4.15.0 - Sky)
Skype version 8.37 (HKLM-x32\...\Skype_is1) (Version: 8.37 - Skype Technologies S.A.)
Vulkan Run Time Libraries 1.0.37.0 (HKLM\...\VulkanRT1.0.37.0) (Version: 1.0.37.0 - LunarG, Inc.)
WD Backup (HKLM-x32\...\{67C2F93C-8E4E-4BD2-863A-4DCE7EB359D9}) (Version: 1.2.5721.28811 - Western Digital Technologies, Inc) Hidden
WD Backup (HKLM-x32\...\{953eccd5-26ad-450b-af24-c50227e0fb74}) (Version: 1.2.5721.28811 - Western Digital Technologies, Inc.)
WD Drive Utilities (HKLM-x32\...\{48996CDD-DD81-4197-93FE-0971E73C5CA7}) (Version: 1.3.2.2 - Western Digital Technologies, Inc.) Hidden
WD Drive Utilities (HKLM-x32\...\{eab1fb93-61fb-48de-b815-b4e9b68d2ef1}) (Version: 1.3.2.2 - Western Digital Technologies, Inc.)
WD Quick View (HKLM-x32\...\{965D28B5-3C86-41FD-994E-D6376815C9B3}) (Version: 2.4.10.17 - Western Digital Technologies, Inc.)
WD Security (HKLM-x32\...\{249644e6-451a-4a5c-bd5c-21eeb9eec79d}) (Version: 1.3.1.2 - Western Digital Technologies, Inc.)
WD Security (HKLM-x32\...\{7CC2EDF2-83EC-4707-BDD3-72469236A6CC}) (Version: 1.3.1.2 - Western Digital Technologies, Inc.) Hidden
WildTangent ShortcutProvider (HKLM-x32\...\{80831F60-19D7-43B3-A60C-5CAF8C478DF6}) (Version: 1.0.0.60 - WildTangent) Hidden
Xperia Companion (HKLM-x32\...\{5b7c1b25-5fb6-442c-a1b5-cb8dfc2267bf}) (Version: 2.8.3.0 - Sony)
Xperia Companion (HKLM-x32\...\{66EABD35-6233-4926-9AB1-AB31CC6BC7D9}) (Version: 2.8.3.0 - Sony) Hidden
Xperia Companion Service (HKLM\...\{E41065E8-67E2-448F-940C-FF9D7C51E4E3}) (Version: 2.8.3.0 - Sony) Hidden
 
Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
HP Scan and Capture -> C:\Program Files\WindowsApps\AD2F1837.HPScanandCapture_40.0.245.0_x64__v10z8vjag6ke6 [2017-12-28] (Hewlett-Packard Company)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_110.1.671.0_x64__v10z8vjag6ke6 [2020-02-06] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2018-11-12] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
 
==================== Custom CLSID (Whitelisted): ==============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2017-02-16] (Advanced Micro Devices, Inc.) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-03-25] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-03-25] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
 
==================== Codecs (Whitelisted) ====================
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
ShortcutWithArgument: C:\Users\BETH\Desktop\Gmail fitt.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\Desktop\Gmail muds.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\Desktop\Google Calendar -.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mgfijnnecdoifcadgfpbajeonhfendki
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_nglheapbdkhgpidedbaaiohcgmkmilbo\Gmail [email protected] -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nglheapbdkhgpidedbaaiohcgmkmilbo
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_nghldiaiamokmpalgdbfiokpgapocnnf\Hootsuite.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_mngniccdaoonfbddldojodbjdfknokll\Time Converter and World Clock - Conv.._.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mngniccdaoonfbddldojodbjdfknokll
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_miilmjmgkdhdabfkjkilgecbhbchboem\Gmail mudskipps.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_kmhopmchchfpfdcdjodmpfaaphdclmlj\Gmail bethsmyls.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_celnaknmndcdcjcagffhbhciignkeokb\(1) Facebook.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=celnaknmndcdcjcagffhbhciignkeokb
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_bnlchlfjjebdblaoolggbonifknnfcpp\Google Calendar.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=bnlchlfjjebdblaoolggbonifknnfcpp
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail fitt.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail muds.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=bnlchlfjjebdblaoolggbonifknnfcpp
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar (2).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=fpjpknijfapadpaeaikbcmpfghnjeopa
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar - biz.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=ocbolilgjhgobopeapoajppmaoikccid
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar -.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mgfijnnecdoifcadgfpbajeonhfendki
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=bnlchlfjjebdblaoolggbonifknnfcpp
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Hootsuite (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Hootsuite (2).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Hootsuite.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Join a Meeting - Zoom.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=ajojicfljchadpndofllmcfcddapmpkn
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Time Converter and World Clock - Conv.._.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mngniccdaoonfbddldojodbjdfknokll
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gmail fitt.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gmail muds.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Calendar -.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mgfijnnecdoifcadgfpbajeonhfendki
 
==================== Loaded Modules (Whitelisted) =============
 
2020-02-14 13:50 - 2020-02-14 13:50 - 000138240 _____ ( ) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Interop.IWs06dcaa36#\803ddc517fb122da5941404364d527d7\Interop.IWshRuntimeLibrary.ni.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000011776 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 002013696 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000014336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000739840 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000191488 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000071168 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000014336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2015-09-03 08:55 - 2015-09-03 08:55 - 000333824 _____ (Ginger Software) [File not signed] C:\Program Files (x86)\Ginger\GingerUpdateService\GSDL.dll
2020-02-14 13:50 - 2020-02-14 13:50 - 000134656 _____ (hardcodet.net) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Hardcodet.W6cab32f3#\71e1b3de68bbf0e60ccc7503889c4fd8\Hardcodet.Wpf.TaskbarNotification.ni.dll
2020-02-14 13:50 - 2020-02-14 13:50 - 001701888 _____ (Mark Heath & Contributors) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\NAudio\9916d9afb7a4640017518813b2dcbbf4\NAudio.ni.dll
2020-02-14 13:50 - 2020-02-14 13:50 - 003060736 _____ (Newtonsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Newtonsoft.Json\7b0f325f64aa9777a67acba7d9ae5e03\Newtonsoft.Json.ni.dll
2020-02-14 13:48 - 2020-02-14 13:48 - 000793088 _____ (The Apache Software Foundation) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\log4net\bcb2909b52552fdb2ac2c83f49f28a34\log4net.ni.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000049664 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qdds.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000029696 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000037376 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000030208 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000459776 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjp2.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000236544 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000275456 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qmng.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000023552 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000022528 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000351744 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtiff.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000021504 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000374784 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 001212416 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000912384 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Charts.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 005496320 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 005804544 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 001061376 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 003187712 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 002924544 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000310784 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 005444608 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000277504 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000193024 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
 
==================== Alternate Data Streams (Whitelisted) ========
 
==================== Safe Mode (Whitelisted) ==================
 
==================== Association (Whitelisted) =================
 
==================== Internet Explorer trusted/restricted ==========
 
==================== Hosts content: =========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2017-03-18 21:03 - 2017-03-18 21:01 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
 
==================== Other Areas ===========================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\BETH\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\internet explorer wallpaper.bmp
DNS Servers: 194.168.4.100 - 194.168.8.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(If an entry is included in the fixlist, it will be removed.)
 
MSCONFIG\Services: AJRouter => 3
HKLM\...\StartupApproved\StartupFolder: => "Ginger.lnk"
HKLM\...\StartupApproved\Run32: => "WDAppManager"
HKLM\...\StartupApproved\Run32: => "WD Drive Unlocker"
HKLM\...\StartupApproved\Run32: => "DriveUtilitiesHelper"
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\StartupApproved\Run: => "HP ENVY 4500 series (NET)"
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\StartupApproved\Run: => "XperiaCompanionAgent"
 
==================== FirewallRules (Whitelisted) ================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{D00E443E-A4EB-48FF-A252-81E75AA11D10}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{50115D1F-6B84-4CCA-B325-EF688EE558F6}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{A39C0F23-FDB4-4AE3-B6EF-12388ECE234A}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{F65CD848-534C-4C96-B64A-97221A42F7B0}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{C4C60CA7-3AA2-48C2-9EC0-9E4C20798007}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [TCP Query User{9BF470A1-FBA7-4B56-95DF-672EB8EA48CC}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [UDP Query User{DA5A6993-B4E5-48CF-BA52-BFE848308991}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [TCP Query User{A8EE502F-DB07-4825-B766-003381E8B1C6}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [UDP Query User{14EEFBB1-31AC-42D4-8C68-E300793B2CA0}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [TCP Query User{B56344F2-400C-4447-9DE8-EFC3A6CE8CBA}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [UDP Query User{50C4BFAC-5581-4A69-A3E8-CDF9E3CD4DF2}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [TCP Query User{324EE441-62F0-4718-9736-6713B9A3D840}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [UDP Query User{A5B282E5-BA42-4423-B85E-639B10E0AB67}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [TCP Query User{66018E01-D64F-4B02-B18F-7451215247F8}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [UDP Query User{879D30EC-C012-4AE3-9CE2-8F770D66DB2D}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe () [File not signed]
FirewallRules: [TCP Query User{ADC54DF6-6D04-4EFB-8C64-57061757CD12}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe () [File not signed]
FirewallRules: [UDP Query User{294F16E6-A9D3-42C1-AE0D-ABD18BAD3133}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [TCP Query User{F62C0FB8-620D-4978-9ECA-81C530652D61}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [UDP Query User{CA18A181-9B86-444C-9B6C-04EF5F32D4E9}C:\itunes\itunes.exe] => (Allow) C:\itunes\itunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{9853EC8B-2F3B-469B-A304-09C454C3FADD}C:\itunes\itunes.exe] => (Allow) C:\itunes\itunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{7890E50B-118E-4EBE-89B5-AA15FB35EB9A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{8094509D-BF4F-45B3-9286-4381EFCEDAF5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{EADD9160-5046-487D-B4B0-ACADBA6927FE}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{7DDFF63E-9D3A-4259-9D68-EAE421DBE574}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{05E4561A-3861-4E51-A5D3-08E298E33FBD}] => (Allow) C:\Program Files\HP\HP ENVY 4500 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{D28416D5-7021-4162-807A-C98C0ED46CD9}] => (Allow) LPort=5357
FirewallRules: [{90FDAEF9-453B-48DB-847E-A96089A5EAD4}] => (Allow) C:\Program Files\HP\HP ENVY 4500 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{5B10767B-0679-4ADC-89C2-DED60C717416}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1F4F7BC1-51C7-4B47-94B7-3BE6BA5E77DD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{28CF5D21-3B12-4546-9FD5-3EFEEADCD4E1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{353C3CB0-16AB-4EFA-95CE-E451BD942241}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E1D36C49-0C4E-4838-BAD7-F0E51DEE044A}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{36F32AFB-B5C9-460D-9F93-3D0BAFE4F55A}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{AB58FED1-6473-4741-B888-21CEFF736010}C:\users\beth\appdata\roaming\sky\sky go\sky go.exe] => (Allow) C:\users\beth\appdata\roaming\sky\sky go\sky go.exe (Sky UK Limited -> Sky UK)
FirewallRules: [UDP Query User{AF782DA4-F34E-4617-80A6-48DA4E9686E2}C:\users\beth\appdata\roaming\sky\sky go\sky go.exe] => (Allow) C:\users\beth\appdata\roaming\sky\sky go\sky go.exe (Sky UK Limited -> Sky UK)
FirewallRules: [{3324C49B-AF81-49E4-A65A-34D01E4AB967}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS059C\HPDiagnosticCoreUI.exe No File
FirewallRules: [{711A1576-DBCB-44DE-AC34-7F75F765A71E}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS059C\HPDiagnosticCoreUI.exe No File
FirewallRules: [TCP Query User{B5A299A4-BC03-4087-93D5-17960A886D52}C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe] => (Allow) C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe No File
FirewallRules: [UDP Query User{CB432846-FB5D-4F26-BA9D-C6C34A931716}C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe] => (Allow) C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe No File
FirewallRules: [{A62D9C6C-8958-4DFB-A52B-C1E360929F2D}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS17F9\HPDiagnosticCoreUI.exe No File
FirewallRules: [{578E924B-99EB-4966-A056-517A471901A7}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS17F9\HPDiagnosticCoreUI.exe No File
FirewallRules: [{7D27C104-060E-4AB2-BEB7-2680D2F4CAED}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS18C7\HPDiagnosticCoreUI.exe No File
FirewallRules: [{B743FC8D-08F0-4D31-A0CE-CC683B9A6E26}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS18C7\HPDiagnosticCoreUI.exe No File
FirewallRules: [{5A00EDD8-EC2F-4456-8895-3E2A2E68A9AD}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe (Sony Mobile Communications AB -> Sony)
FirewallRules: [{3BF6885F-0BA6-4462-8B95-E73DD12E9891}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{46F41944-368C-49B3-AF31-397255A7F5FB}] => (Allow) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{FA30F225-E0F4-469C-8071-7A5D28B71F7A}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2E32\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{A1783E92-96B7-4DAF-A4C6-9F08D085D95A}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2E32\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{D4A1DFA6-B891-49CB-8D3D-C1FF6537B91C}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2F17\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{966BF1A5-A91B-43E6-BA94-5F8F5C62B5E4}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2F17\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{6089B0DA-EA15-4C2E-92BB-1E3E2335EBE7}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS4616\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{031844B1-5B4B-4DB0-B173-133C040D4159}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS4616\HPDiagnosticCoreUI.exe (HP Inc. -> HPDC LP)
FirewallRules: [{14862E95-09E9-440A-B183-900492B23A0B}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{B3A4DCE5-7029-4F98-9CD6-9D7BDE78442D}] => (Allow) C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe (AVG Technologies USA, LLC -> AVG Technologies)
 
==================== Restore Points =========================
 
11-03-2020 08:07:11 Windows Update
19-03-2020 07:50:32 Scheduled Checkpoint
 
==================== Faulty Device Manager Devices ============
 
Name: HID-compliant touch screen
Description: HID-compliant touch screen
Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Manufacturer: (Standard system devices)
Service: 
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
==================== Event log errors: ========================
 
Application errors:
==================
Error: (03/25/2020 07:32:43 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: AVG Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 06:58:10 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 06:33:29 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: AVG Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 06:23:02 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Audacity\audacity.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.17763.1098_none_de762ed45346ee8a.manifest.
Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.17763.1098_none_262365ab67c31790.manifest.
 
Error: (03/25/2020 05:58:29 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 05:32:53 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: AVG Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 05:02:42 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. The specified account already exists.
 
Error: (03/25/2020 04:57:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: securebrowser_setup_15851551189860.exe, version: 6.4.5.1885, time stamp: 0x597fcc77
Faulting module name: jsis.dll_unloaded, version: 1.0.0.393, time stamp: 0x5da37407
Exception code: 0xc0000005
Fault offset: 0x000050a0
Faulting process ID: 0x1f00
Faulting application start time: 0x01d602c5b94d1957
Faulting application path: C:\Program Files\AVAST Software\Avast\setup\securebrowser_setup_15851551189860.exe
Faulting module path: jsis.dll
Report ID: 23137e95-38af-46ef-8802-d537134b80fb
Faulting package full name: 
Faulting package-relative application ID:
 
 
System errors:
=============
Error: (03/25/2020 07:28:43 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:38:47 PM) (Source: BTHUSB) (EventID: 5) (User: )
Description: The Bluetooth driver expected an HCI event with a certain size but did not receive it.
 
Error: (03/25/2020 06:37:36 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:37:16 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:29:53 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:29:22 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:29:20 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/25/2020 06:28:18 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-RRNF5R7)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 and APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 to the user DESKTOP-RRNF5R7\BETH SID (S-1-5-21-259350032-3561555504-2751918716-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
 
Windows Defender:
===================================
Date: 2020-02-15 18:27:07.959
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {D6DCC298-1583-4EC2-8E9B-FB9F4BA1E10E}
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2020-02-14 13:52:09.313
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {729C1B82-EC35-4949-BA9D-4AE94A156C5D}
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
CodeIntegrity:
===================================
 
Date: 2020-03-25 19:43:01.037
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:43:00.697
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:38:03.068
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:38:00.842
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:35:58.150
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:35:44.555
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:34:16.554
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-25 19:34:10.438
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
==================== Memory info =========================== 
 
BIOS: Insyde F.04 07/12/2017
Motherboard: HP 8312
Processor: AMD A9-9420 RADEON R5, 5 COMPUTE CORES 2C+3G 
Percentage of memory in use: 72%
Total physical RAM: 7647.18 MB
Available physical RAM: 2134.78 MB
Total Virtual: 18399.18 MB
Available Virtual: 11540.77 MB
 
==================== Drives ================================
 
Drive c: (Windows) (Fixed) (Total:222.99 GB) (Free:78.61 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:14.25 GB) (Free:14.19 GB) NTFS
 
\\?\Volume{3457130b-1a01-4c24-81c2-98d98c8f7562}\ (Windows RE tools) (Fixed) (Total:0.96 GB) (Free:0.36 GB) NTFS
\\?\Volume{6ac0d53e-55d4-4071-be5a-7f570807596e}\ () (Fixed) (Total:0.25 GB) (Free:0.15 GB) FAT32
 
==================== MBR & Partition Table ====================
 
==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: A50E1C7D)
 
Partition: GPT.
 
==================== End of Addition.txt =======================

 

 


  • 0

#6
zclesa

zclesa

    Member

  • Topic Starter
  • Member
  • PipPip
  • 14 posts

 

Hello zclesa ..! I don't think your problem is related to malware ..! However, this:

 

 

Farbar Recovery Scan Tool (FRST)

Download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system, download both of them and try to run them. Only one of them will run on your system, and that will be the right version.

  • Right-click FRST.exe/FRST64.exe then click "Run as administrator"
  • When the tool opens, click Yes to the disclaimer.
  • Press the Scan button.
  • When finished, it will produce logs called FRST.txt and Addition.txt in the same directory the tool was run from.
  • Please copy and paste the logs in your next reply.

---------------------------------------------------

In your next reply, please include:

  • FRST.txt
  • Addition.txt

 

Thanks Iconotev.. Done above, I'd really appeciate if you chance to check it some :)

 


Edited by zclesa, 25 March 2020 - 02:20 PM.

  • 0

#7
zclesa

zclesa

    Member

  • Topic Starter
  • Member
  • PipPip
  • 14 posts

Ps do you know what it sounds like aat the moment? A radio station. There is talking as well. Can't make out much but there is both serious talking about coronavirus and also music. I'm guessing it's an internet radio station, but I still don't know this is happening.


  • 0

#8
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 247 posts

Sky Go ....read more here:

 

https://www.sky.com/shop/tv/sky-go/

 

I doubt this app is running in the background ..!


  • 0

#9
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 247 posts

Autoruns

  • Please download Autoruns and save it to your desktop.
  • Right click Autoruns.zip and choose Extract All.
  • Extract the file to your desktop.
  • Once extracted, open the program named Autoruns.
  • Click on Options and then Hide Microsoft and Windows Entries.
  • Next go to File -> Save and choose the file type as Text File (.txt).
  • Copy and paste the contents of the text file to your next reply.

---------------------------------------------------

In your next reply, please include:

 

  • Autoruns log

  • 0

#10
zclesa

zclesa

    Member

  • Topic Starter
  • Member
  • PipPip
  • 14 posts

Yeah it's def not SkyGo. That doesn't work on my comp anymore. I should delete it.

 

Autoruns

  • Please download Autoruns and save it to your desktop.
  • Right click Autoruns.zip and choose Extract All.
  • Extract the file to your desktop.
  • Once extracted, open the program named Autoruns.
  • Click on Options and then Hide Microsoft and Windows Entries.
  • Next go to File -> Save and choose the file type as Text File (.txt).
  • Copy and paste the contents of the text file to your next reply.

---------------------------------------------------

In your next reply, please include:

 

  • Autoruns log

 

Thanks so much again for your help. Here is what is in the txt file I saved:

 

"HKLM\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\StartupPrograms" "" "" "" "19/12/2018 20:18" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\AppSetup" "" "" "" "25/03/2020 18:13" ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Startup" "" "" "" "" ""
"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logon" "" "" "" "" ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logon" "" "" "" "" ""
"HKCU\Environment\UserInitMprLogonScript" "" "" "" "20/12/2018 08:48" ""
"HKLM\Environment\UserInitMprLogonScript" "" "" "" "" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit" "" "" "" "25/03/2020 18:13" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\VmApplet" "" "" "" "25/03/2020 18:13" ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Shutdown" "" "" "" "" ""
"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logoff" "" "" "" "" ""
"HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logoff" "" "" "" "" ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup" "" "" "" "" ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup" "" "" "" "" ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Logon" "" "" "" "" ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Logon" "" "" "" "" ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Logoff" "" "" "" "" ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Logoff" "" "" "" "" ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown" "" "" "" "" ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Shutdown" "" "" "" "" ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell" "" "" "" "19/12/2018 20:20" ""
"HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell" "" "" "" "26/03/2020 09:21" ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell" "" "" "" "19/12/2018 02:37" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell" "" "" "" "25/03/2020 18:13" ""
"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\AlternateShell" "" "" "" "19/12/2018 20:18" ""
+ "cmd.exe" "Windows Command Processor" "(Verified) Microsoft Windows" "c:\windows\system32\cmd.exe" "06/02/1917 20:12" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman" "" "" "" "25/03/2020 18:13" ""
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AlternateShells\AvailableShells" "" "" "" "15/09/2018 07:34" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Runonce" "" "" "" "" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\RunonceEx" "" "" "" "" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Run" "" "" "" "" ""
"HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\InitialProgram" "" "" "" "19/12/2018 20:18" ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "" "" "" "25/03/2020 18:18" ""
+ "AvastUI.exe" "AvLaunch component" "(Verified) Avast Software s.r.o." "c:\program files\avast software\avast\avlaunch.exe" "18/02/2020 11:52" ""
+ "AVGUI.exe" "AvLaunch component" "(Verified) AVG Technologies USA, LLC" "c:\program files\avg\antivirus\avlaunch.exe" "18/02/2020 12:01" ""
+ "BtServer" "Realtek Bluetooth BTServer Application " "(Verified) Realtek Semiconductor Corp" "c:\program files (x86)\realtek\realtek bluetooth\btserver.exe" "12/05/2016 09:25" ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "" "" "" "05/07/2019 16:24" ""
+ "DriveUtilitiesHelper" "WD Drive Utilities Helper" "(Verified) Western Digital Technologies, Inc." "c:\program files (x86)\western digital\wd utilities\wddriveutilitieshelper.exe" "14/01/2016 19:13" ""
+ "HP Software Update" "hpwuSchd Application" "(Verified) Hewlett-Packard Company" "c:\program files (x86)\hp\hp software update\hpwuschd2.exe" "30/05/2013 19:49" ""
+ "HPMessageService" "HP Message Service" "(Verified) HP Inc." "c:\program files (x86)\hp\hp system event\hpmsgsvc.exe" "15/03/2017 05:41" ""
+ "WD Drive Unlocker" "WD Drive Auto Unlock" "(Verified) Western Digital Technologies, Inc." "c:\program files (x86)\western digital\wd security\wddriveautounlock.exe" "08/12/2015 00:50" ""
+ "WD Quick View" "WD Quick View" "(Verified) Western Digital Technologies, Inc." "c:\program files (x86)\western digital\wd quick view\wddmstatus.exe" "13/02/2015 00:44" ""
+ "WDAppManager" "WD App Manager Launcher" "(Verified) Western Digital Technologies, Inc." "c:\program files (x86)\western digital\wd app manager\appmanagerlauncher.exe" "01/09/2015 00:00" ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "" "" "" "25/03/2020 20:07" ""
+ "f.lux" "f.lux" "(Verified) F.lux Software LLC" "c:\users\beth\appdata\local\fluxsoftware\flux\flux.exe" "30/08/2019 17:57" ""
+ "HP ENVY 4500 series (NET)" "ScanToPCActivationApp" "(Verified) Hewlett Packard" "c:\program files\hp\hp envy 4500 series\bin\scantopcactivationapp.exe" "21/07/2014 23:25" ""
+ "XperiaCompanionAgent" "Xperia Companion Agent" "(Verified) Sony Mobile Communications AB" "c:\program files (x86)\sony\xperia companion\xperiacompanionagent.exe" "22/10/2019 15:17" ""
"HKCU\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "" "" "" "" ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx" "" "" "" "25/03/2020 16:45" ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnceEx" "" "" "" "25/03/2020 18:13" ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx" "" "" "" "06/08/2019 14:28" ""
"HKCU\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnceEx" "" "" "" "" ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce" "" "" "" "25/03/2020 17:32" ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce" "" "" "" "23/12/2019 21:01" ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce" "" "" "" "25/03/2020 18:21" ""
"HKCU\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce" "" "" "" "" ""
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup" "" "" "" "19/12/2018 20:17" ""
+ "Ginger.lnk" "InstallShield" "(Not verified) Flexera Software LLC" "c:\windows\installer\{1ebf9a59-f4e3-4ea7-ba97-76703c1432f6}\gingerclientstartu_e7648186c0be4ae6af2e431c614dbb20.exe" "13/05/2014 15:45" ""
"%USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "" "" "" "" ""
"C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "" "" "" "15/03/2020 17:35" ""
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Load" "" "" "" "25/03/2020 11:41" ""
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Run" "" "" "" "25/03/2020 11:41" ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run" "" "" "" "15/09/2018 07:36" ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run" "" "" "" "" ""
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" "" "25/03/2020 20:08" ""
+ "Brave" "Brave Installer" "(Not verified) Brave Software, Inc." "c:\program files (x86)\bravesoftware\brave-browser\application\80.1.5.115\installer\chrmstp.exe" "16/03/2020 18:53" ""
+ "Google Chrome" "Google Chrome Installer" "(Verified) Google LLC" "c:\program files (x86)\google\chrome\application\80.0.3987.149\installer\chrmstp.exe" "16/03/2020 18:53" ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components" "" "" "" "23/09/2019 14:21" ""
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\IconServiceLib" "" "" "" "15/06/2019 01:14" ""
"HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Runonce" "" "" "" "" ""
"HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\RunonceEx" "" "" "" "" ""
"HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Run" "" "" "" "" ""
"HKLM\SOFTWARE\Microsoft\Windows CE Services\AutoStartOnConnect" "" "" "" "" ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows CE Services\AutoStartOnConnect" "" "" "" "" ""
"HKLM\SOFTWARE\Microsoft\Windows CE Services\AutoStartOnDisconnect" "" "" "" "" ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows CE Services\AutoStartOnDisconnect" "" "" "" "" ""
"HKCU\SOFTWARE\Classes\Protocols\Filter" "" "" "" "" ""
"HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" "" "19/12/2018 20:18" ""
"HKCU\SOFTWARE\Classes\Protocols\Handler" "" "" "" "" ""
"HKLM\SOFTWARE\Classes\Protocols\Handler" "" "" "" "19/12/2018 20:18" ""
"HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components" "" "" "" "19/12/2018 20:22" ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler" "" "" "" "25/03/2020 20:08" ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler" "" "" "" "25/03/2020 20:08" ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects" "" "" "" "19/12/2018 20:18" ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects" "" "" "" "19/12/2018 20:18" ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects" "" "" "" "26/03/2020 09:53" ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad" "" "" "" "19/12/2018 20:18" ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad" "" "" "" "19/12/2018 20:18" ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad" "" "" "" "06/08/2019 14:28" ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" "" "23/03/2020 20:44" ""
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" "" "25/03/2020 18:17" ""
+ "avast" "Avast Antivirus  Shell Extension" "(Verified) Avast Software s.r.o." "c:\program files\avast software\avast\ashshell.dll" "18/02/2020 12:07" ""
+ "AVG" "AVG Internet Security System  Shell Extension" "(Verified) AVG Technologies USA, LLC" "c:\program files\avg\antivirus\ashshell.dll" "18/02/2020 11:51" ""
"HKLM\Software\Wow6432Node\Classes\*\ShellEx\ContextMenuHandlers" "" "" "" "25/03/2020 18:17" ""
"HKCU\Software\Classes\Drive\ShellEx\ContextMenuHandlers" "" "" "" "" ""
"HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers" "" "" "" "25/03/2020 18:17" ""
"HKLM\Software\Wow6432Node\Classes\Drive\ShellEx\ContextMenuHandlers" "" "" "" "25/03/2020 18:17" ""
"HKCU\Software\Classes\*\ShellEx\PropertySheetHandlers" "" "" "" "19/12/2018 20:20" ""
"HKLM\Software\Classes\*\ShellEx\PropertySheetHandlers" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Wow6432Node\Classes\*\ShellEx\PropertySheetHandlers" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" "" "" ""
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" "" "25/03/2020 17:13" ""
+ "00asw" "Avast Antivirus  Shell Extension" "(Verified) Avast Software s.r.o." "c:\program files\avast software\avast\ashshell.dll" "18/02/2020 12:07" ""
+ "00avg" "Avast Antivirus  Shell Extension" "(Verified) Avast Software s.r.o." "c:\program files\avast software\avast\ashshell.dll" "18/02/2020 12:07" ""
"HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" "" "25/03/2020 17:13" ""
"HKCU\Software\Classes\AllFileSystemObjects\ShellEx\DragDropHandlers" "" "" "" "" ""
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\DragDropHandlers" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\DragDropHandlers" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" "" "" ""
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" "" "23/03/2020 20:44" ""
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" "" "25/03/2020 18:17" ""
"HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" "" "25/03/2020 18:17" ""
"HKCU\Software\Classes\Directory\Shellex\DragDropHandlers" "" "" "" "19/12/2018 20:20" ""
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\DragDropHandlers" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\Directory\Shellex\PropertySheetHandlers" "" "" "" "19/12/2018 20:20" ""
"HKLM\Software\Classes\Directory\Shellex\PropertySheetHandlers" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\PropertySheetHandlers" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\Directory\Shellex\CopyHookHandlers" "" "" "" "19/12/2018 20:20" ""
"HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\CopyHookHandlers" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" "" "23/03/2020 20:44" ""
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" "" "19/12/2018 20:30" ""
+ "ACE" "Radeon Settings: Desktop Control Panel" "(Not verified) Advanced Micro Devices, Inc." "c:\program files\amd\cnext\cnext\atiacm64.dll" "16/02/2017 06:09" ""
"HKLM\Software\Wow6432Node\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" "" "19/12/2018 20:30" ""
"HKCU\Software\Classes\Folder\Shellex\ColumnHandlers" "" "" "" "" ""
"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers" "" "" "" "19/12/2018 20:18" ""
+ "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" "" "(Verified) The Document Foundation" "c:\program files\libreoffice\program\shlxthdl\shlxthdl.dll" "03/08/2018 00:07" ""
"HKLM\Software\Wow6432Node\Classes\Folder\Shellex\ColumnHandlers" "" "" "" "19/12/2018 20:18" ""
+ "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" "" "(Not verified) Apache Software Foundation" "c:\program files (x86)\openoffice 4\program\shlxthdl\shlxthdl.dll" "12/12/2017 01:50" ""
"HKCU\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" "" "" ""
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" "" "25/03/2020 17:13" ""
+ "avast" "Avast Antivirus  Shell Extension" "(Verified) Avast Software s.r.o." "c:\program files\avast software\avast\ashshell.dll" "18/02/2020 12:07" ""
+ "AVG" "AVG Internet Security System  Shell Extension" "(Verified) AVG Technologies USA, LLC" "c:\program files\avg\antivirus\ashshell.dll" "18/02/2020 11:51" ""
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" "" "25/03/2020 17:13" ""
"HKCU\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" "" "" ""
"HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\DragDropHandlers" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\Folder\ShellEx\ExtShellFolderViews" "" "" "" "" ""
"HKLM\Software\Classes\Folder\ShellEx\ExtShellFolderViews" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ExtShellFolderViews" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\Folder\ShellEx\PropertySheetHandlers" "" "" "" "" ""
"HKLM\Software\Classes\Folder\ShellEx\PropertySheetHandlers" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\PropertySheetHandlers" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" "" "26/03/2020 09:53" ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" "" "25/03/2020 17:13" ""
+ "00asw" "Avast Antivirus  Shell Extension" "(Verified) Avast Software s.r.o." "c:\program files\avast software\avast\ashshell.dll" "18/02/2020 12:07" ""
+ "00avg" "Avast Antivirus  Shell Extension" "(Verified) Avast Software s.r.o." "c:\program files\avast software\avast\ashshell.dll" "18/02/2020 12:07" ""
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\Clsid\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\Inprocserver32" "" "" "" "23/03/2020 20:44" ""
"HKCU\Software\Microsoft\Ctf\LangBarAddin" "" "" "" "14/01/2019 17:06" ""
"HKLM\Software\Microsoft\Ctf\LangBarAddin" "" "" "" "19/12/2018 20:22" ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" "" "19/12/2018 20:18" ""
+ "HP Network Check Helper" "HP Network Check IE Plug-in" "(Verified) HP Inc." "c:\program files (x86)\hewlett-packard\hp support framework\resources\hpnetworkcheck\hpnetworkcheckpluginx64.dll" "27/05/2016 06:03" ""
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" "" "19/12/2018 20:18" ""
+ "HP Network Check Helper" "HP Network Check IE Plug-in" "(Verified) HP Inc." "c:\program files (x86)\hewlett-packard\hp support framework\resources\hpnetworkcheck\hpnetworkcheckplugin.dll" "27/05/2016 06:01" ""
"HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks" "" "" "" "19/12/2018 20:20" ""
"HKLM\Software\Microsoft\Internet Explorer\Toolbar" "" "" "" "15/03/2020 17:34" ""
"HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar" "" "" "" "15/03/2020 17:34" ""
"HKCU\Software\Microsoft\Internet Explorer\Explorer Bars" "" "" "" "25/03/2020 18:17" ""
"HKLM\Software\Microsoft\Internet Explorer\Explorer Bars" "" "" "" "15/03/2020 17:34" ""
"HKCU\Software\Wow6432Node\Microsoft\Internet Explorer\Explorer Bars" "" "" "" "" ""
"HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Explorer Bars" "" "" "" "15/03/2020 17:34" ""
"HKCU\Software\Microsoft\Internet Explorer\Extensions" "" "" "" "25/03/2020 18:17" ""
"HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" "" "19/12/2018 20:18" ""
+ "HP Network Check" "NCLauncherFromIE" "(Verified) HP Inc." "c:\program files (x86)\hewlett-packard\hp support framework\resources\hpnetworkcheck\nclauncherfromie.exe" "17/05/2016 11:09" ""
+ "HP Smart Print" "SmartPrintSetup" "(Verified) Hewlett-Packard Company" "c:\program files (x86)\hewlett-packard\smart print\smartprintsetup.exe" "27/06/2013 11:53" ""
"HKCU\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions" "" "" "" "" ""
"HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions" "" "" "" "19/12/2018 20:18" ""
+ "HP Network Check" "NCLauncherFromIE" "(Verified) HP Inc." "c:\program files (x86)\hewlett-packard\hp support framework\resources\hpnetworkcheck\nclauncherfromie.exe" "17/05/2016 11:09" ""
+ "HP Smart Print" "SmartPrintSetup" "(Verified) Hewlett-Packard Company" "c:\program files (x86)\hewlett-packard\smart print\smartprintsetup.exe" "27/06/2013 11:53" ""
"Task Scheduler" "" "" "" "" ""
+ "\CCleanerSkipUAC" "CCleaner" "(Verified) Piriform Software Ltd" "c:\program files\ccleaner\ccleaner.exe" "18/03/2020 17:14" ""
+ "\Hewlett-Packard\HP Support Assistant\Product Configurator" "ProductConfig" "(Verified) HP Inc." "c:\program files (x86)\hewlett-packard\hp support framework\resources\productconfig.exe" "12/02/2020 03:12" ""
+ "\Hewlett-Packard\HP Support Assistant\WarrantyChecker" "HPWarrantyChecker" "(Verified) HP Inc." "c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpwarrantychecker.exe" "26/02/2020 08:19" ""
+ "\HP\HP CoolSense\HP CoolSense Start at Logon" "HP CoolSense" "(Verified) HP Inc." "c:\program files (x86)\hp\hp coolsense\coolsense.exe" "11/01/2017 05:51" ""
+ "\HPAudioSwitch" "HPAudioSwitch" "(Verified) HP Inc." "c:\program files (x86)\hp\hpaudioswitch\hpaudioswitch.exe" "21/06/2019 15:29" ""
+ "\HPCeeScheduleForBETH" "HP Ceement" "(Verified) HP Inc." "c:\program files (x86)\hewlett-packard\hp ceement\hpcee.exe" "10/09/2018 03:37" ""
+ "\HPJumpStartLaunch" "" "" "File not found: C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe" "" ""
+ "\RTKCPL" "Realtek HD Audio Manager" "(Verified) Realtek Semiconductor Corp." "c:\program files\realtek\audio\hda\rtkngui64.exe" "28/05/2019 11:15" ""
+ "\StartCN" "Radeon Settings: Command Line Interface" "(Verified) Advanced Micro Devices, Inc." "c:\program files\amd\cnext\cnext\cncmd.exe" "16/02/2017 06:09" ""
"HKLM\System\CurrentControlSet\Services" "" "" "" "25/03/2020 20:09" ""
+ "AdaptiveSleepService" "AdaptiveSleepService: AMD adaptive sleep service" "(Verified) Advanced Micro Devices, Inc." "c:\program files\ati technologies\ati.ace\a4\adaptivesleepservice.exe" "16/02/2017 06:11" ""
+ "AMD External Events Utility" "AMD External Events Utility: AMD External Events Service Module" "(Verified) Advanced Micro Devices, Inc." "c:\windows\system32\driverstore\filerepository͆830.inf_amd64_35731e557194973d\b345901\atiesrxx.exe" "16/08/2019 15:37" ""
+ "aswbIDSAgent" "aswbIDSAgent: Provides Identity Protection Against Cyber Crime." "(Verified) Avast Software s.r.o." "c:\program files\avast software\avast\aswidsagent.exe" "18/02/2020 11:51" ""
+ "avast! Antivirus" "Avast Antivirus: Manages and implements Avast antivirus services for this computer. This includes the real-time shields, the virus chest and the scheduler." "(Verified) Avast Software s.r.o." "c:\program files\avast software\avast\avastsvc.exe" "18/02/2020 12:17" ""
+ "AvastWscReporter" "AvastWscReporter: Avast Antivirus  remediation exe" "(Verified) Avast Software s.r.o." "c:\program files\avast software\avast\wsc_proxy.exe" "18/02/2020 12:32" ""
+ "AVG Antivirus" "AVG Antivirus: Manages and implements AVG antivirus services for this computer. This includes the real-time protection, the Quarantine and the scheduler." "(Verified) AVG Technologies USA, LLC" "c:\program files\avg\antivirus\avgsvc.exe" "18/02/2020 12:02" ""
+ "avgbIDSAgent" "avgbIDSAgent: Provides Identity Protection Against Cyber Crime." "(Verified) AVG Technologies USA, LLC" "c:\program files\avg\antivirus\aswidsagent.exe" "18/02/2020 11:51" ""
+ "AvgWscReporter" "AvgWscReporter: AVG Internet Security System  remediation exe" "(Verified) AVG Technologies USA, LLC" "c:\program files\avg\antivirus\wsc_proxy.exe" "18/02/2020 12:15" ""
+ "Bonjour Service" "Bonjour Service: Enables hardware devices and software services to automatically configure themselves on the network and advertise their presence." "(Verified) Apple Inc." "c:\program files\bonjour\mdnsresponder.exe" "31/08/2011 05:52" ""
+ "brave" "Brave Update Service (brave): Keeps your Brave software up to date. If this service is disabled or stopped, your Brave software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Brave software using it." "(Verified) Brave Software, Inc." "c:\program files (x86)\bravesoftware\update\braveupdate.exe" "04/02/2019 17:39" ""
+ "bravem" "Brave Update Service (bravem): Keeps your Brave software up to date. If this service is disabled or stopped, your Brave software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Brave software using it." "(Verified) Brave Software, Inc." "c:\program files (x86)\bravesoftware\update\braveupdate.exe" "04/02/2019 17:39" ""
+ "BTDevManager" "BTDevManager: REALTEK Bluetooth Service" "(Verified) Realtek Semiconductor Corp." "c:\program files (x86)\realtek\realtek bluetooth\btdevmgr.exe" "07/03/2017 07:28" ""
+ "dbupdate" "Dropbox Update Service (dbupdate): Keeps your Dropbox software up to date. If this service is disabled or stopped, your Dropbox software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Dropbox software using it." "(Verified) Dropbox, Inc" "c:\program files (x86)\dropbox\update\dropboxupdate.exe" "21/10/2015 18:52" ""
+ "dbupdatem" "Dropbox Update Service (dbupdatem): Keeps your Dropbox software up to date. If this service is disabled or stopped, your Dropbox software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Dropbox software using it." "(Verified) Dropbox, Inc" "c:\program files (x86)\dropbox\update\dropboxupdate.exe" "21/10/2015 18:52" ""
+ "GingerUpdateService" "GingerUpdateService: Ginger" "(Verified) Ginger Software inc" "c:\program files (x86)\ginger\gingerupdateservice\gingerupdateservice.exe" "21/03/2017 09:17" ""
+ "GoogleChromeElevationService" "Google Chrome Elevation Service: Google Chrome" "(Verified) Google LLC" "c:\program files (x86)\google\chrome\application\80.0.3987.149\elevation_service.exe" "16/03/2020 18:53" ""
+ "gupdate" "Google Update Service (gupdate): Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "(Verified) Google Inc" "c:\program files (x86)\google\update\googleupdate.exe" "22/08/2015 02:13" ""
+ "gupdatem" "Google Update Service (gupdatem): Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "(Verified) Google Inc" "c:\program files (x86)\google\update\googleupdate.exe" "22/08/2015 02:13" ""
+ "HP Comm Recover" "HP Comm Recovery: Check and recover devices" "(Verified) HP Inc." "c:\program files\hpcommrecovery\hpcommrecovery.exe" "28/09/2018 08:01" ""
+ "hpqcaslwmiex" "HP CASL Framework Service: HP CASL Framework Service" "(Verified) Hewlett-Packard Company" "c:\program files (x86)\hp\shared\hpqwmiex.exe" "03/06/2016 21:45" ""
+ "hpqwmiex" "HP Software Framework Service: HP Software Framework WMI Service" "(Verified) Hewlett-Packard Company" "c:\program files (x86)\hewlett-packard\shared\hpqwmiex.exe" "14/05/2013 01:01" ""
+ "HPSupportSolutionsFrameworkService" "HP Support Solutions Framework Service: This service allows for the detection of HP products and enables identification of support solutions for detected products." "(Verified) HP Inc." "c:\program files (x86)\hewlett-packard\hp support solutions\hpsupportsolutionsframeworkservice.exe" "06/12/2019 09:51" ""
+ "HPWMISVC" "HPWMISVC: HP WMI Service" "(Verified) HP Inc." "c:\program files (x86)\hp\hp system event\hpwmisvc.exe" "06/02/2017 07:13" ""
+ "RtkAudioService" "Realtek Audio Service: For cooperation with Realtek audio driver." "(Verified) Realtek Semiconductor Corp." "c:\program files\realtek\audio\hda\rtkaudioservice64.exe" "24/12/2018 09:43" ""
+ "SynTPEnhService" "SynTPEnhService: 64-bit Synaptics Pointing Enhance Service" "(Verified) Synaptics Incorporated" "c:\windows\system32\syntpenhservice.exe" "16/04/2019 12:16" ""
+ "WDDriveService" "WD Drive Manager: Provides discovery of WD Drives" "(Verified) Western Digital Technologies, Inc." "c:\program files (x86)\western digital\wd drive manager\wddriveservice.exe" "08/12/2015 01:05" ""
+ "WdNisSvc" "Windows Defender Antivirus Network Inspection Service: Helps guard against intrusion attempts targeting known and newly discovered vulnerabilities in network protocols" "(Not verified) Microsoft Corporation" "c:\programdata\microsoft\windows defender\platform\4.18.2003.8-0\nissrv.exe" "29/04/2012 02:07" ""
+ "WinDefend" "Windows Defender Antivirus Service: Helps protect users from malware and other potentially unwanted software" "(Not verified) Microsoft Corporation" "c:\programdata\microsoft\windows defender\platform\4.18.2003.8-0\msmpeng.exe" "10/11/2035 21:23" ""
+ "XperiaCompanionService" "Xperia Companion Service: Xperia Companion helper service." "(Not verified) Sony" "c:\program files\sony\xperia companion\service\xperiacompanionservice.exe" "22/10/2019 15:35" ""
"HKLM\System\CurrentControlSet\Services" "" "" "" "25/03/2020 20:09" ""
+ "Accelerometer" "HP Mobile Data Protection Sensor: HP Accelerometer" "(Verified) HP Inc." "c:\windows\system32\drivers\accelerometer.sys" "19/07/2019 06:47" ""
+ "amd_sata" "amd_sata: AHCI 1.3 Device Driver" "(Verified) Advanced Micro Devices, Inc." "c:\windows\system32\drivers\amd_sata.sys" "19/03/2015 06:43" ""
+ "amd_xata" "amd_xata: Stor Filter Driver" "(Verified) Advanced Micro Devices, Inc." "c:\windows\system32\drivers\amd_xata.sys" "19/03/2015 06:43" ""
+ "AmdAS4" "AmdAS4 service: AMD AS4 Driver" "(Verified) Advanced Micro Devices Inc." "c:\windows\system32\drivers\amdas4.sys" "22/12/2016 08:42" ""
+ "amdgpio2" "AMD GPIO Client Driver: AMD GPIO Controller Driver" "(Verified) Advanced Micro Devices Inc." "c:\windows\system32\drivers\amdgpio2.sys" "12/11/2018 09:49" ""
+ "amdi2c" "AMD I2C Controller Service: AMD I2C Controller Driver" "(Verified) Advanced Micro Devices Inc." "c:\windows\system32\drivers\amdi2c.sys" "20/03/2019 04:57" ""
+ "amdkmafd" "AMD Audio Bus Lower Filter: AMD Audio Bus Lower Filter" "(Verified) Advanced Micro Devices, Inc." "c:\windows\system32\drivers\amdkmafd.sys" "19/05/2015 23:26" ""
+ "amdkmcsp" "AMD Kernel Mode CSP Service: amdkmcsp sys" "(Verified) Advanced Micro Devices Inc." "c:\windows\system32\drivers\amdkmcsp.sys" "05/06/2017 21:27" ""
+ "amdkmdag" "amdkmdag: ATI Radeon Kernel Mode Driver" "(Verified) Advanced Micro Devices, Inc." "c:\windows\system32\driverstore\filerepository͆830.inf_amd64_35731e557194973d\b345901\atikmdag.sys" "16/08/2019 15:57" ""
+ "amdkmdap" "amdkmdap: AMD multi-vendor Miniport Driver" "(Verified) Advanced Micro Devices, Inc." "c:\windows\system32\driverstore\filerepository͆830.inf_amd64_35731e557194973d\b345901\atikmpag.sys" "16/08/2019 15:39" ""
+ "amdpsp" "AMD PSP Service: amdpsp sys" "(Verified) Advanced Micro Devices, Inc." "c:\windows\system32\drivers\amdpsp.sys" "10/09/2018 21:42" ""
+ "amduart" "AMD UART Service: AMD UART Controller Driver" "(Verified) Advanced Micro Devices, Inc." "c:\windows\system32\drivers\amduart.sys" "27/09/2018 10:08" ""
+ "aswArDisk" "aswArDisk: Avast anti rootkit disk filter" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswardisk.sys" "10/02/2020 12:54" ""
+ "aswArPot" "aswArPot: Avast anti rootkit" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswarpot.sys" "10/02/2020 12:55" ""
+ "aswbidsdriver" "aswbidsdriver: IDS Application Activity Monitor Driver." "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswbidsdriver.sys" "10/02/2020 12:26" ""
+ "aswbidsh" "aswbidsh: Application Activity Monitor Helper Driver" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswbidsh.sys" "10/02/2020 12:26" ""
+ "aswbuniv" "aswbuniv: Universal Driver" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswbuniv.sys" "10/02/2020 12:26" ""
+ "aswHdsKe" "aswHdsKe: Home Network Security" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswhdske.sys" "10/02/2020 12:55" ""
+ "aswKbd" "aswKbd: Avast Keyboard Filter Driver" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswkbd.sys" "10/02/2020 12:55" ""
+ "aswMonFlt" "aswMonFlt: Avast File System Minifilter for Windows 2003/Vista" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswmonflt.sys" "10/02/2020 12:55" ""
+ "aswRdr" "aswRdr: Avast WFP Redirect Driver" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswrdr2.sys" "10/02/2020 12:55" ""
+ "aswRvrt" "aswRvrt: Avast Antivirus  Revert" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswrvrt.sys" "10/02/2020 12:55" ""
+ "aswSnx" "aswSnx: Avast Virtualization Driver" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswsnx.sys" "10/02/2020 12:55" ""
+ "aswSP" "aswSP: Avast self protection module" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswsp.sys" "05/03/2020 13:17" ""
+ "aswStm" "aswStm: Stream Filter" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswstm.sys" "10/02/2020 12:55" ""
+ "aswVmm" "aswVmm: Avast Antivirus  VM Monitor" "(Verified) Avast Software s.r.o." "c:\windows\system32\drivers\aswvmm.sys" "10/02/2020 12:55" ""
+ "avgArDisk" "avgArDisk: AVG anti rootkit disk filter" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgardisk.sys" "10/02/2020 12:55" ""
+ "avgArPot" "avgArPot: AVG anti rootkit" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgarpot.sys" "10/02/2020 12:55" ""
+ "avgbidsdriver" "avgbidsdriver: IDS Application Activity Monitor Driver." "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgbidsdriver.sys" "10/02/2020 12:26" ""
+ "avgbidsh" "avgbidsh: Application Activity Monitor Helper Driver" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgbidsh.sys" "10/02/2020 12:26" ""
+ "avgbuniv" "avgbuniv: Universal Driver" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgbuniv.sys" "10/02/2020 12:26" ""
+ "avgKbd" "avgKbd: AVG Keyboard Filter Driver" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgkbd.sys" "10/02/2020 12:55" ""
+ "avgMonFlt" "avgMonFlt: AVG File System Minifilter for Windows 2003/Vista" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgmonflt.sys" "10/02/2020 12:55" ""
+ "avgRdr" "avgRdr: AVG WFP Redirect Driver" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgrdr2.sys" "10/02/2020 12:55" ""
+ "avgRvrt" "avgRvrt: AVG Internet Security System  Revert" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgrvrt.sys" "10/02/2020 12:55" ""
+ "avgSnx" "avgSnx: AVG Virtualization Driver" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgsnx.sys" "10/02/2020 12:55" ""
+ "avgSP" "avgSP: AVG self protection module" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgsp.sys" "05/03/2020 13:17" ""
+ "avgStm" "avgStm: Stream Filter" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgstm.sys" "10/02/2020 12:55" ""
+ "avgVmm" "avgVmm: AVG Internet Security System  VM Monitor" "(Verified) AVG Technologies USA, LLC" "c:\windows\system32\drivers\avgvmm.sys" "10/02/2020 12:55" ""
+ "hpdskflt" "HP Disk Filter: HP Disk Filter - SATA/RAID" "(Verified) HP Inc." "c:\windows\system32\drivers\hpdskflt.sys" "19/07/2019 06:47" ""
+ "HpqKbFiltr" "HpqKbFilter Driver: Keyboard Filter Driver" "(Verified) Hewlett-Packard Company" "c:\windows\system32\drivers\hpqkbfiltr64.sys" "25/04/2014 20:41" ""
+ "iaLPSSi_GPIO" "Intel® Serial IO GPIO Controller Driver: Intel® Serial IO GPIO Controller Driver" "(Verified) Intel Corporation - Client Components Group" "c:\windows\system32\drivers\ialpssi_gpio.sys" "02/02/2015 09:00" ""
+ "IntcAzAudAddService" "Service for Realtek HD Audio (WDM): Realtek® High Definition Audio Function Driver" "(Verified) Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtkvhd64.sys" "03/06/2019 11:02" ""
+ "RTSPER" "Realtek PCIE Card Reader - PER: RTS PCIE READER Driver" "(Verified) Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtsper.sys" "12/04/2017 02:26" ""
+ "rtsuvc" "HP IR Camera Driver: Realtek UVC Driver for Win7/Win8/Win8.1/Win10" "(Verified) Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtsuvc.sys" "17/11/2016 11:03" ""
+ "RTWlanE" "Realtek Wireless LAN 802.11n PCI-E Network Adapter: Realtek PCIE NDIS Driver 85905 38554" "(Verified) Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtwlane.sys" "04/12/2019 08:12" ""
+ "secnvme" "secnvme: Samsung NVM Express Storport Miniport Driver" "(Verified) Samsung Electronics Co., Ltd." "c:\windows\system32\drivers\secnvme.sys" "17/01/2019 08:22" ""
+ "SmbDrv" "SmbDrv: Synaptics SMBus Driver" "(Verified) Synaptics Incorporated" "c:\windows\system32\drivers\smb_driver_amdasf.sys" "16/06/2018 02:44" ""
+ "SmbDrvI" "SmbDrvI: Synaptics SMBus Driver" "(Verified) Synaptics Incorporated" "c:\windows\system32\drivers\smb_driver_intel.sys" "21/02/2017 04:47" ""
+ "SynTP" "Synaptics TouchPad Driver: Synaptics Touchpad Win64 Driver" "(Verified) Synaptics Incorporated" "c:\windows\system32\drivers\syntp.sys" "16/04/2019 14:31" ""
+ "VirtualButtons" "AMD Virtual Buttons: AMD Virtual Buttons driver" "(Verified) Softeq Development Corporation" "c:\windows\system32\drivers\virtualbuttons.sys" "01/02/2016 12:32" ""
+ "WirelessButtonDriver64" "HP Wireless Button Driver Service: HP Wireless Button Driver" "(Verified) HP Inc." "c:\windows\system32\drivers\wirelessbuttondriver64.sys" "04/11/2019 11:42" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Font Drivers" "" "" "" "19/12/2018 20:18" ""
+ "Adobe Type Manager" "" "" "File not found: atmfd.dll" "" ""
"HKCU\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" "" "04/06/2019 16:46" ""
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" "" "14/02/2020 01:06" ""
"HKCU\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" "" "" ""
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" "" "03/07/2019 22:39" ""
"HKCU\Software\Classes\Filter" "" "" "" "26/03/2020 09:53" ""
"HKLM\Software\Classes\Filter" "" "" "" "25/03/2020 20:09" ""
"HKCU\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" "" "" ""
"HKCU\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" "" "" ""
"HKCU\Software\Classes\CLSID\{AC757296-3522-4E11-9862-C17BE5A1767E}\Instance" "" "" "" "" ""
"HKCU\Software\Wow6432Node\Classes\CLSID\{AC757296-3522-4E11-9862-C17BE5A1767E}\Instance" "" "" "" "" ""
"HKCU\Software\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance" "" "" "" "" ""
"HKCU\Software\Wow6432Node\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance" "" "" "" "" ""
"HKCU\Software\Classes\CLSID\{ABE3B9A4-257D-4B97-BD1A-294AF496222E}\Instance" "" "" "" "" ""
"HKCU\Software\Wow6432Node\Classes\CLSID\{ABE3B9A4-257D-4B97-BD1A-294AF496222E}\Instance" "" "" "" "" ""
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" "" "19/12/2018 20:17" ""
"HKLM\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Classes\CLSID\{AC757296-3522-4E11-9862-C17BE5A1767E}\Instance" "" "" "" "" ""
"HKLM\Software\Wow6432Node\Classes\CLSID\{AC757296-3522-4E11-9862-C17BE5A1767E}\Instance" "" "" "" "" ""
"HKLM\Software\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance" "" "" "" "19/12/2018 20:17" ""
"HKLM\Software\Wow6432Node\Classes\CLSID\{7ED96837-96F0-4812-B211-F13C24117ED3}\Instance" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Classes\CLSID\{ABE3B9A4-257D-4B97-BD1A-294AF496222E}\Instance" "" "" "" "" ""
"HKLM\Software\Wow6432Node\Classes\CLSID\{ABE3B9A4-257D-4B97-BD1A-294AF496222E}\Instance" "" "" "" "" ""
"HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute" "" "" "" "25/03/2020 20:09" ""
"HKLM\System\CurrentControlSet\Control\Session Manager\SetupExecute" "" "" "" "25/03/2020 20:09" ""
"HKLM\System\CurrentControlSet\Control\Session Manager\Execute" "" "" "" "25/03/2020 20:09" ""
"HKLM\System\CurrentControlSet\Control\Session Manager\S0InitialCommand" "" "" "" "25/03/2020 20:09" ""
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options" "" "" "" "25/03/2020 17:27" ""
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options" "" "" "" "25/03/2020 17:27" ""
"HKLM\Software\Microsoft\Command Processor\Autorun" "" "" "" "19/12/2018 20:23" ""
"HKLM\Software\Wow6432Node\Microsoft\Command Processor\Autorun" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Microsoft\Command Processor\Autorun" "" "" "" "19/12/2018 20:23" ""
"HKCU\SOFTWARE\Classes\Exefile\Shell\Open\Command\(Default)" "" "" "" "" ""
"HKLM\SOFTWARE\Classes\Exefile\Shell\Open\Command\(Default)" "" "" "" "19/12/2018 20:18" ""
"HKLM\Software\Classes\.exe" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\.exe" "" "" "" "26/03/2020 09:53" ""
"HKLM\Software\Classes\.cmd" "" "" "" "19/12/2018 20:18" ""
"HKCU\Software\Classes\.cmd" "" "" "" "26/03/2020 09:53" ""
"HKCU\SOFTWARE\Classes\Htmlfile\Shell\Open\Command\(Default)" "" "" "" "" ""
"HKLM\SOFTWARE\Classes\Htmlfile\Shell\Open\Command\(Default)" "" "" "" "19/12/2018 20:23" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\Appinit_Dlls" "" "" "" "15/06/2019 01:14" ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Windows\Appinit_Dlls" "" "" "" "19/12/2018 20:18" ""
"HKLM\System\CurrentControlSet\Control\Session Manager\AppCertDlls" "" "" "" "25/03/2020 20:09" ""
"HKLM\System\CurrentControlSet\Control\Session Manager\KnownDlls" "" "" "" "15/09/2018 07:34" ""
+ "_wow64cpu" "" "" "c:\windows\syswow64\wow64cpu.dll" "" ""
+ "_wowarmhw" "" "" "c:\windows\system32\wowarmhw.dll" "" ""
+ "_wowarmhw" "" "" "c:\windows\syswow64\wowarmhw.dll" "" ""
+ "_xtajit" "" "" "c:\windows\system32\xtajit.dll" "" ""
+ "_xtajit" "" "" "c:\windows\syswow64\xtajit.dll" "" ""
+ "wow64" "" "" "c:\windows\syswow64\wow64.dll" "" ""
+ "wow64win" "" "" "c:\windows\syswow64\wow64win.dll" "" ""
"HKLM\SYSTEM\Setup\CmdLine" "" "" "" "26/03/2020 05:48" ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers" "" "" "" "19/12/2018 20:18" ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Provider Filters" "" "" "" "19/12/2018 20:18" ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\PLAP Providers" "" "" "" "19/12/2018 20:18" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman" "" "" "" "25/03/2020 18:13" ""
"HKCU\SOFTWARE\Policies\Microsoft\Windows\Control Panel\Desktop\Scrnsave.exe" "" "" "" "" ""
"HKCU\Control Panel\Desktop\Scrnsave.exe" "" "" "" "25/03/2020 18:13" ""
"HKLM\System\CurrentControlSet\Control\BootVerificationProgram\ImagePath" "" "" "" "25/03/2020 18:13" ""
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GpExtensions" "" "" "" "19/12/2018 20:18" ""
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries" "" "" "" "19/12/2018 20:18" ""
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries" "" "" "" "19/12/2018 20:18" ""
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64" "" "" "" "19/12/2018 20:18" ""
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64" "" "" "" "19/12/2018 20:18" ""
"HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors" "" "" "" "19/12/2018 20:19" ""
+ "HP C511 Status Monitor" "Print Status Language Monitor" "(Verified) Hewlett Packard" "c:\windows\system32\hpinkstsc511lm.dll" "16/12/2012 13:02" ""
+ "HP Discovery Port Monitor (HP ENVY 4500 series)" "HP Discovery Port Monitor" "(Verified) Hewlett Packard" "c:\windows\system32\hpdiscopmc511.dll" "21/07/2014 23:31" ""
"HKLM\SYSTEM\CurrentControlSet\Control\Print\Providers" "" "" "" "19/12/2018 20:18" ""
"HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders" "" "" "" "19/12/2018 20:18" ""
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Authentication Packages" "" "" "" "25/03/2020 18:13" ""
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Notification Packages" "" "" "" "25/03/2020 18:13" ""
"HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order" "" "" "" "19/12/2018 20:18" ""
"WMI Database Entries - run as Administrator for complete scan" "" "" "" "" ""
"HKLM\Software\Microsoft\Office\Outlook\Addins" "" "" "" "25/03/2020 18:14" ""
"HKCU\Software\Microsoft\Office\Outlook\Addins" "" "" "" "19/12/2018 20:21" ""
+ "{D0837AE0-3B1D-4D69-8FDD-278145C5E2C6}" "" "" "" "19/12/2018 20:21" ""
"HKLM\Software\Wow6432Node\Microsoft\Office\Outlook\Addins" "" "" "" "25/03/2020 18:14" ""
+ "GingerOutlookAddIn Class" "Ginger" "(Verified) Ginger Software inc" "c:\program files (x86)\ginger\gingeroutlookaddin\gingermsoutlookaddin.dll" "21/03/2017 09:20" ""
"HKCU\Software\Wow6432Node\Microsoft\Office\Outlook\Addins" "" "" "" "" ""
"HKLM\Software\Microsoft\Office\Excel\Addins" "" "" "" "" ""
"HKCU\Software\Microsoft\Office\Excel\Addins" "" "" "" "" ""
"HKLM\Software\Wow6432Node\Microsoft\Office\Excel\Addins" "" "" "" "" ""
"HKCU\Software\Wow6432Node\Microsoft\Office\Excel\Addins" "" "" "" "" ""
"HKLM\Software\Microsoft\Office\PowerPoint\Addins" "" "" "" "" ""
"HKCU\Software\Microsoft\Office\PowerPoint\Addins" "" "" "" "" ""
"HKLM\Software\Wow6432Node\Microsoft\Office\PowerPoint\Addins" "" "" "" "" ""
"HKCU\Software\Wow6432Node\Microsoft\Office\PowerPoint\Addins" "" "" "" "" ""
"HKLM\Software\Microsoft\Office\Word\Addins" "" "" "" "" ""
"HKCU\Software\Microsoft\Office\Word\Addins" "" "" "" "19/12/2018 20:21" ""
+ "{7C5B98C9-B035-4B11-862A-CB519ECEF6A2}" "" "" "" "19/12/2018 20:21" ""
"HKLM\Software\Wow6432Node\Microsoft\Office\Word\Addins" "" "" "" "19/12/2018 20:18" ""
+ "WordAddin Class" "Ginger" "(Verified) Ginger Software inc" "c:\program files (x86)\ginger\gingerwordaddin\gingermswordaddin.dll" "21/03/2017 09:20" ""
"HKCU\Software\Wow6432Node\Microsoft\Office\Word\Addins" "" "" "" "" ""
"HKLM\Software\Microsoft\Office\Access\Addins" "" "" "" "" ""
"HKCU\Software\Microsoft\Office\Access\Addins" "" "" "" "" ""
"HKLM\Software\Wow6432Node\Microsoft\Office\Access\Addins" "" "" "" "" ""
"HKCU\Software\Wow6432Node\Microsoft\Office\Access\Addins" "" "" "" "" ""
"HKLM\Software\Microsoft\Office\Onenote\Addins" "" "" "" "" ""
"HKCU\Software\Microsoft\Office\Onenote\Addins" "" "" "" "" ""
"HKLM\Software\Wow6432Node\Microsoft\Office\Onenote\Addins" "" "" "" "" ""
"HKCU\Software\Wow6432Node\Microsoft\Office\Onenote\Addins" "" "" "" "" ""
"HKLM\SOFTWARE\Microsoft\Office test\Special\Perf\(Default)" "" "" "" "" ""
"HKCU\SOFTWARE\Microsoft\Office test\Special\Perf\(Default)" "" "" "" "" ""

  • 0

Advertisements


#11
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 247 posts

Hello zclesa ..! We are currently analyzing your diaries and commenting on the situation with all forum experts...Give me some time and I'll get back to you soon ..!

 

Thanks for understanding...!


  • 0

#12
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 247 posts

The general opinion is that you have many browsers installed ..!  So it is possible that one of the browsers set to autostart ( Edge, Avast Secure Browser) loads a session with some website playing ads or video/music channel. It's a good option е Clean Boot...:

 

https://www.windowsc...ring-windows-10

 

Like I said above ... give me some time to analyze .. Thanks ..!


  • 0

#13
zclesa

zclesa

    Member

  • Topic Starter
  • Member
  • PipPip
  • 14 posts

Hello zclesa ..! We are currently analyzing your diaries and commenting on the situation with all forum experts...Give me some time and I'll get back to you soon ..!

 

Thanks for understanding...!

Thank you. I deeply appreciate all your help :)


  • 0

#14
icotonev

icotonev

    Trusted Helper

  • Malware Removal
  • 247 posts

Hello zclesa ..!
 
I see that there are too many antiviruses installed on your system: Avast, AVG, Bitdefender (leftovers from Bitdefender Free Antivirus)..!  I do not recommend that you have more than one anti virus product installed and running on your computer at a time. The reason for this is that if both products have their automatic (Real-Time) protection switched on, then those products which do not encrypt the virus strings within them can cause other anti virus products to cause "false alarms". It can also lead to a clash as both products fight for access to files which are opened. In general terms, the two programs may conflict and cause:

  •  False Alarms: When the anti virus software tells you that your PC has a virus when it actually doesn't.
  •  System Performance Problems: Your system may lock up due to both products attempting to access the same file at the same time.

Therefore please uninstall all but one antivirus program.

  • Press the Windows Key + R.
  • Type appwiz.cpl in the Run box and click OK.
  • The Add/Remove Programs list will open. Locate the following program(s) on the list:

AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 20.1.3112 - AVG Technologies)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 1.0.1 - Bitdefender)

  • Select one of the above program(s) and click Uninstall.
  • Restart the computer if prompted.

Then:
 
Run the following tools to clean up debris:
 
https://support.avg....upportType=home

https://www.bitdefender.com/uninstall/

 

----------------------------------------------------------------------------------------------------------------------------------------------------

 

Re-scan with FRST

 

  • Double-click FRST.exe/FRST64.exe to run it.
  • Press the Scan button.
  • When finished, it will produce logs called FRST.txt and Addition.txt in the same directory the tool was run from.
  • Please copy and paste the logs in your next reply.

---------------------------------------------------

In your next reply, please include:

  • FRST.txt
  • Addition.txt

 


  • 0

#15
zclesa

zclesa

    Member

  • Topic Starter
  • Member
  • PipPip
  • 14 posts

Hello zclesa ..!
 
I see that there are too many antiviruses installed on your system: Avast, AVG, Bitdefender (leftovers from Bitdefender Free Antivirus)..!  I do not recommend that you have more than one anti virus product installed and running on your computer at a time. The reason for this is that if both products have their automatic (Real-Time) protection switched on, then those products which do not encrypt the virus strings within them can cause other anti virus products to cause "false alarms". It can also lead to a clash as both products fight for access to files which are opened. In general terms, the two programs may conflict and cause:

  •  False Alarms: When the anti virus software tells you that your PC has a virus when it actually doesn't.
  •  System Performance Problems: Your system may lock up due to both products attempting to access the same file at the same time.

Therefore please uninstall all but one antivirus program.

  • Press the Windows Key + R.
  • Type appwiz.cpl in the Run box and click OK.
  • The Add/Remove Programs list will open. Locate the following program(s) on the list:

AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 20.1.3112 - AVG Technologies)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 1.0.1 - Bitdefender)

  • Select one of the above program(s) and click Uninstall.
  • Restart the computer if prompted.

Then:
 
Run the following tools to clean up debris:
 
https://support.avg....upportType=home

https://www.bitdefender.com/uninstall/

 

----------------------------------------------------------------------------------------------------------------------------------------------------

 

Re-scan with FRST

 

  • Double-click FRST.exe/FRST64.exe to run it.
  • Press the Scan button.
  • When finished, it will produce logs called FRST.txt and Addition.txt in the same directory the tool was run from.
  • Please copy and paste the logs in your next reply.

---------------------------------------------------

In your next reply, please include:

  • FRST.txt
  • Addition.txt

 

Thank you. I actually only intalled all thoe nti-viruses AFTER the problem started to see if it was a virus. I have uninstalled now. I might attempt a Clean Boot as I do need several browsers (2 work accounts and a personal one, which makes it annoying when you have 3 different Hootsuite logins to use the same browser), but I actually suspect Bing may be causing issues. Anyways, in the meantime...

 

Here is the new FRST.txt

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26-03-2020
Ran by BETH (administrator) on DESKTOP-RRNF5R7 (HP HP ENVY x360 Convertible 15-bq0xx) (27-03-2020 12:14:35)
Running from C:\Users\BETH\Desktop
Loaded Profiles: BETH (Available Profiles: BETH)
Platform: Windows 10 Home Version 1909 18363.720 (X64) Language: English (United Kingdom)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Advanced Micro Devices, Inc. -> ) C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(F.lux Software LLC -> f.lux Software LLC) C:\Users\BETH\AppData\Local\FluxSoftware\Flux\flux.exe
(Ginger Software inc -> Ginger Software) C:\Program Files (x86)\Ginger\GingerUpdateService\GingerUpdateService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(HP Inc. -> HP Development Company, L.P.) C:\Program Files (x86)\HP\HP CoolSense\CoolSense.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20212.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20212.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20022.81.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtAudioServ.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2003.8-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2003.8-0\NisSrv.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTServer.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Sony) [File not signed] C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe
(Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
 
==================== Registry (Whitelisted) ===================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [231640 2016-09-20] (Realtek Semiconductor Corp -> Realtek Semiconductor Corporation)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [1062392 2017-03-15] (HP Inc. -> HP Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [WDAppManager] => C:\Program Files (x86)\Western Digital\WD App Manager\AppManagerLauncher.exe [14688 2015-08-31] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [WD Quick View] => C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5564784 2015-02-12] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [WD Drive Unlocker] => C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe [1761120 2015-12-07] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [DriveUtilitiesHelper] => C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [1890664 2016-01-14] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [HP ENVY 4500 series (NET)] => C:\Program Files\HP\HP ENVY 4500 series\Bin\ScanToPCActivationApp.exe [3487240 2014-07-21] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [f.lux] => C:\Users\BETH\AppData\Local\FluxSoftware\Flux\flux.exe [1385480 2019-08-30] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [1687392 2019-10-22] (Sony Mobile Communications AB -> Sony)
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\MountPoints2: {5f571127-6f68-11ea-99fa-b05216366f28} - "E:\startme.exe" 
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe [2020-03-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\80.1.5.115\Installer\chrmstp.exe [2020-03-23] (Brave Software, Inc.) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Ginger.lnk [2017-12-27]
ShortcutTarget: Ginger.lnk -> C:\Windows\Installer\{1EBF9A59-F4E3-4EA7-BA97-76703C1432F6}\GingerClientStartu_E7648186C0BE4AE6AF2E431C614DBB20.exe (Flexera Software LLC) [File not signed]
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
 
==================== Scheduled Tasks (Whitelisted) ============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {08B3B8C2-6481-450F-B109-E95179069C53} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [308088 2020-02-12] (HP Inc. -> HP Inc.)
Task: {0AB4B3B2-DA89-40D8-A5C3-38513F2DC1D4} - System32\Tasks\HPCeeScheduleForBETH => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [97656 2018-09-11] (HP Inc. -> HP Inc.)
Task: {0E3B1F45-B57E-46A0-8C0F-1D48259609AD} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [52104 2017-02-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {228252BC-A87A-4F2C-99BB-E0092A345396} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2016-12-06] (HP Inc. -> HP Inc.)
Task: {37108D90-D44C-41FA-8FB7-0DE55F469871} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1116024 2020-02-26] (HP Inc. -> HP Inc.)
Task: {596EDB11-74C5-4339-B8E9-2A0C07A6A19D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {5A5E0904-28CA-4649-A283-14E5182E98AD} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5CDBB4B6-0EF4-4D78-9DD0-955E864E16CC} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {63414BE2-0D79-446C-BDD9-082E6E9AF8AF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1116024 2020-02-26] (HP Inc. -> HP Inc.)
Task: {636E28A0-E18B-46A0-93F3-CAE915CCBD97} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-10] (Google Inc -> Google Inc.)
Task: {66B56894-5D17-40C6-8D15-8470FE3D0F20} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {7168BE73-1E47-40CF-B60E-BB681F6B8EF2} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe
Task: {72FCDAFB-B1CA-467E-A112-EB9CCB06DBEC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-10] (Google Inc -> Google Inc.)
Task: {7CF72DF1-F4EF-47FE-961A-9EEE96CB67CA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [147832 2020-02-24] (HP Inc. -> HP Inc.)
Task: {7F5277CC-3DA4-442C-AA52-C89C3F83CF51} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.)
Task: {97FB53A6-053F-4B04-B693-DBBDB85FEDB1} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs]
Task: {A7D04C2B-0789-49A0-AFB0-302DA70088E3} - System32\Tasks\HP\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\HP\HP CoolSense\CoolSense.exe [1356648 2017-01-12] (HP Inc. -> HP Development Company, L.P.)
Task: {AC830C9A-E993-40A4-95F4-5EFE89EED3C1} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {BFCC10E8-4CB8-4440-83AF-3FE8329D6B4C} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9277528 2019-06-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {D8F39F0D-CEE0-4B4D-BDD8-614B34A0B74F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {E278F2FB-7BD0-4055-8F5E-C0445A8702CA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {E494E78B-B81A-49AE-9C4A-C04EE8E93E39} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
Task: {F1F83EE3-4BCC-413F-9D9E-DB77BBFF78DA} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForBETH.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 194.168.4.100 194.168.8.100
Tcpip\..\Interfaces\{32cfc47b-1c9b-40f4-8bad-ca172193dc8c}: [DhcpNameServer] 194.168.4.100 194.168.8.100
Tcpip\..\Interfaces\{d538f888-2a26-47fc-bb77-ff0e288a7bc4}: [DhcpNameServer] 172.168.0.7
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
SearchScopes: HKLM -> {7A28FEF7-F36F-4C62-BE8E-C078206D42A9} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {7A28FEF7-F36F-4C62-BE8E-C078206D42A9} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-259350032-3561555504-2751918716-1001 -> {7A28FEF7-F36F-4C62-BE8E-C078206D42A9} URL = 
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -> HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -> HP Inc.)
IE Session Restore: HKU\S-1-5-21-259350032-3561555504-2751918716-1001 -> is enabled.
 
Edge: 
======
DownloadDir: C:\Users\BETH\Downloads
Edge Session Restore: HKU\S-1-5-21-259350032-3561555504-2751918716-1001 -> is enabled.
 
FireFox:
========
FF DefaultProfile: lewi11ew.default
FF ProfilePath: C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default [2020-03-27]
FF Homepage: Mozilla\Firefox\Profiles\lewi11ew.default -> about:blank
FF Session Restore: Mozilla\Firefox\Profiles\lewi11ew.default -> is enabled.
FF Extension: (Firebug) - C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default\Extensions\[email protected] [2018-01-02] [Legacy]
FF Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default\Extensions\[email protected] [2020-03-25]
FF Extension: (LastPass: Free Password Manager) - C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default\Extensions\[email protected] [2020-03-23]
FF Extension: (uBlock Origin) - C:\Users\BETH\AppData\Roaming\Mozilla\Firefox\Profiles\lewi11ew.default\Extensions\[email protected] [2019-02-14]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Ginger\Mozilla\[email protected]
FF Extension: (Ginger) - C:\Program Files (x86)\Ginger\Mozilla\[email protected] [2017-12-13] [Legacy] [not signed]
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
FF Plugin HKU\S-1-5-21-259350032-3561555504-2751918716-1001: gingersoftware.com/gingerPlugin -> C:\Program Files (x86)\Ginger\GingerServices\GingerServicesProxy.dll [2017-03-21] (Ginger Software) [File not signed]
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default [2020-03-27]
CHR HomePage: Default -> hxxp://www.google.co.uk/
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3331316&octid=EB_ORIGINAL_CTID&ISID=MCFFD7245-7BC9-49DC-B424-F05055F63456&SearchSource=55&CUI=&UM=6&UP=SPA78BD1B1-1931-4ADE-8DDA-972D132E8B49&SSPV="
CHR Session Restore: Default -> is enabled.
CHR Extension: (Slides) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-12-15]
CHR Extension: (Join a Meeting - Zoom) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajojicfljchadpndofllmcfcddapmpkn [2018-01-01]
CHR Extension: (Docs) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-12-15]
CHR Extension: (Google Drive) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-21]
CHR Extension: (YouTube) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-12-15]
CHR Extension: (Firebug Lite for Google Chrome™) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmagokdooijbeehmkpknfglimnifench [2018-01-01]
CHR Extension: (Google Calendar) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnlchlfjjebdblaoolggbonifknnfcpp [2018-01-01]
CHR Extension: ((1) Facebook) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\celnaknmndcdcjcagffhbhciignkeokb [2018-01-01]
CHR Extension: (uBlock Origin) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2020-02-14]
CHR Extension: (Alexa Traffic Rank) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel [2019-08-05]
CHR Extension: (Google Calendar) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2018-01-01]
CHR Extension: (Sheets) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-12-15]
CHR Extension: (Google Calendar) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpjpknijfapadpaeaikbcmpfghnjeopa [2018-01-01]
CHR Extension: (Google Docs Offline) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-15]
CHR Extension: (World Time Buddy) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdhpjomiingppeefgnohkiapmnaeakoj [2018-01-01]
CHR Extension: (Grammarly for Chrome) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2020-03-27]
CHR Extension: (Grammar and Spelling checker by Ginger) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdfieneakcjfaiglcfcgkidlkmlijjnh [2020-02-14]
CHR Extension: (The Great Suspender) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\klbibkeccnjlkjkiokjodocebajanakg [2019-08-31]
CHR Extension: (Gmail fitt) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhopmchchfpfdcdjodmpfaaphdclmlj [2017-12-17]
CHR Extension: (Google Calendar -) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgfijnnecdoifcadgfpbajeonhfendki [2017-12-16]
CHR Extension: (Gmail muds) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\miilmjmgkdhdabfkjkilgecbhbchboem [2017-12-17]
CHR Extension: (Time Converter and World Clock - Conv...) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\mngniccdaoonfbddldojodbjdfknokll [2018-01-01]
CHR Extension: (Hootsuite) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nghldiaiamokmpalgdbfiokpgapocnnf [2018-01-01]
CHR Extension: (Gmail Bethsmyls@gmail) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nglheapbdkhgpidedbaaiohcgmkmilbo [2018-01-01]
CHR Extension: (MetaMask) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2020-03-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]
CHR Extension: (Cite This For Me: Web Citer) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnnmhgkokpalnmbeighfomegjfkklkle [2018-01-01]
CHR Extension: (Buffer) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\noojglkidnpfjbincgijbaiedldjfbhh [2020-03-25]
CHR Extension: (Google Calendar - biz) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocbolilgjhgobopeapoajppmaoikccid [2018-01-01]
CHR Extension: (Nash Extension) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\onofpnbbkehpmmoabgpcpmigafmmnjhl [2020-03-26]
CHR Extension: (Gmail) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-24]
CHR Extension: (Chrome Media Router) - C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-25]
CHR Profile: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-08-14]
CHR Profile: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\System Profile [2018-08-14]
CHR HKLM\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Program Files (x86)\EagleGet\addon\[email protected] <not found>
CHR HKU\S-1-5-21-259350032-3561555504-2751918716-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [hdkdmoacnkphoadmfidlhfdobieblphn] - C:\Program Files (x86)\EagleGet\addon\eagleget_newtab.crx <not found>
 
==================== Services (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [155016 2017-02-16] (Advanced Micro Devices, Inc. -> )
R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe [508000 2019-09-18] (Advanced Micro Devices, Inc. -> AMD)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2019-02-18] (Brave Software, Inc. -> BraveSoftware Inc.)
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [126944 2017-03-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-12-09] (Dropbox, Inc -> Dropbox, Inc.)
R2 GingerUpdateService; C:\Program Files (x86)\Ginger\GingerUpdateService\GingerUpdateService.exe [534200 2017-03-21] (Ginger Software inc -> Ginger Software)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1321096 2018-09-28] (HP Inc. -> HP Inc.)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [361848 2019-12-06] (HP Inc. -> HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [630776 2017-02-06] (HP Inc. -> HP Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [267552 2019-06-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 RtkBtAudioServ; C:\WINDOWS\RtkBtAudioServ.exe [215992 2018-05-31] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [738712 2019-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 SynTPEnhService; C:\WINDOWS\System32\SynTPEnhService.exe [394672 2019-04-16] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WD Backup Drive Helper; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{4AB831D3-8315-414C-8A7A-303105288D0B} [19256 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WD Backup Drive Helper; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{4AB831D3-8315-414C-8A7A-303105288D0B} [19256 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WD Backup Snapshot; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{302480DF-3AC5-4400-BE7B-DD77AF93B6DD} [19256 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WD Backup Snapshot; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{302480DF-3AC5-4400-BE7B-DD77AF93B6DD} [19256 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [308088 2015-12-07] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\NisSrv.exe [3294680 2020-03-25] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MsMpEng.exe [103168 2020-03-25] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2548224 2019-10-22] (Sony) [File not signed]
 
===================== Drivers (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 Accelerometer; C:\WINDOWS\System32\drivers\Accelerometer.sys [53904 2019-07-22] (HP Inc. -> HP)
R3 AmdAS4; C:\WINDOWS\System32\drivers\AmdAS4.sys [35848 2019-04-22] (Advanced Micro Devices Inc. -> Advanced Micro Devices, INC.)
R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [34568 2019-04-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 amdi2c; C:\WINDOWS\System32\drivers\amdi2c.sys [61728 2019-04-18] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
S3 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [49448 2016-08-17] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 amdkmcsp; C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys [101232 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atikmdag.sys [55249504 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atikmpag.sys [595040 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdpsp; C:\WINDOWS\System32\drivers\amdpsp.sys [146304 2019-04-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
R3 amduart; C:\WINDOWS\System32\drivers\amduart.sys [89640 2019-04-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc)
S0 amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [92400 2016-08-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
S0 amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [32496 2016-08-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [108152 2019-07-22] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 EzTouchFilter; C:\WINDOWS\System32\drivers\EzTouchFilter.sys [64192 2018-12-20] (ELAN Microelectronics Corporation -> ELAN)
R0 hpdskflt; C:\WINDOWS\System32\drivers\hpdskflt.sys [41104 2019-07-22] (HP Inc. -> HP)
R3 HpqKbFiltr; C:\WINDOWS\System32\drivers\HpqKbFiltr64.sys [37112 2015-06-17] (Hewlett-Packard Company -> Hewlett-Packard Company)
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [787232 2019-11-30] (WDKTestCert VSAuto,131800073559665678 -> Realtek Semiconductor Corporation)
S3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [782304 2017-04-19] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
S3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3221504 2017-02-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [11722328 2019-12-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
R0 secnvme; C:\WINDOWS\System32\drivers\secnvme.sys [134000 2019-01-21] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd)
R3 SmbDrv; C:\WINDOWS\system32\DRIVERS\Smb_driver_AMDASF.sys [53864 2018-09-21] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [64088 2017-04-17] (Synaptics Incorporated -> Synaptics Incorporated)
R3 VirtualButtons; C:\WINDOWS\System32\drivers\VirtualButtons.sys [32984 2017-04-07] (Softeq Development Corporation -> Softeq Development Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45960 2020-03-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [391392 2020-03-25] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [59104 2020-03-25] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2019-11-15] (HP Inc. -> HP)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) ===================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2020-03-27 12:14 - 2020-03-27 12:16 - 000033827 _____ C:\Users\BETH\Desktop\FRST.txt
2020-03-27 12:12 - 2020-03-27 12:12 - 000000000 ____D C:\Users\BETH\Desktop\FRST-OlderVersion
2020-03-27 12:08 - 2020-03-27 12:07 - 004146112 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgremoverx.exe
2020-03-27 11:58 - 2020-03-27 11:58 - 000027072 _____ C:\ProgramData\uninstalltool.1585310311.6732.bin
2020-03-27 11:58 - 2020-03-27 11:58 - 000000701 _____ C:\ProgramData\uninstalltool.1585310311.5268.bin
2020-03-26 20:18 - 2020-03-26 22:07 - 000000000 ____D C:\Users\BETH\Desktop\New picsr
2020-03-26 11:53 - 2020-03-26 11:53 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2020-03-26 11:50 - 2020-03-26 11:50 - 000000020 ___SH C:\Users\BETH\ntuser.ini
2020-03-26 11:49 - 2020-03-27 12:09 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-03-26 11:49 - 2020-03-27 00:32 - 000003364 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineUA
2020-03-26 11:49 - 2020-03-27 00:32 - 000003348 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-03-26 11:49 - 2020-03-27 00:32 - 000003140 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore
2020-03-26 11:49 - 2020-03-27 00:32 - 000003124 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-03-26 11:49 - 2020-03-27 00:32 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-03-26 11:49 - 2020-03-27 00:32 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-259350032-3561555504-2751918716-1001
2020-03-26 11:49 - 2020-03-27 00:32 - 000002856 _____ C:\WINDOWS\system32\Tasks\HPJumpStartLaunch
2020-03-26 11:49 - 2020-03-27 00:32 - 000002794 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForBETH
2020-03-26 11:49 - 2020-03-27 00:32 - 000002766 _____ C:\WINDOWS\system32\Tasks\HPAudioSwitch
2020-03-26 11:49 - 2020-03-27 00:32 - 000002500 _____ C:\WINDOWS\system32\Tasks\HPEA3JOBS
2020-03-26 11:49 - 2020-03-27 00:32 - 000002282 _____ C:\WINDOWS\system32\Tasks\RTKCPL
2020-03-26 11:49 - 2020-03-27 00:32 - 000002218 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2020-03-26 11:49 - 2020-03-27 00:32 - 000002146 _____ C:\WINDOWS\system32\Tasks\StartCN
2020-03-26 11:49 - 2020-03-26 11:50 - 000003522 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA
2020-03-26 11:49 - 2020-03-26 11:49 - 000003298 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore
2020-03-26 11:49 - 2020-03-26 11:49 - 000002828 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task v2
2020-03-26 11:49 - 2020-03-26 11:49 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2020-03-26 11:49 - 2020-03-26 11:49 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2020-03-26 11:49 - 2020-03-26 11:49 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard
2020-03-26 11:49 - 2017-12-05 17:59 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-03-26 11:48 - 2020-03-26 11:49 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2020-03-26 11:48 - 2020-03-26 11:49 - 000007623 _____ C:\WINDOWS\diagerr.xml
2020-03-26 11:44 - 2020-03-27 12:14 - 000935056 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-03-26 11:37 - 2020-03-26 11:50 - 000000000 ____D C:\Users\BETH
2020-03-26 11:37 - 2019-03-19 04:46 - 000001105 _____ C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-26 11:36 - 2020-03-26 11:36 - 000002105 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bang & Olufsen Audio Control.lnk
2020-03-26 11:36 - 2020-03-26 11:02 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2020-03-26 11:34 - 2020-03-27 10:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-03-26 11:34 - 2020-03-26 11:39 - 000719808 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-03-26 11:33 - 2020-03-26 11:50 - 000000000 ____D C:\Windows.old
2020-03-26 11:22 - 2020-03-26 11:34 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2020-03-26 11:18 - 2020-03-26 11:21 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2020-03-26 11:18 - 2020-03-26 11:18 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2020-03-26 11:14 - 2020-03-26 11:14 - 000000000 ____D C:\ProgramData\USOShared
2020-03-26 11:14 - 2020-03-26 11:14 - 000000000 ____D C:\ProgramData\ssh
2020-03-26 11:05 - 2020-03-26 11:05 - 011607552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 005502464 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 004470272 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2020-03-26 11:05 - 2020-03-26 11:05 - 004308480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2020-03-26 11:05 - 2020-03-26 11:05 - 002315680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 002138472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2020-03-26 11:05 - 2020-03-26 11:05 - 001541632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2020-03-26 11:05 - 2020-03-26 11:05 - 001505280 _____ C:\WINDOWS\system32\FaceProcessor.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 001271592 _____ C:\WINDOWS\system32\FaceTrackerInternal.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 001244944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 001039872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2020-03-26 11:05 - 2020-03-26 11:05 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000800568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2020-03-26 11:05 - 2020-03-26 11:05 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000682744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2020-03-26 11:05 - 2020-03-26 11:05 - 000666280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2020-03-26 11:05 - 2020-03-26 11:05 - 000656984 _____ C:\WINDOWS\system32\FaceProcessorCore.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000633344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DavSyncProvider.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000387832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DavSyncProvider.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000283264 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2020-03-26 11:05 - 2020-03-26 11:05 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacEncoder.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000093104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2020-03-26 11:05 - 2020-03-26 11:05 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2020-03-26 11:05 - 2020-03-26 11:05 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecerts.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fvecerts.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx
2020-03-26 11:05 - 2020-03-26 11:05 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll
2020-03-26 11:05 - 2020-03-26 11:05 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2020-03-26 11:04 - 2020-03-26 11:05 - 005083352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 022635008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 019850240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 019812352 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 018027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 008013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 007802224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 007755776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 007259648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 007017472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 006520776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 006285312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 006084344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 005911040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 005865272 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizimg.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 005848840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 005112832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 005013504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 004855808 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 004580352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 004481536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 004348408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 004150272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 004129648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 003971808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 003819520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 003637760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 003488768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 003243296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002956688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002875904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002821120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-03-26 11:04 - 2020-03-26 11:04 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-03-26 11:04 - 2020-03-26 11:04 - 002743808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002740736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002584008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002494744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002490712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002422592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2020-03-26 11:04 - 2020-03-26 11:04 - 002399232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002307584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002259872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002230232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002224952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002180408 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002132280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002072664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 002021888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001985104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001957008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001952360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001916744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001893888 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001867816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001835128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001788728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001770552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001684992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001665416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001651848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001616784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001555904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001535288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001531656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001515008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaclient.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001510752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001505320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001490640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001488384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001484600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001417976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001413632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001398584 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001356800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001343488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001305608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001301504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001297936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001284096 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001283600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-03-26 11:04 - 2020-03-26 11:04 - 001282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001273856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001272360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001264128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001260544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001248256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2020-03-26 11:04 - 2020-03-26 11:04 - 001244672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001218632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 001216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001213752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001195008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001190912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001178816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001154448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001138688 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001122816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001108040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001101312 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001088000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001083392 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001080832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001079296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001077048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 001067008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaserver.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 001054376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001047968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001031680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001020032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001007672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000935040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000928776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000910848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000910336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000904504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsperformancerecordercontrol.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000864768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000857088 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2020-03-26 11:04 - 2020-03-26 11:04 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000842552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000829536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000813568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000805376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000800048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000792296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000777528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000776488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000775680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000774664 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000769552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000769336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIsoCtnr.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000768488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000757632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000748032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000744248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2020-03-26 11:04 - 2020-03-26 11:04 - 000739328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000737552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2020-03-26 11:04 - 2020-03-26 11:04 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000704512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000700416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000668296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000631808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000628400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000627216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000612352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000602224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000597816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000588256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_9.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000571392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000568120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000564736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000551824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000551824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000542288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000531464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000510768 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000507704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000501232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2020-03-26 11:04 - 2020-03-26 11:04 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000488056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000487576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000486400 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000478792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000460288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000454736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000453432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000450360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000441072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000437760 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2PGraph.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000432256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000428544 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2020-03-26 11:04 - 2020-03-26 11:04 - 000421376 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\system32\curl.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000420360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-03-26 11:04 - 2020-03-26 11:04 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000405632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\provplatformdesktop.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000386048 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\SysWOW64\curl.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000383984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000380944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000379840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000379192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000376832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webauthn.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000375504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000366416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000363840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2PGraph.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Magnify.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000336928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000316216 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2020-03-26 11:04 - 2020-03-26 11:04 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapisrv.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000300392 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcomapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000285256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000283688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000279624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000274464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpviewerax.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000267528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000267496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFMCP.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000261016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityUxHost.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provplatformdesktop.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapisrv.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000251512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-03-26 11:04 - 2020-03-26 11:04 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000213984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2pnetsh.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\accessibilitycpl.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\recdisc.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000190256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000187920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifsutil.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schtasks.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-03-26 11:04 - 2020-03-26 11:04 - 000186880 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceCenter.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\twext.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetpp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\p2pnetsh.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2P.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000170920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xmllite.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeHelper.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 000167136 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtm.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Winlangdb.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000150536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000149512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ulib.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twext.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000145720 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000143808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000137864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000136328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000135480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000135000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000133464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47mrm.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000130112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000129088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000125232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000120560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000116904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000110080 _____ C:\WINDOWS\system32\ResBParser.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvsetup.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfrgui.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000102760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000100664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 000099712 _____ (Microsoft Corporation) C:\WINDOWS\system32\FsIso.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapistub.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapi32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameChatTranscription.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000098592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compstui.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000096032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompMgmtLauncher.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dfrgui.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000089568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcXtrnal.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2020-03-26 11:04 - 2020-03-26 11:04 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Groupinghc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000072816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzautoupdate.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000068408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceReactivation.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2020-03-26 11:04 - 2020-03-26 11:04 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvvmtransport.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComputerDefaults.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AtBroker.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coloradapterclient.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaproxystub.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmRes.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\reg.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000059221 _____ C:\WINDOWS\system32\srms.dat
2020-03-26 11:04 - 2020-03-26 11:04 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrTasks.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000056008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtutils.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edpnotify.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguageProfileCallback.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInput1_4.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000042336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddrawex.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compact.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcicda.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInputUap.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmtask.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Websocket.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInput1_4.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000033048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxstrace.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys
2020-03-26 11:04 - 2020-03-26 11:04 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciwave.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciseq.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000021520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnlsres.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000019768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msauserext.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000016696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fixmapi.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcXtrnal.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedssync.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2020-03-26 11:04 - 2020-03-26 11:04 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDKOR.DLL
2020-03-26 11:04 - 2020-03-26 11:04 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000011576 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlibres.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe
2020-03-26 11:04 - 2020-03-26 11:04 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtprio.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3r.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-03-26 11:04 - 2020-03-26 11:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-03-26 11:03 - 2020-03-26 11:03 - 009930552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 007905784 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 007582752 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 006436352 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 006168064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 005890048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 004563416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 004471296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 004048896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 004009472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 004005888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003799552 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003752960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003728896 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 003654656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003587896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 003552768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003387392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003371720 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003327256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003260928 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003184128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003143168 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003110400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 002871848 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 002870272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002773568 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002768440 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002715648 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 002703872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002698040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 002590208 _____ C:\WINDOWS\system32\dwmscene.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002474496 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002453504 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002321408 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002249216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002178048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaclient.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002147328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002087376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 002071552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001999952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001972536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001884200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConstraintIndex.Search.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001845408 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001841152 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001823232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001819136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001764336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001757304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-03-26 11:03 - 2020-03-26 11:03 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001717776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001657120 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001616608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001609216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaserver.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 001543168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001513040 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 001505592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 001481216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 001423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001396152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-03-26 11:03 - 2020-03-26 11:03 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001330952 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001300280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 001282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001260480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 001170960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001158656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001153024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsperformancerecordercontrol.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001150240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001084728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001071184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 001069064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001051448 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001042944 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2020-03-26 11:03 - 2020-03-26 11:03 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001029432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 001009664 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000986936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000983896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000977688 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000974848 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000945384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000929144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000914944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000908504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000891736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000888056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2020-03-26 11:03 - 2020-03-26 11:03 - 000877232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000861696 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000851968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000824848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000822416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000818656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000811536 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000811160 _____ C:\WINDOWS\SysWOW64\locale.nls
2020-03-26 11:03 - 2020-03-26 11:03 - 000811160 _____ C:\WINDOWS\system32\locale.nls
2020-03-26 11:03 - 2020-03-26 11:03 - 000810496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000802304 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000796904 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000776704 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000759488 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000758800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000752792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000741392 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000734720 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000728576 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mousocoreworker.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000706760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000683008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000678928 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000674280 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000656960 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000642216 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000639400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000638264 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000636848 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000634880 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000613888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000605896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000596008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000587064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000586768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000561464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000541480 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000524216 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000522384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000518456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000516648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000514576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000511000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-03-26 11:03 - 2020-03-26 11:03 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000467952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2020-03-26 11:03 - 2020-03-26 11:03 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\webauthn.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000461320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000459688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000457016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000442704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000437776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000416056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000398728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000390456 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000386320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000372752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000369504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000358944 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000342896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000338800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000335448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000324616 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpviewerax.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000320312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000293344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000283144 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngctasks.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000259984 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000251704 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000248064 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\VideoHandlers.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000237880 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000234984 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Winlangdb.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000221200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000214032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutil.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000210400 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000205112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winquic.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000201744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000194176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winquic.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000186672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47mrm.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000182288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000180536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ulib.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000179720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000178192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000176152 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaSvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000165504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000162384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000157752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaproxystub.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000147184 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000146744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000146712 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000144376 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000143160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000142544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000141840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000140496 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000133944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000132912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000132624 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ForceSync.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000129848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mup.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvsetup.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000123920 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000120048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000117264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000115120 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000113160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetDriverInstall.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpoext.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000105488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000098104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000092624 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000089616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000088488 _____ (Microsoft Corporation) C:\WINDOWS\system32\coloradapterclient.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000087048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AtBroker.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSystray.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetDriverInstall.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000066360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000063288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpnotify.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguageProfileCallback.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000058880 _____ C:\WINDOWS\system32\runexehelper.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000053248 _____ C:\WINDOWS\system32\Drivers\UsbPmApi.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddrawex.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000047616 _____ C:\WINDOWS\system32\UsbPmApi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000047208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000046632 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Websocket.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\compact.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msfs.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000039304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000037888 _____ C:\WINDOWS\system32\usocoreps.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000037392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000036368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\posetup.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000028344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ws2ifsl.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000024792 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnlsres.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2020-03-26 11:03 - 2020-03-26 11:03 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe
2020-03-26 11:03 - 2020-03-26 11:03 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2020-03-26 11:03 - 2020-03-26 11:03 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3r.dll
2020-03-26 11:02 - 2020-03-26 11:03 - 007849424 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 017787904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 007278592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 006231200 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 004622280 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 003708928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 003353088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 002808832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 002656768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 002522112 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 002289152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 002157056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 002125904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001942016 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001784832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001762304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001744400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001635328 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001581056 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001497088 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001383856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001337872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001332736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001259416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 001180160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001180160 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 001098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001092096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 001006904 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000977408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000833616 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000817152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000808960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000804872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000732200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000722288 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000657424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000637240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_9.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-03-26 11:02 - 2020-03-26 11:02 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000531768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2020-03-26 11:02 - 2020-03-26 11:02 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000524264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000481592 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000449888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000437776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000429880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000425264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000422712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000420152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Acx01000.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000336960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000322504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000306696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000296760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000292664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000291256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbaudio2.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000250896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApproveChildRequest.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthA2dp.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000224056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000222520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000208696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000204816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000199992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000194064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000183608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000180232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000174392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000149504 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000141840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000131896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameChatTranscription.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000128312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapistub.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds_ps.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2020-03-26 11:02 - 2020-03-26 11:02 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000089912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000079376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uaspstor.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000067112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo-overrides.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000066336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlrmdr.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000056632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciidex.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000055304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAProfileNotificationHandler.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000052752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInputUap.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcicda.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000048256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\devauthe.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2020-03-26 11:02 - 2020-03-26 11:02 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciwave.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciseq.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000030008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000029712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32_DeviceGuard.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsldr.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WSDScan.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000023352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\isapnp.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\fixmapi.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000019984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000019256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msisadrv.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000016912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serscan.sys
2020-03-26 11:02 - 2020-03-26 11:02 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscadminui.exe
2020-03-26 11:02 - 2020-03-26 11:02 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2020-03-26 11:02 - 2020-03-26 11:02 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUserRes.dll
2020-03-26 10:52 - 2020-03-26 10:52 - 000000000 ____D C:\inetpub
2020-03-26 10:51 - 2020-03-26 10:51 - 001166488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2020-03-26 10:51 - 2020-03-26 10:51 - 000903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2020-03-26 10:51 - 2020-03-26 10:51 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2020-03-26 10:51 - 2020-03-26 10:51 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
2020-03-26 10:51 - 2020-03-26 10:51 - 000124568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2020-03-26 10:51 - 2020-03-26 10:51 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2020-03-26 10:51 - 2020-03-26 10:51 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XPSSHHDR.dll
2020-03-26 10:51 - 2020-03-26 10:51 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XPSSHHDR.dll
2020-03-26 10:51 - 2020-03-26 10:51 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml
2020-03-26 10:51 - 2020-03-26 10:51 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml
2020-03-26 10:51 - 2020-03-26 10:51 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2020-03-26 10:51 - 2020-03-26 10:51 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2020-03-26 10:51 - 2020-03-26 10:51 - 000000000 ____D C:\Program Files\Reference Assemblies
2020-03-26 10:51 - 2020-03-26 10:51 - 000000000 ____D C:\Program Files\MSBuild
2020-03-26 10:51 - 2020-03-26 10:51 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2020-03-26 10:51 - 2020-03-26 10:51 - 000000000 ____D C:\Program Files (x86)\MSBuild
2020-03-26 10:40 - 2020-03-26 10:40 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-03-26 10:40 - 2020-03-26 10:40 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-03-26 09:55 - 2020-03-26 09:55 - 000094086 _____ C:\Users\BETH\Documents\DESKTOP-RRNF5R7.txt
2020-03-26 09:52 - 2020-03-26 09:52 - 000761656 _____ (Sysinternals - www.sysinternals.com) C:\Users\BETH\Desktop\autoruns.exe
2020-03-25 20:09 - 2020-03-25 20:09 - 000062808 _____ C:\ProgramData\agent.uninstall.1585166940.bdinstall.v2.bin
2020-03-25 19:39 - 2020-03-27 12:15 - 000000000 ____D C:\FRST
2020-03-25 19:36 - 2020-03-27 12:12 - 002279936 _____ (Farbar) C:\Users\BETH\Desktop\FRST64.exe
2020-03-25 17:17 - 2020-03-27 11:50 - 000000000 ____D C:\Users\BETH\AppData\Local\Avg
2020-03-25 17:10 - 2020-03-25 17:10 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\BETH\Downloads\avg_antivirus_free_setup (1).exe
2020-03-25 17:07 - 2020-03-25 17:07 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\BETH\Downloads\avg_antivirus_free_setup.exe
2020-03-25 17:01 - 2020-03-25 17:01 - 022267336 _____ (Piriform Software Ltd) C:\Users\BETH\Downloads\ccsetup565.exe
2020-03-25 16:54 - 2020-03-26 13:50 - 000000000 ____D C:\Users\BETH\AppData\Local\AVAST Software
2020-03-25 16:41 - 2020-03-25 16:41 - 000230080 _____ (AVAST Software) C:\Users\BETH\Desktop\avast_free_antivirus_setup_online.exe
2020-03-25 16:39 - 2020-03-25 16:39 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
2020-03-25 16:37 - 2020-03-25 16:37 - 000103972 _____ C:\ProgramData\agent.1585154226.bdinstall.v2.bin
2020-03-25 14:16 - 2020-03-25 14:16 - 000643854 _____ C:\Users\BETH\Desktop\icopepdf.pdf
2020-03-24 18:03 - 2020-03-24 18:03 - 000021808 _____ C:\Users\BETH\Desktop\US SHARES 2019-20 Copy.ods
2020-03-06 00:31 - 2020-03-06 00:31 - 000022002 _____ C:\Users\BETH\Desktop\mental health.odt
2020-03-05 23:06 - 2020-03-06 00:31 - 000000092 ____H C:\Users\BETH\Desktop\.~lock.mental health.odt#
2020-03-03 14:55 - 2020-03-03 14:55 - 000011811 _____ C:\Users\BETH\Desktop\House Bills Beginning November 2019 to End Jan 2020.odt
 
==================== One month (modified) ==================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2020-03-27 12:15 - 2019-03-19 04:50 - 000000000 ____D C:\WINDOWS\INF
2020-03-27 12:09 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2020-03-27 12:09 - 2019-03-19 04:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-03-27 12:09 - 2019-03-19 04:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-03-27 12:09 - 2017-11-10 08:18 - 000065536 _____ C:\WINDOWS\psp_storage.bin
2020-03-27 11:50 - 2018-10-21 11:30 - 000000360 _____ C:\WINDOWS\Tasks\HPCeeScheduleForBETH.job
2020-03-27 11:50 - 2017-12-13 01:47 - 000000000 ____D C:\ProgramData\AVAST Software
2020-03-27 10:10 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\appcompat
2020-03-27 00:03 - 2017-12-28 19:28 - 000000000 ____D C:\Users\BETH\AppData\Local\PlaceholderTileLogoFolder
2020-03-26 20:26 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-03-26 20:18 - 2018-04-17 23:53 - 000000000 ____D C:\Users\BETH\AppData\Local\Packages
2020-03-26 20:16 - 2019-03-19 04:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-03-26 13:51 - 2019-02-12 20:03 - 000000000 ____D C:\Users\BETH\AppData\Roaming\Sky
2020-03-26 12:12 - 2019-03-19 04:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2020-03-26 12:01 - 2019-03-19 04:52 - 000000000 ____D C:\ProgramData\USOPrivate
2020-03-26 11:51 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-03-26 11:51 - 2017-12-09 15:33 - 000000000 ____D C:\Users\BETH\AppData\Local\PackageStaging
2020-03-26 11:50 - 2019-08-29 16:42 - 000000000 ___DC C:\WINDOWS\Panther
2020-03-26 11:50 - 2019-03-19 04:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2020-03-26 11:50 - 2017-12-13 03:46 - 000000000 ___RD C:\Users\BETH\3D Objects
2020-03-26 11:50 - 2017-03-18 03:53 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-03-26 11:49 - 2019-03-19 04:52 - 000000000 ____D C:\Program Files\Windows Defender
2020-03-26 11:48 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\Registration
2020-03-26 11:43 - 2017-12-15 21:03 - 000027280 _____ C:\WINDOWS\system32\emptyregdb.dat
2020-03-26 11:42 - 2019-02-18 18:43 - 000002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2020-03-26 11:42 - 2019-02-18 18:43 - 000002384 _____ C:\Users\Public\Desktop\Brave.lnk
2020-03-26 11:42 - 2019-02-18 18:43 - 000002384 _____ C:\ProgramData\Desktop\Brave.lnk
2020-03-26 11:42 - 2017-12-15 23:32 - 000002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-03-26 11:42 - 2017-12-15 23:32 - 000002267 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-03-26 11:42 - 2015-09-10 11:40 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-03-26 11:39 - 2017-12-27 00:40 - 000000000 ____D C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grammarly
2020-03-26 11:39 - 2017-12-19 10:55 - 000000000 ____D C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView
2020-03-26 11:39 - 2017-12-13 15:02 - 000000000 ____D C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
2020-03-26 11:37 - 2018-04-20 20:42 - 000000000 ____D C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
2020-03-26 11:36 - 2017-11-10 08:21 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2020-03-26 11:36 - 2017-11-10 08:17 - 001369987 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
2020-03-26 11:36 - 2017-11-10 08:17 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2020-03-26 11:34 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\spool
2020-03-26 11:34 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-03-26 11:34 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-03-26 11:34 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\ServiceState
2020-03-26 11:34 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-03-26 11:34 - 2019-03-19 04:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-03-26 11:34 - 2019-03-19 04:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2020-03-26 11:34 - 2018-12-19 20:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings
2020-03-26 11:34 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2020-03-26 11:34 - 2018-09-15 07:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2020-03-26 11:34 - 2018-08-24 17:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.1
2020-03-26 11:34 - 2018-08-24 17:00 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.5
2020-03-26 11:34 - 2017-12-15 22:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PostgreSQL 9.2
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iSpring Free Cam 8
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ginger
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2020-03-26 11:34 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2020-03-26 11:34 - 2017-12-13 02:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Adobe
2020-03-26 11:34 - 2017-12-13 02:42 - 000000000 ____D C:\Program Files\UNP
2020-03-26 11:34 - 2017-12-13 01:13 - 000000000 ____D C:\WINDOWS\en
2020-03-26 11:34 - 2017-11-10 09:49 - 000000000 ____D C:\WINDOWS\system32\Intel
2020-03-26 11:34 - 2017-11-10 09:49 - 000000000 ____D C:\WINDOWS\system32\cAVS
2020-03-26 11:34 - 2017-11-10 08:17 - 000000000 ____D C:\Program Files\Realtek
2020-03-26 11:34 - 2017-05-06 02:54 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2020-03-26 11:33 - 2019-03-19 04:56 - 000000000 ____D C:\WINDOWS\Setup
2020-03-26 11:32 - 2019-03-19 04:52 - 000000000 __RHD C:\Users\Public\Libraries
2020-03-26 11:25 - 2018-12-19 20:19 - 000000000 ____D C:\WINDOWS\system32\SRSLabs
2020-03-26 11:23 - 2019-07-03 22:04 - 000000000 ____D C:\WINDOWS\system32\AMD
2020-03-26 11:23 - 2019-03-19 11:37 - 000000000 ____D C:\WINDOWS\OCR
2020-03-26 11:23 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\Resources
2020-03-26 11:22 - 2019-12-23 21:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2020-03-26 11:22 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\Help
2020-03-26 11:22 - 2018-01-03 17:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Western Digital
2020-03-26 11:22 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2020-03-26 11:22 - 2017-12-13 03:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digital Photo Software
2020-03-26 11:14 - 2019-03-19 11:35 - 000000000 ____D C:\WINDOWS\system32\Drivers\en-GB
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ___SD C:\WINDOWS\system32\UNP
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\TextInput
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\setup
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\ShellComponents
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\Provisioning
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\DiagTrack
2020-03-26 11:14 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-03-26 11:14 - 2019-03-19 04:37 - 000000000 ____D C:\WINDOWS\servicing
2020-03-26 11:14 - 2019-03-19 04:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-03-26 11:11 - 2019-03-19 11:37 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2020-03-26 11:11 - 2019-03-19 11:37 - 000018903 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2020-03-26 10:51 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2020-03-26 10:51 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2020-03-26 10:51 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2020-03-26 10:51 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2020-03-26 10:51 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2020-03-26 10:51 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2020-03-26 10:51 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\et-EE
2020-03-26 10:51 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\system32\es-MX
2020-03-25 20:08 - 2017-12-13 02:55 - 000000000 ____D C:\Program Files (x86)\AVG
2020-03-25 19:05 - 2017-12-13 02:10 - 000000000 ____D C:\ProgramData\{F7FC329F-7DBE-B859-FB78-261B613AADD5}
2020-03-25 18:21 - 2017-12-13 03:46 - 000000000 ____D C:\Users\BETH\AppData\LocalLow\Mozilla
2020-03-25 18:18 - 2017-12-13 03:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2020-03-25 18:18 - 2015-09-13 14:58 - 000001239 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-03-25 17:21 - 2019-07-03 22:04 - 000000000 ____D C:\Users\BETH\AppData\Local\D3DSCache
2020-03-25 17:21 - 2017-11-10 13:40 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-03-25 17:21 - 2017-11-10 13:40 - 000000870 _____ C:\ProgramData\Desktop\CCleaner.lnk
2020-03-25 16:57 - 2019-07-20 20:29 - 000000000 ____D C:\Users\BETH\AppData\Local\CrashDumps
2020-03-25 16:06 - 2017-12-19 10:52 - 000000000 ____D C:\Users\BETH\AppData\Roaming\audacity
2020-03-25 15:42 - 2019-03-25 11:29 - 000000000 ____D C:\Users\BETH\AppData\Local\ElevatedDiagnostics
2020-03-25 11:47 - 2018-03-28 11:54 - 000000000 _____ C:\Users\BETH\Documents\HP ePrint
2020-03-25 11:14 - 2018-03-28 13:05 - 000002088 _____ C:\Users\Public\Desktop\HP Print and Scan Doctor.lnk
2020-03-25 11:14 - 2018-03-28 13:05 - 000002088 _____ C:\ProgramData\Desktop\HP Print and Scan Doctor.lnk
2020-03-25 06:55 - 2018-03-01 00:16 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-03-24 18:03 - 2019-06-28 10:27 - 000000092 ____H C:\Users\BETH\Desktop\.~lock.US SHARES 2019-20 Copy.ods#
2020-03-23 20:44 - 2017-12-09 15:19 - 000000000 ___RD C:\Users\BETH\OneDrive
2020-03-15 17:34 - 2017-11-10 08:21 - 000000000 ____D C:\ProgramData\Realtek
2020-03-11 08:49 - 2017-12-12 10:55 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-03-11 08:43 - 2017-12-12 10:55 - 121542864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
 
==================== Files in the root of some directories ========
 
2017-12-09 15:17 - 2020-03-27 12:10 - 004798049 _____ () C:\Users\BETH\AppData\Local\BTServer.log
2019-10-19 18:29 - 2019-10-19 18:29 - 000011895 _____ () C:\Users\BETH\AppData\Local\recently-used.xbel
 
==================== SigCheck ============================
 
(There is no automatic fix for files that do not pass verification.)
 
==================== End of FRST.txt ========================
 
Ans the new Addition text:
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-03-2020
Ran by BETH (27-03-2020 12:18:59)
Running from C:\Users\BETH\Desktop
Windows 10 Home Version 1909 18363.720 (X64) (2020-03-26 11:50:19)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-259350032-3561555504-2751918716-500 - Administrator - Disabled)
BETH (S-1-5-21-259350032-3561555504-2751918716-1001 - Administrator - Enabled) => C:\Users\BETH
DefaultAccount (S-1-5-21-259350032-3561555504-2751918716-503 - Limited - Disabled)
Guest (S-1-5-21-259350032-3561555504-2751918716-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-259350032-3561555504-2751918716-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Antivirus (Disabled - Out of date) {A3C8941D-8036-3856-D9BB-709D4A2A7EAC}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Amazon Kindle (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Amazon Kindle) (Version: 1.26.0.55076 - Amazon)
AMD Radeon Settings (HKLM\...\WUCCCApp) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.)
Amd Virtual Buttons (HKLM-x32\...\{c4533844-2182-4202-a5ae-b2b86ee0de48}) (Version: 1.1.7.1 - Softeq Development Corporation)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 80.1.5.115 - The Brave Authors)
Catalyst Control Center Next Localization BR (HKLM\...\{F19E577C-B96A-F5B4-C182-95DB528E738E}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{5C3A8F7B-BCBC-C606-1B29-663FC76C29F3}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{C063D61F-ACA0-0183-5418-CCBB0E970BB6}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{66412088-63B8-6DC0-5D6D-04EC3320AFF8}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{33DA9CCA-788F-BA66-A7D2-438F9E04D44C}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{BEB06773-0749-3D09-A468-26E3D8809CD3}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{6A943F2E-1420-F802-ED9A-4EE2D96416A8}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{769B7565-821D-5049-D4A8-C9E2711BA9E1}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{6BF5317D-5944-7B95-5D6E-80A3CF190572}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{E88DA42C-BE55-3C82-CA66-BA957A9849F7}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{9A5F310D-A58C-24E6-5B1D-B1444E4CCED7}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{A372146C-9135-D187-8DD1-0EE49D082480}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{182F1B4F-5B4C-9BAF-B009-162B89EEE456}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{1B85079E-5B56-B936-54BB-D9553B6EEA1B}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{6E9FD6B8-F8A3-5DE3-E48F-35EB8727B88F}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{93FA4450-5B45-E967-A210-F034831F6C22}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{94CE1BA4-1698-D27E-46DF-4BA15AB610D4}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{D363D01E-C047-2178-CFC1-57F93C9602C1}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{E2ED8680-FBAA-2EB2-B002-2CD8CDB9C5BC}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{7D33F00E-F5F8-7C7A-8008-964C4098EE45}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{D5078349-5904-44F3-FE0E-89F31B30865C}) (Version: 2017.0216.111.2109 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.65 - Piriform)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)
Dropbox 25 GB (HKLM-x32\...\{84D8451D-2ED6-3A59-ABA5-2A447F7C6310}) (Version: 4.1.2.0 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
Energy Star (HKLM\...\{5CB22648-35F8-41BC-9C35-1E41FE6E12A5}) (Version: 1.1.1 - HP Inc.)
f.lux (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Flux) (Version:  - f.lux Software LLC)
GIMP 2.10.6 (HKLM\...\GIMP-2_is1) (Version: 2.10.6 - The GIMP Team)
Ginger (HKLM-x32\...\{1EBF9A59-F4E3-4EA7-BA97-76703C1432F6}) (Version: 3.7.179 - Ginger Software) Hidden
Ginger (HKLM-x32\...\InstallShield_{1EBF9A59-F4E3-4EA7-BA97-76703C1432F6}) (Version: 3.7.179 - Ginger Software)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.149 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Grammarly (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\GrammarlyForWindows) (Version: 1.5.39 - Grammarly)
HP Audio Switch (HKLM-x32\...\{3A5141D4-47DB-4302-9B1C-272BE585BC8A}) (Version: 1.0.179.0 - HP Inc.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.15.0 - HP Inc.)
HP CoolSense (HKLM-x32\...\{20CC03C7-7B48-4130-B7FA-39BC128E3A9E}) (Version: 2.21.5 - HP Inc.)
HP ENVY 4500 series Basic Device Software (HKLM\...\{6915424E-704F-4F5D-9057-9C7B406B36DB}) (Version: 32.3.198.49673 - Hewlett-Packard Co.)
HP ENVY 4500 series Help (HKLM-x32\...\{95BECC50-22B4-4FCA-8A2E-BF77713E6D3A}) (Version: 30.0.0 - Hewlett Packard)
HP ePrint SW (HKLM-x32\...\{54da9769-2364-4bd3-8139-6400500778b3}) (Version: 5.3.22034 - HP Inc.)
HP Pen Control (HKLM-x32\...\{259BAC8D-CF33-4229-84E9-22DC267A44A9}}_is1) (Version: 2.0.0.20 - ELAN microelectronics Corp.)
HP Support Assistant (HKLM-x32\...\{4780AF24-213D-4187-86F2-0014A6D6077B}) (Version: 8.8.24.33 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{00612F78-52C4-46C0-97F0-F50B6036B5E2}) (Version: 12.14.49.15 - HP Inc.)
HP System Event Utility (HKLM-x32\...\{1BB20774-0FA8-4CFF-AB69-7B7AAE2DCE6C}) (Version: 1.4.19 - HP Inc.)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
IrfanView 4.50 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.50 - Irfan Skiljan)
Kindle Create (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Kindle Create) (Version: 1.11.576.0 - Amazon)
Kindle Previewer 3 (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\Kindle Previewer 3) (Version: 3.25.0 - Amazon)
LibreOffice 6.1.0.3 (HKLM\...\{DD50CAE9-27C5-452F-A910-1E7A00D8EEE2}) (Version: 6.1.0.3 - The Document Foundation)
Microsoft OneDrive (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Mozilla Firefox 69.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 69.0.1 (x64 en-US)) (Version: 69.0.1 - Mozilla)
Neon 0.0.7 (only current user) (HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\211a501f-25dd-501b-8c98-509ac17aedfa) (Version: 0.0.7 - Ethan Fast)
OEM Application Profile (HKLM-x32\...\{B4B7FD8F-06FC-E277-4F29-8F75F8281D8F}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
OpenOffice 4.1.5 (HKLM-x32\...\{708F0253-F566-48F3-9B88-06F48F16548B}) (Version: 4.15.9789 - Apache Software Foundation)
REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.63 - REALTEK Semiconductor Corp.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.21299 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8720.1 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.90 - REALTEK Semiconductor Corp.)
Skype version 8.37 (HKLM-x32\...\Skype_is1) (Version: 8.37 - Skype Technologies S.A.)
Vulkan Run Time Libraries 1.0.37.0 (HKLM\...\VulkanRT1.0.37.0) (Version: 1.0.37.0 - LunarG, Inc.)
WD Backup (HKLM-x32\...\{67C2F93C-8E4E-4BD2-863A-4DCE7EB359D9}) (Version: 1.2.5721.28811 - Western Digital Technologies, Inc) Hidden
WD Backup (HKLM-x32\...\{953eccd5-26ad-450b-af24-c50227e0fb74}) (Version: 1.2.5721.28811 - Western Digital Technologies, Inc.)
WD Drive Utilities (HKLM-x32\...\{48996CDD-DD81-4197-93FE-0971E73C5CA7}) (Version: 1.3.2.2 - Western Digital Technologies, Inc.) Hidden
WD Drive Utilities (HKLM-x32\...\{eab1fb93-61fb-48de-b815-b4e9b68d2ef1}) (Version: 1.3.2.2 - Western Digital Technologies, Inc.)
WD Quick View (HKLM-x32\...\{965D28B5-3C86-41FD-994E-D6376815C9B3}) (Version: 2.4.10.17 - Western Digital Technologies, Inc.)
WD Security (HKLM-x32\...\{249644e6-451a-4a5c-bd5c-21eeb9eec79d}) (Version: 1.3.1.2 - Western Digital Technologies, Inc.)
WD Security (HKLM-x32\...\{7CC2EDF2-83EC-4707-BDD3-72469236A6CC}) (Version: 1.3.1.2 - Western Digital Technologies, Inc.) Hidden
WildTangent ShortcutProvider (HKLM-x32\...\{80831F60-19D7-43B3-A60C-5CAF8C478DF6}) (Version: 1.0.0.60 - WildTangent) Hidden
Xperia Companion (HKLM-x32\...\{5b7c1b25-5fb6-442c-a1b5-cb8dfc2267bf}) (Version: 2.8.3.0 - Sony)
Xperia Companion (HKLM-x32\...\{66EABD35-6233-4926-9AB1-AB31CC6BC7D9}) (Version: 2.8.3.0 - Sony) Hidden
Xperia Companion Service (HKLM\...\{E41065E8-67E2-448F-940C-FF9D7C51E4E3}) (Version: 2.8.3.0 - Sony) Hidden
 
Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
HP Scan and Capture -> C:\Program Files\WindowsApps\AD2F1837.HPScanandCapture_40.0.245.0_x64__v10z8vjag6ke6 [2017-12-28] (Hewlett-Packard Company)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_110.1.671.0_x64__v10z8vjag6ke6 [2020-02-06] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-03-26] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-03-26] (Microsoft Corporation)
Synaptics TouchPad -> C:\Program Files\WindowsApps\SynapticsIncorporated.SynHPConsumerDApp_19005.35054.0.0_x64__807d65c4rvak2 [2020-03-26] (Synaptics Incorporated)
 
==================== Custom CLSID (Whitelisted): ==============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2017-02-16] (Advanced Micro Devices, Inc.) [File not signed]
 
==================== Codecs (Whitelisted) ====================
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
ShortcutWithArgument: C:\Users\BETH\Desktop\Gmail fitt.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\Desktop\Gmail muds.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\Desktop\Google Calendar -.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mgfijnnecdoifcadgfpbajeonhfendki
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_nglheapbdkhgpidedbaaiohcgmkmilbo\Gmail [email protected] -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nglheapbdkhgpidedbaaiohcgmkmilbo
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_nghldiaiamokmpalgdbfiokpgapocnnf\Hootsuite.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_mngniccdaoonfbddldojodbjdfknokll\Time Converter and World Clock - Conv.._.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mngniccdaoonfbddldojodbjdfknokll
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_miilmjmgkdhdabfkjkilgecbhbchboem\Gmail mudskipps.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_kmhopmchchfpfdcdjodmpfaaphdclmlj\Gmail bethsmyls.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_celnaknmndcdcjcagffhbhciignkeokb\(1) Facebook.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=celnaknmndcdcjcagffhbhciignkeokb
ShortcutWithArgument: C:\Users\BETH\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_bnlchlfjjebdblaoolggbonifknnfcpp\Google Calendar.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=bnlchlfjjebdblaoolggbonifknnfcpp
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail fitt.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail muds.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=bnlchlfjjebdblaoolggbonifknnfcpp
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar (2).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=fpjpknijfapadpaeaikbcmpfghnjeopa
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar - biz.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=ocbolilgjhgobopeapoajppmaoikccid
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar -.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mgfijnnecdoifcadgfpbajeonhfendki
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Calendar.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=bnlchlfjjebdblaoolggbonifknnfcpp
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Hootsuite (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Hootsuite (2).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Hootsuite.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=nghldiaiamokmpalgdbfiokpgapocnnf
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Join a Meeting - Zoom.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=ajojicfljchadpndofllmcfcddapmpkn
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Time Converter and World Clock - Conv.._.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mngniccdaoonfbddldojodbjdfknokll
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gmail fitt.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=kmhopmchchfpfdcdjodmpfaaphdclmlj
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gmail muds.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=miilmjmgkdhdabfkjkilgecbhbchboem
ShortcutWithArgument: C:\Users\BETH\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Calendar -.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=mgfijnnecdoifcadgfpbajeonhfendki
 
==================== Loaded Modules (Whitelisted) =============
 
2016-09-12 22:42 - 2016-09-12 22:42 - 000011776 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 002013696 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000014336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000739840 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000191488 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000071168 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000014336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2015-09-03 08:55 - 2015-09-03 08:55 - 000333824 _____ (Ginger Software) [File not signed] C:\Program Files (x86)\Ginger\GingerUpdateService\GSDL.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000049664 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qdds.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000029696 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000037376 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000030208 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000459776 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjp2.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000236544 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000275456 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qmng.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000023552 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000022528 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000351744 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtiff.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000021504 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 000374784 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2016-09-12 22:43 - 2016-09-12 22:43 - 001212416 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000912384 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Charts.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 005496320 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 005804544 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 001061376 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 003187712 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 002924544 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000310784 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 005444608 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000277504 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2016-09-12 22:42 - 2016-09-12 22:42 - 000193024 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
 
==================== Alternate Data Streams (Whitelisted) ========
 
==================== Safe Mode (Whitelisted) ==================
 
==================== Association (Whitelisted) =================
 
==================== Internet Explorer trusted/restricted ==========
 
==================== Hosts content: =========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2017-03-18 21:03 - 2017-03-18 21:01 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
 
==================== Other Areas ===========================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\BETH\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\internet explorer wallpaper.bmp
DNS Servers: 194.168.4.100 - 194.168.8.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(If an entry is included in the fixlist, it will be removed.)
 
MSCONFIG\Services: AJRouter => 3
HKLM\...\StartupApproved\StartupFolder: => "Ginger.lnk"
HKLM\...\StartupApproved\Run32: => "WDAppManager"
HKLM\...\StartupApproved\Run32: => "WD Drive Unlocker"
HKLM\...\StartupApproved\Run32: => "DriveUtilitiesHelper"
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\StartupApproved\Run: => "HP ENVY 4500 series (NET)"
HKU\S-1-5-21-259350032-3561555504-2751918716-1001\...\StartupApproved\Run: => "XperiaCompanionAgent"
 
==================== FirewallRules (Whitelisted) ================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{031844B1-5B4B-4DB0-B173-133C040D4159}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS4616\HPDiagnosticCoreUI.exe No File
FirewallRules: [{6089B0DA-EA15-4C2E-92BB-1E3E2335EBE7}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS4616\HPDiagnosticCoreUI.exe No File
FirewallRules: [{966BF1A5-A91B-43E6-BA94-5F8F5C62B5E4}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2F17\HPDiagnosticCoreUI.exe No File
FirewallRules: [{D4A1DFA6-B891-49CB-8D3D-C1FF6537B91C}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2F17\HPDiagnosticCoreUI.exe No File
FirewallRules: [{A1783E92-96B7-4DAF-A4C6-9F08D085D95A}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2E32\HPDiagnosticCoreUI.exe No File
FirewallRules: [{FA30F225-E0F4-469C-8071-7A5D28B71F7A}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS2E32\HPDiagnosticCoreUI.exe No File
FirewallRules: [{46F41944-368C-49B3-AF31-397255A7F5FB}] => (Allow) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{3BF6885F-0BA6-4462-8B95-E73DD12E9891}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{5A00EDD8-EC2F-4456-8895-3E2A2E68A9AD}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe (Sony Mobile Communications AB -> Sony)
FirewallRules: [{B743FC8D-08F0-4D31-A0CE-CC683B9A6E26}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS18C7\HPDiagnosticCoreUI.exe No File
FirewallRules: [{7D27C104-060E-4AB2-BEB7-2680D2F4CAED}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS18C7\HPDiagnosticCoreUI.exe No File
FirewallRules: [{578E924B-99EB-4966-A056-517A471901A7}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS17F9\HPDiagnosticCoreUI.exe No File
FirewallRules: [{A62D9C6C-8958-4DFB-A52B-C1E360929F2D}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS17F9\HPDiagnosticCoreUI.exe No File
FirewallRules: [UDP Query User{CB432846-FB5D-4F26-BA9D-C6C34A931716}C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe] => (Allow) C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe No File
FirewallRules: [TCP Query User{B5A299A4-BC03-4087-93D5-17960A886D52}C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe] => (Allow) C:\users\beth\desktop\sdio_update\sdio_x64_r701.exe No File
FirewallRules: [{711A1576-DBCB-44DE-AC34-7F75F765A71E}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS059C\HPDiagnosticCoreUI.exe No File
FirewallRules: [{3324C49B-AF81-49E4-A65A-34D01E4AB967}] => (Allow) C:\Users\BETH\AppData\Local\Temp\7zS059C\HPDiagnosticCoreUI.exe No File
FirewallRules: [UDP Query User{AF782DA4-F34E-4617-80A6-48DA4E9686E2}C:\users\beth\appdata\roaming\sky\sky go\sky go.exe] => (Allow) C:\users\beth\appdata\roaming\sky\sky go\sky go.exe No File
FirewallRules: [TCP Query User{AB58FED1-6473-4741-B888-21CEFF736010}C:\users\beth\appdata\roaming\sky\sky go\sky go.exe] => (Allow) C:\users\beth\appdata\roaming\sky\sky go\sky go.exe No File
FirewallRules: [{36F32AFB-B5C9-460D-9F93-3D0BAFE4F55A}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E1D36C49-0C4E-4838-BAD7-F0E51DEE044A}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{353C3CB0-16AB-4EFA-95CE-E451BD942241}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{28CF5D21-3B12-4546-9FD5-3EFEEADCD4E1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1F4F7BC1-51C7-4B47-94B7-3BE6BA5E77DD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5B10767B-0679-4ADC-89C2-DED60C717416}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{90FDAEF9-453B-48DB-847E-A96089A5EAD4}] => (Allow) C:\Program Files\HP\HP ENVY 4500 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{D28416D5-7021-4162-807A-C98C0ED46CD9}] => (Allow) LPort=5357
FirewallRules: [{05E4561A-3861-4E51-A5D3-08E298E33FBD}] => (Allow) C:\Program Files\HP\HP ENVY 4500 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [TCP Query User{7DDFF63E-9D3A-4259-9D68-EAE421DBE574}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{EADD9160-5046-487D-B4B0-ACADBA6927FE}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{8094509D-BF4F-45B3-9286-4381EFCEDAF5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{7890E50B-118E-4EBE-89B5-AA15FB35EB9A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{9853EC8B-2F3B-469B-A304-09C454C3FADD}C:\itunes\itunes.exe] => (Allow) C:\itunes\itunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [UDP Query User{CA18A181-9B86-444C-9B6C-04EF5F32D4E9}C:\itunes\itunes.exe] => (Allow) C:\itunes\itunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{F62C0FB8-620D-4978-9ECA-81C530652D61}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [UDP Query User{294F16E6-A9D3-42C1-AE0D-ABD18BAD3133}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [TCP Query User{ADC54DF6-6D04-4EFB-8C64-57061757CD12}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe () [File not signed]
FirewallRules: [UDP Query User{879D30EC-C012-4AE3-9CE2-8F770D66DB2D}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe () [File not signed]
FirewallRules: [TCP Query User{66018E01-D64F-4B02-B18F-7451215247F8}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [UDP Query User{A5B282E5-BA42-4423-B85E-639B10E0AB67}C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) C:\program files (x86)\monero-gui-win-x64-v0.10.3.1\monero-gui-0.10.3.1-beta2\monerod.exe () [File not signed]
FirewallRules: [TCP Query User{324EE441-62F0-4718-9736-6713B9A3D840}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [UDP Query User{50C4BFAC-5581-4A69-A3E8-CDF9E3CD4DF2}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [TCP Query User{B56344F2-400C-4447-9DE8-EFC3A6CE8CBA}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [UDP Query User{14EEFBB1-31AC-42D4-8C68-E300793B2CA0}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [TCP Query User{A8EE502F-DB07-4825-B766-003381E8B1C6}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [UDP Query User{DA5A6993-B4E5-48CF-BA52-BFE848308991}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monerod.exe No File
FirewallRules: [TCP Query User{9BF470A1-FBA7-4B56-95DF-672EB8EA48CC}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [UDP Query User{C4C60CA7-3AA2-48C2-9EC0-9E4C20798007}F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe] => (Allow) F:\documents\crypto\monero-gui-0.10.3.1-beta2\monero-wallet-gui.exe No File
FirewallRules: [TCP Query User{F65CD848-534C-4C96-B64A-97221A42F7B0}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{A39C0F23-FDB4-4AE3-B6EF-12388ECE234A}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{50115D1F-6B84-4CCA-B325-EF688EE558F6}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{D00E443E-A4EB-48FF-A252-81E75AA11D10}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
 
==================== Restore Points =========================
 
ATTENTION: System Restore is disabled (Total:222.99 GB) (Free:74.5 GB) (33%)
 
==================== Faulty Device Manager Devices ============
 
 
==================== Event log errors: ========================
 
Application errors:
==================
Error: (03/27/2020 12:09:46 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Audacity\audacity.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.720_none_e6beb5c51314836b.manifest.
Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.720_none_2e6bec9c2790ac71.manifest.
 
Error: (03/27/2020 12:08:59 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.
 
Error: (03/27/2020 12:08:59 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]
 
Error: (03/27/2020 12:08:59 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.
 
Error: (03/27/2020 12:08:59 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]
 
Error: (03/27/2020 12:08:13 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.
 
Error: (03/27/2020 11:59:36 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Audacity\audacity.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.720_none_e6beb5c51314836b.manifest.
Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.720_none_2e6bec9c2790ac71.manifest.
 
Error: (03/27/2020 11:51:10 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Audacity\audacity.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.720_none_e6beb5c51314836b.manifest.
Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.18362.720_none_2e6bec9c2790ac71.manifest.
 
 
System errors:
=============
Error: (03/26/2020 12:20:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The AdaptiveSleepService service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.
 
Error: (03/26/2020 12:20:55 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the AdaptiveSleepService service to connect.
 
Error: (03/26/2020 11:51:15 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Biometric Service service terminated unexpectedly. It has done this 1 time(s).
 
Error: (03/26/2020 11:39:04 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: The HPWMISVC service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
 
Error: (03/26/2020 11:38:55 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Network List Service service terminated with the following error: 
The device is not ready.
 
Error: (03/26/2020 11:36:30 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: The SynTPEnhService service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
 
Error: (03/26/2020 11:36:16 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: The Printer Extensions and Notifications service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
 
Error: (03/26/2020 11:35:48 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The iphlpsvc service terminated with the following error: 
The device is not ready.
 
 
CodeIntegrity:
===================================
 
Date: 2020-03-27 12:09:50.389
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements.
 
Date: 2020-03-27 11:59:39.140
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements.
 
Date: 2020-03-27 11:52:18.471
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements.
 
Date: 2020-03-27 11:48:01.969
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-27 11:48:00.720
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-27 11:43:01.413
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-27 11:43:01.404
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-03-27 11:43:00.662
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.
 
==================== Memory info =========================== 
 
BIOS: Insyde F.04 07/12/2017
Motherboard: HP 8312
Processor: AMD A9-9420 RADEON R5, 5 COMPUTE CORES 2C+3G 
Percentage of memory in use: 58%
Total physical RAM: 7647.18 MB
Available physical RAM: 3207.63 MB
Total Virtual: 18399.18 MB
Available Virtual: 13401.77 MB
 
==================== Drives ================================
 
Drive c: (Windows) (Fixed) (Total:222.99 GB) (Free:74.5 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:14.25 GB) (Free:14.19 GB) NTFS
 
\\?\Volume{3457130b-1a01-4c24-81c2-98d98c8f7562}\ (Windows RE tools) (Fixed) (Total:0.96 GB) (Free:0.36 GB) NTFS
\\?\Volume{6ac0d53e-55d4-4071-be5a-7f570807596e}\ () (Fixed) (Total:0.25 GB) (Free:0.15 GB) FAT32
 
==================== MBR & Partition Table ====================
 
==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: A50E1C7D)
 
Partition: GPT.
 
==================== End of Addition.txt =======================

  • 0






Similar Topics


Also tagged with one or more of these keywords: youtube, music, volume, bing

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP