Resolved Possible Virus or Malware infection

RDNeves

Posts: 11   +0
Hi everyone,
I recently noticed that everytime I open any kind of webpage in Google Chrome I get the following message in the console
"GET http://lifebounce.net/1f9f5ee62 analytics.js:1aefca3cb1.js net::ERR_ABORTED 403 (Blocked by ESET Security)

I already followed the first steps and installed the Farbar Recovery Scan Tool and im going to post the 2 txt files.

Thanx for your help with this.
 
FIRST.txt

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-03-2020
Ran by rdnev (administrator) on DESKTOP-JQVGJJT (Micro-Star International Co., Ltd. Please change product name) (03-04-2020 12:07:05)
Running from C:\Users\rdnev\Downloads
Loaded Profiles: rdnev & DefaultAppPool (Available Profiles: rdnev & DefaultAppPool)
Platform: Windows 10 Pro Version 1809 17763.1098 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Omni\Sound Blaster Omni Control Panel\SBOmni.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\94.4.384\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\94.4.384\QtWebEngineProcess.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Guillemot Corporation -> Guillemot Corporation) C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe
(Learnpulse -> Learnpulse) C:\Users\rdnev\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\rdnev\AppData\Local\Microsoft\OneDrive\19.232.1124.0010\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\rdnev\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\rdnev\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1910.0.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12003.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.20022.11011.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\inetsrv\w3wp.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files (x86)\Thrustmaster\Thrustmaster FFB Driver\drivers\amd64\tmGAInstall.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Micro-Star International CO., LTD. -> ) C:\Program Files (x86)\SCM\SCM.exe
(Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Rivet Networks LLC -> CloudBees, Inc.) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe
(Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtility.exe
(Rivet Networks LLC -> Rivet Networks) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
(SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) D:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9217016 2017-04-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [302888 2018-06-22] (Micro-Star International CO., LTD. -> )
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmdS.exe [183088 2019-12-16] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [Creative SB Monitoring Utility Launcher] => C:\Windows\system32\SBAVMonL.dll [67192 2017-07-05] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3022416 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM-x32\...\Run: [Sound Blaster Omni Control Panel] => C:\Program Files (x86)\Creative\Sound Blaster Omni\Sound Blaster Omni Control Panel\SBOmni.exe [930304 2013-10-28] (Creative Technology Ltd) [File not signed]
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6287872 2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2623032 2019-07-05] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2629632 2012-09-25] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [82183912 2019-07-11] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Run: [CreativeTaskScheduler] => C:\Program Files (x86)\Creative\Shared Files\CTSched.exe [53341 2006-11-17] (Creative Technology Ltd) [File not signed]
HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Run: [Screenpresso] => C:\Users\rdnev\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe [12199520 2020-03-16] (Learnpulse -> Learnpulse)
HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\MountPoints2: {8b4fdce9-6130-11e9-8109-9cb6d0605282} - "G:\WD SmartWare.exe" autoplay=true
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe [2020-03-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{9459C573-B17A-45AE-9F64-1857B5D58CEE}] -> C:\Program Files (x86)\Microsoft\Edge\Application\80.0.361.109\Installer\setup.exe [2020-04-01] (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2018-12-27]
ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0A272367-0A8B-4B68-B59F-E96077C4BA43} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24600440 2020-03-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {269C3A3A-FFB5-4514-8308-7B709BC41336} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4369824 2020-02-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {2C74DEAA-3C4A-4B11-89D0-3258D7127A71} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301928 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {33DEC8B4-5DE9-4218-A718-D34CE905AAEB} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115032 2020-03-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {3E4D77F5-FAC0-4E69-8608-93A1693F3FEB} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {48BFCADB-4165-4442-906E-53AE5B39064F} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2020-03-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {4B32D7FE-EA42-4329-887C-3EDAFC3CD123} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [654456 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5C2CCD42-ABEF-4FB8-A035-B7A86338532B} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1443424 2020-03-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {5C6D031E-08D8-4D08-A447-277C183B3634} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2018-12-27] (Google Inc -> Google Inc.)
Task: {670C09F7-EC27-44BD-A9AD-3EC44B471647} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-01-08] (Dropbox, Inc -> Dropbox, Inc.)
Task: {6C04480A-20FF-437A-8799-B0DC7685B471} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6E34FF21-EB79-4A44-AF24-4747D87E2772} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3022416 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {863C77F4-780C-4420-8349-9594C02853C7} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {86F18FCA-F3E2-4812-8CA3-1EB99C47B764} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4369824 2020-02-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {8A25F6B0-D248-41AA-8743-42F5F8867DBA} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8FDC547C-8B60-4F7C-B3DB-49D261F6C5C5} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {909D0875-F0DB-4254-A0B0-10A7B5B03590} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {97F2370F-AA1D-4CCA-8EE5-06C240E9E9C7} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24600440 2020-03-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {A94C47B7-145B-44D0-B380-7A929D80BB6C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2018-12-27] (Google Inc -> Google Inc.)
Task: {ABAA17FC-C756-4CA7-967B-F5D6167D251A} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2020-03-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {AFC70645-E0F4-4330-806B-F417028191E6} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115032 2020-03-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {C4DF4B04-851B-4028-BE4A-A72C889AA302} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EA8D1DC8-072C-4343-A79E-D3E1252F9D15} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F9B6454D-0728-4F8D-A9C2-F9DAECBB2CB2} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-01-08] (Dropbox, Inc -> Dropbox, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{3e4778d0-989f-401d-9863-9a7be1069e1c}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{3e4778d0-989f-401d-9863-9a7be1069e1c}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ea40067c-4f72-4ae5-b5e7-a0049fef6816}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{ea40067c-4f72-4ae5-b5e7-a0049fef6816}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-01-12] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2020-01-12] (Microsoft Corporation -> Microsoft Corporation)
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://files.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-26] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-26] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-26] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-26] (Microsoft Corporation -> Microsoft Corporation)

Edge:
======
Edge DefaultProfile: Default
Edge Profile: C:\Users\rdnev\AppData\Local\Microsoft\Edge\User Data\Default [2020-04-02]
Edge HomePage: Default -> about:Tabs

FireFox:
========
FF DefaultProfile: lxxmcahq.default
FF ProfilePath: C:\Users\rdnev\AppData\Roaming\Mozilla\Firefox\Profiles\lxxmcahq.default [2019-11-20]
FF ProfilePath: C:\Users\rdnev\AppData\Roaming\Mozilla\Firefox\Profiles\tzuv2au3.default-release [2020-03-30]
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-07-05] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-12-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-07-05] (Adobe Inc. -> Adobe Systems)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2020-04-03]

Chrome:
=======
CHR Profile: C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default [2020-04-03]
CHR Notifications: Default -> hxxps://futebolonline1.com; hxxps://robertsspaceindustries.com; hxxps://spark.adobe.com; hxxps://www.zoobio.pt
CHR HomePage: Default -> about:Tabs
CHR StartupUrls: Default -> "chrome://newtab/","hxxp://www.google.com/"
CHR NewTab: Default -> Active:"chrome-extension://jpfpebmajhhopeonhlcgidhclcccjcik/newtab.html"
CHR Extension: (Google Tradutor) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-03-18]
CHR Extension: (Apresentações) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-12-27]
CHR Extension: (Entanglement Web App) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\aciahcmjmecflokailenpkdchphgkefd [2018-12-27]
CHR Extension: (Documentos) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-12-27]
CHR Extension: (Google Drive) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-12-27]
CHR Extension: (Redbooth Gestão de projeto) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgecckpiojpahjlndlofcljgacdfkifk [2018-12-27]
CHR Extension: (YouTube) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-12-27]
CHR Extension: (uBlock Origin) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2020-03-03]
CHR Extension: (Dark Mode) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmghijelimhndkbmpgbldicpogfkceaj [2020-03-16]
CHR Extension: (Dropbox for Gmail) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpdmhfocilnekecfjgimjdeckachfbec [2019-10-27]
CHR Extension: (Folhas de cálculo) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-12-27]
CHR Extension: (React Developer Tools) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmkadmapgofadopljbjfkapdkoienihi [2020-04-01]
CHR Extension: (Google Docs offline) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-13]
CHR Extension: (Guardar no Google Drive) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2018-12-27]
CHR Extension: (Helium Backup) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpglbgbpeobllokpmeagpoagjbfknanl [2018-12-27]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2020-03-24]
CHR Extension: (Google Keep – notas e listas) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2020-04-01]
CHR Extension: (Arcane Legends) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibmlkgieigeddcedpbijnpojheoddido [2018-12-27]
CHR Extension: (Elegantt | The leading Gantt Chart for Trello) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdongfcbejkjibhkbekkjcckophhjcjj [2020-03-12]
CHR Extension: (Speed Dial 2 New tab) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik [2019-10-13]
CHR Extension: (WhatsGreen Multi Messenger) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbhfoiaobflocffnclkigpkeoagheimn [2019-01-15]
CHR Extension: (Window Resizer) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkelicaakdanhinjdeammmilcgefonfh [2020-03-28]
CHR Extension: (Poppit!) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcbkbpnkkkipelfledbfocopglifcfmi [2018-12-27]
CHR Extension: (Pagamentos via Chrome Web Store) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-09-30]
CHR Extension: (Gmail) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-23]
CHR Extension: (Chrome Media Router) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-03]
CHR Extension: (uBlock Adblocker Plus) - C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnhflmgomffaphmnbcogleagmloijbkd [2018-12-27]
CHR Profile: C:\Users\rdnev\AppData\Local\Google\Chrome\User Data\System Profile [2020-01-23]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [816184 2019-07-05] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3374160 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3103824 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AtherosSvc; C:\Windows\System32\drivers\AdminService.exe [414728 2017-11-08] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8444360 2020-01-28] (BattlEye Innovations e.K. -> )
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.) [File not signed]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11091224 2020-03-05] (Microsoft Corporation -> Microsoft Corporation)
S3 Creative Media Toolbox 6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\MT6Licensing.exe [79360 2019-01-12] (Creative Labs) [File not signed]
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [429056 2013-10-28] (Creative Technology Ltd) [File not signed]
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-01-08] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-01-08] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [44552 2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803456 2019-04-01] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S2 edgeupdate; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2020-03-16] (Microsoft Corporation -> Microsoft Corporation)
S3 edgeupdatem; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2020-03-16] (Microsoft Corporation -> Microsoft Corporation)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2245488 2019-12-16] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2245488 2019-12-16] (ESET, spol. s r.o. -> ESET)
R2 Killer Network Service; C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2650944 2018-12-05] (Rivet Networks LLC -> Rivet Networks)
S3 KNDBWMService; C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [73008 2018-12-05] (Rivet Networks LLC -> CloudBees, Inc.)
R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [168048 2018-06-22] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.)
S3 MicrosoftEdgeElevationService; C:\Program Files (x86)\Microsoft\Edge\Application\80.0.361.109\elevation_service.exe [1093512 2020-04-01] (Microsoft Corporation -> Microsoft Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [2466608 2019-11-19] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; D:\Program Files (x86)\Origin\OriginWebHelperService.exe [3344176 2019-11-19] (Electronic Arts, Inc. -> Electronic Arts)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5897968 2020-03-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [279096 2017-12-06] (Synaptics Incorporated -> Synaptics Incorporated)
R2 TeamViewer; D:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13216272 2020-03-20] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 tmGAInstall; C:\Program Files (x86)\Thrustmaster\Thrustmaster FFB Driver\drivers\amd64\tmGAInstall.EXE [48344 2018-12-03] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
R2 TmWinService; C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe [316968 2018-07-18] (Guillemot Corporation -> Guillemot Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 xTendSoftAPService; C:\Windows\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe [73024 2018-12-05] (Rivet Networks LLC -> CloudBees, Inc.)
R2 xTendUtilityService; C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe [73024 2018-12-05] (Rivet Networks LLC -> CloudBees, Inc.)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 amdrv; C:\Windows\system32\drivers\amdrv.sys [203680 2019-02-21] (Zemana Ltd. -> Zemana Ltd.)
S3 AndnetBus; C:\Windows\System32\drivers\lgandnetbus64.sys [30208 2016-08-31] (Microsoft Windows Hardware Compatibility Publisher -> LG Electronics Inc.)
S3 AndNetDiag; C:\Windows\system32\DRIVERS\lgandnetdiag64.sys [30720 2016-08-24] (Microsoft Windows Hardware Compatibility Publisher -> LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\system32\DRIVERS\lgandnetmodem64.sys [37376 2016-08-24] (Microsoft Windows Hardware Compatibility Publisher -> LG Electronics Inc.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [149944 2019-11-19] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [103264 2019-11-19] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15800 2019-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [189512 2019-11-19] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [50712 2019-11-19] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [79744 2019-12-16] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [116696 2019-12-16] (ESET, spol. s r.o. -> ESET)
R3 KfeCoSvc; C:\Windows\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [151896 2018-12-05] (Rivet Networks LLC -> Rivet Networks, LLC.)
R3 KillerEth; C:\Windows\System32\drivers\e2xw10x64.sys [145920 2018-09-15] (Microsoft Windows -> Qualcomm Atheros, Inc.)
R3 ksaud; C:\Windows\system32\drivers\ksaud.sys [2116728 2017-07-05] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_99704d7e94aa24ec\nvlddmkm.sys [22739392 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
R0 nvpciflt; C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_99704d7e94aa24ec\nvpciflt.sys [59256 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [75600 2019-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [787976 2016-11-01] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 ssdevfactory; C:\Windows\System32\drivers\ssdevfactory.sys [46408 2017-06-02] (SteelSeries ApS -> SteelSeries ApS)
R3 sshid; C:\Windows\System32\drivers\sshid.sys [45936 2017-08-15] (SteelSeries ApS -> SteelSeries ApS)
R3 ssps2; C:\Windows\System32\drivers\ssps2.sys [38688 2017-06-02] (SteelSeries ApS -> SteelSeries ApS)
R3 TmBusEn; C:\Windows\System32\drivers\TmBusEn.sys [30208 2011-01-26] (Guillemot Corporation -> Guillemot Corporation)
R3 TmBusEn; C:\Windows\SysWOW64\drivers\TmBusEn.sys [30208 2011-01-26] (Guillemot Corporation -> Guillemot Corporation)
S3 TmFilter; C:\Windows\System32\drivers\TmFilter.sys [24576 2011-01-26] (Guillemot Corporation -> Guillemot Corporation)
S3 TmFilter; C:\Windows\SysWOW64\drivers\TmFilter.sys [24576 2011-01-26] (Guillemot Corporation -> Guillemot Corporation)
S3 TmHid; C:\Windows\system32\DRIVERS\TmHid.sys [24704 2011-01-26] (Guillemot Corporation -> Guillemot Corporation)
S3 TmHid; C:\Windows\SysWOW64\DRIVERS\TmHid.sys [24704 2011-01-26] (Guillemot Corporation -> Guillemot Corporation)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46472 2019-10-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\Windows\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [351968 2019-10-29] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-29] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-04-03 12:07 - 2020-04-03 12:07 - 000036355 _____ C:\Users\rdnev\Downloads\FRST.txt
2020-04-03 12:06 - 2020-04-03 12:07 - 000000000 ____D C:\FRST
2020-04-03 12:06 - 2020-04-03 12:06 - 002280448 _____ (Farbar) C:\Users\rdnev\Downloads\FRST64.exe
2020-04-03 12:06 - 2020-04-03 12:06 - 000000000 ____D C:\Users\rdnev\Downloads\FRST-OlderVersion
2020-04-03 11:55 - 2020-04-03 11:55 - 000000000 ___HD C:\OneDriveTemp
2020-04-03 11:00 - 2020-04-03 11:00 - 001127657 _____ C:\Users\rdnev\Desktop\SCORMVisualGuideFinal.pdf
2020-04-03 10:45 - 2020-04-03 10:45 - 000411126 _____ C:\Users\rdnev\Downloads\RunTimeAdvancedCalls_SCORM20043rdEdition.zip
2020-04-02 21:56 - 2020-04-02 21:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2020-04-02 18:07 - 2020-04-02 18:07 - 000287606 _____ C:\Users\rdnev\Downloads\div.pdf
2020-04-02 12:19 - 2020-04-02 12:36 - 000111817 _____ C:\Users\rdnev\Desktop\beneficios simulador 2020.xlsx
2020-04-02 12:14 - 2020-04-02 12:14 - 000047054 _____ C:\Users\rdnev\Downloads\Tabelas_Ret_IRS_2019_Continente.xlsx
2020-04-02 12:13 - 2020-04-02 12:13 - 000045452 _____ C:\Users\rdnev\Downloads\Tabelas_Ret_IRS_2020_Continente.xlsx
2020-04-02 11:28 - 2020-04-02 11:28 - 000000827 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Audition 2019.lnk
2020-04-01 13:20 - 2020-04-01 13:20 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2020-04-01 13:20 - 2020-04-01 13:20 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2020-04-01 13:20 - 2020-04-01 13:20 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2020-04-01 13:20 - 2020-04-01 13:20 - 000044552 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2020-04-01 12:08 - 2020-04-03 10:45 - 000000000 ____D C:\Users\rdnev\Desktop\exemplo scorm interactions
2020-03-31 21:40 - 2020-03-31 21:40 - 000002332 _____ C:\Users\rdnev\Desktop\Illustrator.exe - Shortcut.lnk
2020-03-31 21:36 - 2020-03-31 21:36 - 000002520 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2019.lnk
2020-03-31 21:31 - 2020-03-31 21:31 - 000001699 _____ C:\Users\rdnev\Desktop\Animate.exe - Shortcut.lnk
2020-03-31 21:24 - 2020-03-31 21:24 - 000001059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Animate CC 2018.lnk
2020-03-31 10:55 - 2020-03-31 10:55 - 000394965 _____ C:\Users\rdnev\Downloads\Briefing_WeChange.pdf
2020-03-30 13:01 - 2020-03-30 13:01 - 000000000 ____D C:\Users\rdnev\Downloads\Adobe Captivate 2019 v11.5.0.476
2020-03-30 12:45 - 2020-03-30 12:47 - 1038457074 _____ C:\Users\rdnev\Downloads\Adobe Captivate 2019 v11.5.0.476.part3.rar
2020-03-30 12:31 - 2020-03-30 12:34 - 1073741824 _____ C:\Users\rdnev\Downloads\Adobe Captivate 2019 v11.5.0.476.part2.rar
2020-03-30 12:11 - 2020-03-30 12:15 - 1073741824 _____ C:\Users\rdnev\Downloads\Adobe Captivate 2019 v11.5.0.476.part1.rar
2020-03-22 19:09 - 2020-03-22 19:09 - 000654502 _____ C:\Users\rdnev\Desktop\IB48268.pdf
2020-03-21 16:36 - 2020-03-21 16:36 - 000040019 _____ C:\Users\rdnev\Downloads\NOTA_LANCAMENTO_2020-3-11_238.pdf
2020-03-19 20:43 - 2020-03-19 20:44 - 000000068 _____ C:\Users\rdnev\Desktop\medicação pai.txt
2020-03-18 11:21 - 2020-03-18 11:21 - 000001848 _____ C:\Users\rdnev\Downloads\Add_Shift+Open_command_window_here_as_administrator.reg
2020-03-18 01:44 - 2020-03-18 01:44 - 000061724 _____ C:\Users\rdnev\Downloads\DCI_202003_JTSCO-43797605.1.pdf
2020-03-18 01:42 - 2020-03-18 01:42 - 000142437 _____ C:\Users\rdnev\Downloads\DCI_202003_LQIUC-20209143000015083570.pdf
2020-03-17 13:41 - 2020-03-17 13:41 - 000000110 _____ C:\Users\rdnev\Desktop\Solved - Possible Malware drive by download - TechSpot Forums.url
2020-03-16 20:22 - 2020-03-16 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js
2020-03-16 20:22 - 2020-03-16 20:22 - 000000000 ____D C:\Program Files\nodejs
2020-03-16 19:45 - 2020-03-16 20:27 - 000000068 _____ C:\Users\rdnev\.node_repl_history
2020-03-16 16:36 - 2020-03-16 16:36 - 000002204 _____ C:\Users\rdnev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Screenpresso.lnk
2020-03-16 16:35 - 2020-03-16 16:35 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\Learnpulse
2020-03-16 16:35 - 2020-03-16 16:35 - 000000000 ____D C:\Users\rdnev\AppData\Local\Learnpulse
2020-03-16 15:15 - 2020-03-16 15:15 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\ESET
2020-03-16 13:24 - 2020-03-16 13:29 - 000000000 ____D C:\Users\rdnev\Desktop\XMind Zen 9.1.3
2020-03-16 13:05 - 2020-03-16 13:05 - 000000000 ____D C:\Users\rdnev\Desktop\documentos joao
2020-03-16 12:14 - 2020-03-23 00:08 - 000000000 ____D C:\Users\DefaultAppPool
2020-03-16 12:14 - 2020-03-16 12:14 - 000000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2020-03-16 12:14 - 2018-09-15 08:29 - 000001105 _____ C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-16 12:11 - 2020-04-01 19:16 - 000002421 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-03-16 12:10 - 2020-03-16 12:10 - 000003618 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-03-16 12:10 - 2020-03-16 12:10 - 000003494 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-03-16 12:07 - 2020-04-03 11:51 - 000000000 ____D C:\inetpub
2020-03-16 12:07 - 2020-03-16 12:07 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IIS
2020-03-16 12:07 - 2020-03-16 12:07 - 000000000 ____D C:\Windows\SysWOW64\BestPractices
2020-03-16 12:07 - 2020-03-16 12:07 - 000000000 ____D C:\Windows\system32\BestPractices
2020-03-16 11:15 - 2020-03-16 11:22 - 000000000 ____D C:\Users\rdnev\Desktop\Axians Digital Tool LX
2020-03-13 14:45 - 2020-04-03 10:52 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\Code
2020-03-13 14:45 - 2020-03-27 12:23 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
2020-03-13 14:45 - 2020-03-13 14:45 - 000000000 ____D C:\Users\rdnev\.vscode
2020-03-13 14:37 - 2020-03-16 20:38 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\npm
2020-03-13 14:33 - 2020-03-13 14:33 - 000000000 ____D C:\Windows\system32\uninstall
2020-03-13 14:27 - 2020-03-13 14:27 - 013942784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXCaptureReplay.dll
2020-03-13 14:27 - 2020-03-13 14:27 - 004520960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VsGraphicsDesktopEngine.exe
2020-03-13 14:27 - 2020-03-13 14:27 - 003631616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VsGraphicsRemoteEngine.exe
2020-03-13 14:27 - 2020-03-13 14:27 - 002476544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d12SDKLayers.dll
2020-03-13 14:27 - 2020-03-13 14:27 - 001419776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXToolsOfflineAnalysis.dll
2020-03-13 14:27 - 2020-03-13 14:27 - 001089024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11_3SDKLayers.dll
2020-03-13 14:27 - 2020-03-13 14:27 - 000912896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXCap.exe
2020-03-13 14:27 - 2020-03-13 14:27 - 000424960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1debug3.dll
2020-03-13 14:27 - 2020-03-13 14:27 - 000219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VsGraphicsExperiment.dll
2020-03-13 14:27 - 2020-03-13 14:27 - 000137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXToolsMonitor.dll
2020-03-13 14:27 - 2020-03-13 14:27 - 000123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VsGraphicsCapture.dll
2020-03-13 14:27 - 2020-03-13 14:27 - 000116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXToolsReporting.dll
2020-03-13 14:26 - 2020-03-13 14:27 - 000286208 _____ (Microsoft Corporation) C:\Windows\system32\VsGraphicsExperiment.dll
2020-03-13 14:26 - 2020-03-13 14:26 - 017761792 _____ (Microsoft Corporation) C:\Windows\system32\DXCaptureReplay.dll
2020-03-13 14:26 - 2020-03-13 14:26 - 005732352 _____ (Microsoft Corporation) C:\Windows\system32\VsGraphicsDesktopEngine.exe
2020-03-13 14:26 - 2020-03-13 14:26 - 004850688 _____ (Microsoft Corporation) C:\Windows\system32\VsGraphicsRemoteEngine.exe
2020-03-13 14:26 - 2020-03-13 14:26 - 003179008 _____ (Microsoft Corporation) C:\Windows\system32\d3d12SDKLayers.dll
2020-03-13 14:26 - 2020-03-13 14:26 - 002006016 _____ (Microsoft Corporation) C:\Windows\system32\DXToolsOfflineAnalysis.dll
2020-03-13 14:26 - 2020-03-13 14:26 - 001366016 _____ (Microsoft Corporation) C:\Windows\system32\d3d11_3SDKLayers.dll
2020-03-13 14:26 - 2020-03-13 14:26 - 001176064 _____ (Microsoft Corporation) C:\Windows\system32\DXCap.exe
2020-03-13 14:26 - 2020-03-13 14:26 - 000555008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1debug3.dll
2020-03-13 14:26 - 2020-03-13 14:26 - 000189440 _____ (Microsoft Corporation) C:\Windows\system32\DXToolsMonitor.dll
2020-03-13 14:26 - 2020-03-13 14:26 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\DXToolsReporting.dll
2020-03-13 14:26 - 2020-03-13 14:26 - 000166400 _____ (Microsoft Corporation) C:\Windows\system32\VsGraphicsCapture.dll
2020-03-13 14:26 - 2018-09-14 22:39 - 000410624 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\DXCpl.exe
2020-03-13 14:26 - 2018-09-14 22:38 - 000351232 _____ (Microsoft Corporation) C:\Windows\system32\perf_gputiming.dll
2020-03-13 14:26 - 2018-09-14 21:54 - 000275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf_gputiming.dll
2020-03-13 14:26 - 2018-09-14 21:52 - 000386560 _____ (Windows (R) Win 7 DDK provider) C:\Windows\SysWOW64\DXCpl.exe
2020-03-13 14:26 - 2018-09-14 19:30 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\DxToolsReportGenerator.dll
2020-03-13 14:26 - 2018-09-14 19:04 - 000095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DxToolsReportGenerator.dll
2020-03-13 14:26 - 2018-09-14 19:04 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\VsGraphicsProxyStub.dll
2020-03-13 14:26 - 2018-09-14 19:03 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\VSD3DWARPDebug.dll
2020-03-13 14:26 - 2018-09-14 19:01 - 000331264 _____ (Microsoft Corporation) C:\Windows\system32\DXGIDebug.dll
2020-03-13 14:26 - 2018-09-14 18:45 - 000041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VsGraphicsProxyStub.dll
2020-03-13 14:26 - 2018-09-14 18:44 - 000236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXGIDebug.dll
2020-03-13 14:26 - 2018-09-14 18:44 - 000060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VSD3DWARPDebug.dll
2020-03-13 14:25 - 2020-03-13 14:25 - 000000000 ____D C:\ProgramData\Windows App Certification Kit
2020-03-13 14:25 - 2020-03-13 14:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2020-03-13 14:25 - 2020-03-13 14:25 - 000000000 ____D C:\Program Files\Application Verifier
2020-03-13 14:25 - 2020-03-13 14:25 - 000000000 ____D C:\Program Files (x86)\Application Verifier
2020-03-13 14:23 - 2020-03-13 14:27 - 000000000 ____D C:\Program Files (x86)\Microsoft SDKs
2020-03-13 14:23 - 2020-03-13 14:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2017
2020-03-13 14:23 - 2020-03-13 14:23 - 000000000 ____D C:\Program Files (x86)\Windows Kits
2020-03-13 14:22 - 2020-03-13 14:28 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\Visual Studio Setup
2020-03-13 14:22 - 2020-03-13 14:22 - 000001351 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Installer.lnk
2020-03-13 14:22 - 2020-03-13 14:22 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\vstelemetry
2020-03-13 14:22 - 2020-03-13 14:22 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\Microsoft Visual Studio
2020-03-13 14:22 - 2020-03-13 14:22 - 000000000 ____D C:\Users\rdnev\AppData\Local\ServiceHub
2020-03-13 14:22 - 2020-03-13 14:22 - 000000000 ____D C:\ProgramData\Microsoft Visual Studio
2020-03-13 14:22 - 2020-03-13 14:22 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio
2020-03-13 14:20 - 2020-03-16 19:48 - 000000000 ____D C:\ProgramData\chocolatey
2020-03-13 14:20 - 2020-03-13 14:20 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\NuGet
2020-03-13 14:20 - 2020-03-13 14:20 - 000000000 ____D C:\Users\rdnev\AppData\Local\NuGet
2020-03-13 14:00 - 2020-04-02 18:19 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\npm-cache
2020-03-13 14:00 - 2020-03-13 14:00 - 000000000 ____D C:\Users\rdnev\.config
2020-03-12 22:21 - 2020-03-12 22:26 - 000000000 ____D C:\Users\rdnev\AppData\Local\TeamViewer
2020-03-12 22:20 - 2020-03-16 12:23 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\TeamViewer
2020-03-12 22:20 - 2020-03-12 22:20 - 000000776 _____ C:\Users\Public\Desktop\TeamViewer.lnk
2020-03-12 22:20 - 2020-03-12 22:20 - 000000776 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk
2020-03-12 22:20 - 2020-03-12 22:20 - 000000776 _____ C:\ProgramData\Desktop\TeamViewer.lnk
2020-03-10 22:43 - 2020-03-10 22:43 - 019284480 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 011723776 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 009941504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 007923712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 005436904 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 004066816 _____ (Microsoft Corporation) C:\Windows\system32\DHolographicDisplay.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 003629568 _____ (Microsoft Corporation) C:\Windows\system32\tellib.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 003550624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 002986560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 002751336 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 002469432 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 002323688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 002273296 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 002182456 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 002100056 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001876960 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001707208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001605000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001430880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001296360 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001288648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001282944 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001229824 _____ (Microsoft Corporation) C:\Windows\system32\HoloSI.PCShell.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001201128 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001076040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 001022464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MixedRealityCapture.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000870400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MixedRealityCapture.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000829440 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000808960 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000763032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000740352 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000684544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000662528 ____R (Microsoft Corporation) C:\Windows\system32\MixedRealityCapture.Pipeline.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000654848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000594432 _____ (Microsoft Corporation) C:\Windows\system32\HolographicExtensions.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000486400 _____ C:\Windows\system32\AssignedAccessCsp.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000454144 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000429056 _____ (Microsoft Corporation) C:\Windows\system32\MixedReality.Broker.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000427520 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\HolographicRuntimes.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000385536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provsvc.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000363520 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2020-03-10 22:43 - 2020-03-10 22:43 - 000273920 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacEncoder.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000263576 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000254264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssecflt.sys
2020-03-10 22:43 - 2020-03-10 22:43 - 000235520 _____ (Microsoft Corporation) C:\Windows\system32\HoloSHExtensions.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\HoloShellRuntime.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000228352 _____ (Microsoft Corporation) C:\Windows\system32\ddpchunk.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000185344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Analog.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_AnalogShell.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000161280 ____R (Microsoft Corporation) C:\Windows\system32\SecureAssessmentHandlers.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000154624 _____ (Microsoft Corporation) C:\Windows\system32\fcon.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000143872 _____ (Microsoft Corporation) C:\Windows\system32\DesktopView.Internal.Broker.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintWSDAHost.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000101888 _____ (Microsoft Corporation) C:\Windows\system32\mssecuser.dll
2020-03-10 22:43 - 2020-03-10 22:43 - 000098816 ____R (Microsoft Corporation) C:\Windows\system32\MixedRealityCapture.Broker.dll
2020-03-10 22:42 - 2020-03-10 22:43 - 012306432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 026807296 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 023463424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 020816384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 019020288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 015220224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 013013504 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 008907776 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 007870976 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 006545096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 006445056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 006318840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 006060544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 005915936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 005777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 005608120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 005309080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 005210896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 005086208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 004872704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 004664320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 004628480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 004344832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 003952760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 003909632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 003873704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 003703808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 003429888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 003416576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Controls.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 003096064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 002832896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 002779272 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 002765312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 002698752 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 002349056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 002298880 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 002279296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 002264344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 002150912 _____ (Microsoft Corporation) C:\Windows\system32\edgeangle.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001899160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001862656 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001804288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001761280 _____ (Microsoft Corporation) C:\Windows\system32\dui70.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001759232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001750528 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001720936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001711104 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001708544 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001702400 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001693696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceFlows.DataModel.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001678800 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001675008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001674696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001668752 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001606144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directml.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001590072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpserverbase.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001573480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001506304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001495480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001485312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001480192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001465344 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001465264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001458056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3D12.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001427592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001388032 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001309696 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001294336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001292800 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 001292288 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001278808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 001272360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001257472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001249280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001247856 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 001224704 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001223168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdprt.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001222456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpbase.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001162088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001125392 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001122304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001098128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001076224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001071616 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
 
2020-03-10 22:42 - 2020-03-10 22:42 - 001062400 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001051136 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001036800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001027000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001022976 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 001000448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000993280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000988672 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000982528 _____ (Microsoft Corporation) C:\Windows\system32\Spectrum.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000976384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000964984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000964096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000961024 _____ (Microsoft Corporation) C:\Windows\system32\CBDHSvc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000949760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.Internal.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000949248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000946688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000934912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000926056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000914432 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000912384 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000909824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000909624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000908800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2020-03-10 22:42 - 2020-03-10 22:42 - 000879104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000850432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000845824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000840192 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000828728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000821760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSMDesktopProvider.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000818688 _____ (Microsoft Corporation) C:\Windows\system32\MdmDiagnostics.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000805504 _____ (Microsoft Corporation) C:\Windows\system32\BioIso.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000803328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000796160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000794112 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000791864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000774968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Services.TargetedContent.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000774656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000730112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000727040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000718944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000712192 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000703488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000685568 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000681472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000676352 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000673280 _____ (Microsoft Corporation) C:\Windows\system32\configmanager2.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000671232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000661304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000661056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000658944 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000651264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000648392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000642048 _____ (Microsoft Corporation) C:\Windows\system32\SharedRealitySvc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000637440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Search.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000628736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000622632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicensingWinRT.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000616960 _____ (Microsoft Corporation) C:\Windows\system32\NgcIsoCtnr.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000615936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000606208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000604672 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000604248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000589824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000574864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Perception.Stub.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000557056 _____ (Microsoft Corporation) C:\Windows\system32\PerceptionSimulationExtensions.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000555440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000553472 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000545792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000542536 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000542504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000537088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9on12.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000533504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000532992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000522104 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000517632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000515448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directmanipulation.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000506368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.PredictionUnit.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Launcher.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000496128 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000492216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000481280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000473832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000468480 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000462336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000461488 _____ (Microsoft Corporation) C:\Windows\system32\NgcIso.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000460800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UiaManager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000456192 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000453208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppResolver.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000449024 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000444416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl
2020-03-10 22:42 - 2020-03-10 22:42 - 000441344 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000439976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11on12.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000439808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ngccredprov.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TileDataRepository.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000428544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000425984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2020-03-10 22:42 - 2020-03-10 22:42 - 000414208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputSwitch.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000411136 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000408528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000403968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000401920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000395776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000378880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000373560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\coml2.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000366728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000359424 _____ (Microsoft Corporation) C:\Windows\system32\dusmsvc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DictationManager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000349184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000348672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhoneOm.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000344576 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000334336 _____ (Microsoft Corporation) C:\Windows\system32\credprovs.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000331264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000330752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000329728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000329216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreShellAPI.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000326144 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticLogCSP.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000322560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ninput.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000320512 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000312632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000310784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Phoneutil.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000310272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000310272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WiFiDisplay.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000304952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000302592 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.CredDialogController.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000301568 _____ (Microsoft Corporation) C:\Windows\system32\DAFIPP.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DataExchange.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnclient.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000289792 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000287744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Preview.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\coredpus.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000279416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000277840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\biwinrt.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000276480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppLockerCSP.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000267264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockScreenData.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000264208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemSettings.DataModel.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000263168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovs.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000259072 _____ (Microsoft Corporation) C:\Windows\system32\PerceptionSimulationManager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000252264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsDocumentTargetPrint.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConsoleLogon.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000248832 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000246272 _____ (Microsoft Corporation) C:\Windows\system32\feclient.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000243216 _____ (Microsoft Corporation) C:\Windows\system32\DataExchangeHost.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngOnline.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000239664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExecModelClient.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.CredDialogController.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncSettings.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcredprov.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000228352 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerCsp.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000219656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeManagerObj.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000218624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Cortana.Persona.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2020-03-10 22:42 - 2020-03-10 22:42 - 000217088 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2020-03-10 22:42 - 2020-03-10 22:42 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\ContactHarvesterDS.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000205312 _____ C:\Windows\SysWOW64\HeatCore.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000201728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000201216 _____ (Microsoft Corporation) C:\Windows\system32\wincredui.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatializerApo.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RstrtMgr.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\feclient.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enrollmentapi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000180736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2020-03-10 22:42 - 2020-03-10 22:42 - 000176112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000175928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Management.Workplace.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallServiceTasks.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000167424 _____ (Microsoft Corporation) C:\Windows\system32\dmcsps.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000165888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000164864 _____ (Microsoft Corporation) C:\Windows\system32\edpcsp.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000162816 _____ (Microsoft Corporation) C:\Windows\system32\EDPCleanup.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000159744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredui.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddisplay.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSM.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000157536 _____ (Microsoft Corporation) C:\Windows\system32\dmcmnutils.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\PrintWSDAHost.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000156160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.OneCore.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000156160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twext.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\useractivitybroker.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oledlg.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatialAudioLicenseSrv.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.PAL.Desktop.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BitLockerCsp.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000140304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000139648 _____ (Microsoft Corporation) C:\Windows\system32\CredentialUIBroker.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000124440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcmnutils.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.XamlHost.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000123392 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DSCache.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\globinputhost.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\efslsaext.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000108392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Display.DisplayEnhancementOverride.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olecli32.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000107008 _____ C:\Windows\SysWOW64\WindowsDefaultHeatProcessor.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olethk32.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000106376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profapi.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000106048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000105784 _____ (Microsoft Corporation) C:\Windows\system32\ConsentUX.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GraphicsCapture.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000102912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000096256 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000094496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PickerHost.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\CredProvHelper.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\enterpriseresourcemanager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000079360 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000078336 _____ (Microsoft Corporation) C:\Windows\system32\ComputerDefaults.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000074752 ____R (Microsoft Corporation) C:\Windows\system32\mdmpostprocessevaluator.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000073728 _____ (Microsoft Corporation) C:\Windows\system32\coredpussvr.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncPolicy.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.internal.shellcommon.AccountsControlExperience.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enterpriseresourcemanager.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Background.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComputerDefaults.exe
2020-03-10 22:42 - 2020-03-10 22:42 - 000065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvHelper.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olesvr32.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerUI.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbauth.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationFrameworkInternalPS.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.SystemManufacturers.dll
2020-03-10 22:42 - 2020-03-10 22:42 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msauserext.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 022137120 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 017484800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 009672208 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 007888896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 007645392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 007556600 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 006942720 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 006058032 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 005577872 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 005575168 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 005528576 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 005301248 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 004853760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Controls.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 004736512 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 004589056 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 004417008 _____ (Microsoft Corporation) C:\Windows\explorer.exe
 
2020-03-10 22:41 - 2020-03-10 22:41 - 004303872 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 004050432 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 004018688 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 003636736 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 003630592 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Bluetooth.Service.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 003490304 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 003392000 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 003361080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 003334144 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002981888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002917688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 002893312 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002848768 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002701816 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002634752 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002627088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 002620928 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002611136 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002437344 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002433024 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002418176 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 002233856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002197504 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002185216 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002086192 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002084352 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002074984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 002050560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001994768 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001962296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 001961984 _____ (Microsoft Corporation) C:\Windows\system32\DeviceFlows.DataModel.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001929728 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001890816 _____ (Microsoft Corporation) C:\Windows\system32\msctfuimanager.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001886208 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001844456 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001837136 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001830712 _____ (Microsoft Corporation) C:\Windows\system32\rdpserverbase.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001818624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001796400 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001794048 _____ (Microsoft Corporation) C:\Windows\system32\cdprt.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001768960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001753088 _____ (Microsoft Corporation) C:\Windows\system32\ConstraintIndex.Search.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001751640 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001729024 _____ (Microsoft Corporation) C:\Windows\system32\CoreShell.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001720320 _____ (Microsoft Corporation) C:\Windows\system32\directml.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001715712 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001702600 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-03-10 22:41 - 2020-03-10 22:41 - 001688064 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001671680 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001664904 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001644544 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001608192 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001568768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001551360 _____ (Microsoft Corporation) C:\Windows\system32\SpeechPal.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001484384 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001478968 _____ (Microsoft Corporation) C:\Windows\system32\rdpbase.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001473080 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 001466368 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001422336 _____ (Microsoft Corporation) C:\Windows\system32\WpcDesktopMonSvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001395056 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001390888 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 001388544 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001360912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001346192 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2020-03-10 22:41 - 2020-03-10 22:41 - 001335296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001333248 _____ (Microsoft Corporation) C:\Windows\system32\WindowManagement.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001331536 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001319936 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001315328 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001287584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001287072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001267712 _____ (Microsoft Corporation) C:\Windows\system32\APMon.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001262592 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001260032 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001255936 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001221120 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001194496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Phone.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001183504 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 001169920 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001145856 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001114112 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001085952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.Schema.Shell.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001081656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Services.TargetedContent.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001054712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 001052160 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001051648 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 001038336 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001035264 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001021952 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001012224 _____ (Microsoft Corporation) C:\Windows\system32\refsutil.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 001005568 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 001001472 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2020-03-10 22:41 - 2020-03-10 22:41 - 000998928 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000987736 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Perception.Stub.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000984888 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000974848 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000955392 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000947200 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000938296 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000930816 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthSSO.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000928768 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000909824 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000903368 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000902656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000890368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000889344 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000882176 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000872960 _____ (Microsoft Corporation) C:\Windows\system32\NPSMDesktopProvider.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000862224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 000848896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Signals.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000847872 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000846848 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000835584 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000826880 _____ (Microsoft Corporation) C:\Windows\system32\d3d9on12.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000823296 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000820736 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000818640 _____ (Microsoft Corporation) C:\Windows\system32\windows.applicationmodel.datatransfer.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000808272 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000801792 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000788480 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000780408 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000776192 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000765440 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000750080 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000745472 _____ (Microsoft Corporation) C:\Windows\system32\DevicesFlowBroker.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000741688 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000739840 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000736272 _____ (Microsoft Corporation) C:\Windows\system32\LicensingWinRT.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000736256 _____ (Microsoft Corporation) C:\Windows\system32\LockController.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000723456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.Search.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000715776 _____ (Microsoft Corporation) C:\Windows\system32\WFDSConMgrSvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000701440 _____ (Microsoft Corporation) C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000694784 _____ (Microsoft Corporation) C:\Windows\system32\WindowsInternal.ComposableShell.ComposerFramework.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000690176 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000686080 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000681984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Launcher.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000679424 _____ (Microsoft Corporation) C:\Windows\system32\UiaManager.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000678376 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000670208 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Devices.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000669184 _____ (Microsoft Corporation) C:\Windows\system32\ApplicationFrame.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000655160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 000650240 _____ (Microsoft Corporation) C:\Windows\system32\cdpsvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000649216 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000641696 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000628736 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000622336 _____ (Microsoft Corporation) C:\Windows\system32\d3d11on12.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000621568 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000620032 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000616448 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000613376 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000605576 _____ (Microsoft Corporation) C:\Windows\system32\directmanipulation.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000604552 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000603792 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000590336 _____ (Microsoft Corporation) C:\Windows\system32\AppResolver.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000581632 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000575488 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000565760 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000558592 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000556544 _____ (Microsoft Corporation) C:\Windows\system32\BTAGService.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000547840 _____ (Microsoft Corporation) C:\Windows\system32\TileDataRepository.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000547840 _____ (Microsoft Corporation) C:\Windows\system32\QuietHours.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000542208 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2020-03-10 22:41 - 2020-03-10 22:41 - 000538624 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_User.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000535048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 000520704 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Notifications.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000519168 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000518656 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000516096 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000515584 _____ (Microsoft Corporation) C:\Windows\system32\cdpusersvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000508720 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000505856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000501760 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000500224 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_PCDisplay.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000499712 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Display.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000498688 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000496872 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000495616 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.UserAccountsHandlers.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000494080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000494080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Activities.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000494080 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000492032 _____ (Microsoft Corporation) C:\Windows\system32\DictationManager.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000491520 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Bluetooth.UserService.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000491520 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2020-03-10 22:41 - 2020-03-10 22:41 - 000487936 _____ (Microsoft Corporation) C:\Windows\system32\InputSwitch.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000487424 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000485376 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000482304 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000468792 _____ (Microsoft Corporation) C:\Windows\system32\coml2.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000465408 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000460288 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountWAMExtension.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000454144 _____ (Microsoft Corporation) C:\Windows\system32\ChtQuickDS.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000451584 _____ (Microsoft Corporation) C:\Windows\system32\CoreShellAPI.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000450048 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000443368 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000440832 _____ (Microsoft Corporation) C:\Windows\system32\LockHostingFramework.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000439096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 000437248 _____ (Microsoft Corporation) C:\Windows\system32\PhoneOm.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000435712 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000429568 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000421888 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000420864 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_UserAccount.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000420864 _____ (Microsoft Corporation) C:\Windows\system32\SettingsEnvironment.Desktop.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000420352 _____ (Microsoft Corporation) C:\Windows\system32\PhoneDataSync.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000418576 _____ (Microsoft Corporation) C:\Windows\system32\vac.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000413184 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountExtension.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000410624 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000409912 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000400384 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000399376 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DataModel.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000395776 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\ninput.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000391680 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Preview.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000389120 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000386560 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_WorkAccess.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000386360 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000384000 _____ (Microsoft Corporation) C:\Windows\system32\Phoneutil.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\AppLockerCSP.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000381952 _____ (Microsoft Corporation) C:\Windows\system32\BthAvctpSvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000378880 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000377344 _____ (Microsoft Corporation) C:\Windows\system32\jpndecoder.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000374272 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenData.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000364544 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000363320 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000362496 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000359424 _____ (Microsoft Corporation) C:\Windows\system32\wpnclient.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000359424 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\XpsDocumentTargetPrint.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000351744 _____ (Microsoft Corporation) C:\Windows\system32\BthAvrcp.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000349696 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000347784 _____ (Microsoft Corporation) C:\Windows\system32\AudioSrvPolicyManager.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\QuickActionsDataModel.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000340480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.BlueLightReduction.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000335872 _____ (Microsoft Corporation) C:\Windows\system32\DataExchange.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\windows.internal.shellcommon.shareexperience.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000320728 _____ (Microsoft Corporation) C:\Windows\system32\biwinrt.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000314072 _____ (Microsoft Corporation) C:\Windows\system32\ExecModelClient.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000313344 _____ (Microsoft Corporation) C:\Windows\system32\DAFWSD.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000312704 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000308224 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000305664 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDirectoryClient.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000304952 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Cortana.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000294912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 000293856 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000293376 _____ (Microsoft Corporation) C:\Windows\system32\TDLMigration.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000290304 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000283648 _____ (Microsoft Corporation) C:\Windows\system32\wlidcredprov.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\Cortana.Persona.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000281088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.AppDefaults.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000276480 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_InputPersonalization.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000274448 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostBroker.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountCloudAP.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000264704 _____ (Microsoft Corporation) C:\Windows\system32\ComposerFramework.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000263680 _____ (Microsoft Corporation) C:\Windows\system32\WiFiCloudStore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000262656 _____ C:\Windows\system32\HeatCore.dll
 
2020-03-10 22:41 - 2020-03-10 22:41 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\DesktopSwitcherDataModel.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000262336 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000261632 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2020-03-10 22:41 - 2020-03-10 22:41 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SignInOptions.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000256512 _____ (Microsoft Corporation) C:\Windows\system32\SpatializerApo.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000256512 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000256512 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\wpnservice.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000251904 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_ManagePhone.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000246784 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000241664 _____ (Microsoft Corporation) C:\Windows\system32\SharedPCCSP.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000241664 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000240376 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000239120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Workplace.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000238080 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000235008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Devices.Sensors.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000235008 _____ (Microsoft Corporation) C:\Windows\system32\TetheringMgr.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000231424 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\VideoHandlers.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000226816 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_CapabilityAccess.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.SharedPC.AccountManager.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\RstrtMgr.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000222720 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Geolocation.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000217904 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\InstallServiceTasks.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000214528 _____ (Microsoft Corporation) C:\Windows\system32\PeopleBand.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000211456 _____ (Microsoft Corporation) C:\Windows\system32\ddisplay.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\NPSM.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000203776 _____ (Microsoft Corporation) C:\Windows\system32\useractivitybroker.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000200720 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SIUF.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000200192 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000199680 _____ C:\Windows\system32\IHDS.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000198656 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000192000 _____ (Microsoft Corporation) C:\Windows\system32\WindowsInternal.ComposableShell.DesktopHosting.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000189440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000185344 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000184832 _____ (Microsoft Corporation) C:\Windows\system32\oledlg.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000182784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.SharedPC.CredentialProvider.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000180224 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_ContentDeliveryManager.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000178688 _____ (Microsoft Corporation) C:\Windows\system32\winbio.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000177664 _____ (Microsoft Corporation) C:\Windows\system32\ngctasks.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000176640 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000171520 _____ (Microsoft Corporation) C:\Windows\system32\SpatialAudioLicenseSrv.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000168488 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.CapturePicker.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000164152 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.SettingsExtensibility.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000162816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.XamlHost.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000160768 _____ (Microsoft Corporation) C:\Windows\system32\LicensingCSP.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000154624 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_AppExecutionAlias.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000152576 _____ (Microsoft Corporation) C:\Windows\system32\VaultCDS.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_BackgroundApps.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000150528 _____ (Microsoft Corporation) C:\Windows\system32\vfuprov.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000149240 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Display.DisplayEnhancementOverride.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\sensrsvc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\D3DSCache.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000148480 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000143872 _____ (Microsoft Corporation) C:\Windows\system32\SettingsExtensibilityHandlers.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\GraphicsCapture.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000138624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.ShellCommon.Broker.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\provpackageapidll.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000134456 _____ (Microsoft Corporation) C:\Windows\system32\ImplatSetup.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000132480 _____ (Microsoft Corporation) C:\Windows\system32\profapi.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\CredDialogBroker.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Storage.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000126976 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000125440 _____ C:\Windows\system32\WindowsDefaultHeatProcessor.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000121536 _____ (Microsoft Corporation) C:\Windows\system32\PickerHost.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000120560 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\CloudDomainJoinAUG.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000109056 _____ (Microsoft Corporation) C:\Windows\system32\sihost.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000106296 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthProxyStub.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\DesktopShellExt.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000103424 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000099896 _____ (Microsoft Corporation) C:\Windows\system32\RuntimeBroker.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000097280 _____ (Microsoft Corporation) C:\Windows\system32\WpnUserService.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2020-03-10 22:41 - 2020-03-10 22:41 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncPolicy.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUser.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000090608 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\PersonalizationCSP.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\windows.internal.shellcommon.AccountsControlExperience.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\MsCtfMonitor.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Background.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\LocationFrameworkInternalPS.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000077312 _____ (Microsoft Corporation) C:\Windows\system32\desktopimgdownldr.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\ProximityServicePal.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000072984 _____ (Microsoft Corporation) C:\Windows\system32\ApplicationFrameHost.exe
2020-03-10 22:41 - 2020-03-10 22:41 - 000072704 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerUI.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\tbauth.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\MSAProfileNotificationHandler.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.SystemManufacturers.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\msauserext.dll
2020-03-10 22:41 - 2020-03-10 22:41 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\mpnotify.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 007700480 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 004997096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 003581440 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 003334496 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 002707456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2020-03-10 22:40 - 2020-03-10 22:40 - 002590944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 002466816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 002426680 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.AppAgent.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 002200376 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 002149160 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 002015400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 002004992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001893376 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001771824 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001743376 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001727496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.AppAgent.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001715000 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001701384 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001677312 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001674752 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001612816 _____ (Microsoft Corporation) C:\Windows\system32\AppVIntegration.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001522488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVEntSubsystems32.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001519488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001496576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001474560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dui70.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001399824 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystemController.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001387512 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001308672 _____ (Microsoft Corporation) C:\Windows\system32\TaskFlowDataEngine.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001293768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001258296 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 001205248 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001049600 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 001049400 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 001005056 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000988240 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000985088 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000932864 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000904104 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000902464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000902144 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000890400 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000871792 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000863528 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000828216 _____ (Microsoft Corporation) C:\Windows\system32\AppVOrchestration.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000822272 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000817168 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntStreamingManager.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000779776 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000777728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000776272 _____ (Microsoft Corporation) C:\Windows\system32\pkeyhelper.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000769760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000743224 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000740864 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2013CustomActions.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000702976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000681416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000680944 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000667664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2020-03-10 22:40 - 2020-03-10 22:40 - 000667152 _____ (Microsoft Corporation) C:\Windows\system32\AppVCatalog.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000652304 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000650552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2020-03-10 22:40 - 2020-03-10 22:40 - 000649528 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000591872 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000535552 _____ (Microsoft Corporation) C:\Windows\system32\ChxAPDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000532184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000510504 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000509440 _____ (Microsoft Corporation) C:\Windows\system32\ChxHAPDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000506408 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000495632 _____ (Microsoft Corporation) C:\Windows\system32\TransportDSA.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000495616 _____ (Microsoft Corporation) C:\Windows\system32\DDDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000470016 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000467984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2020-03-10 22:40 - 2020-03-10 22:40 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\ChtCangjieDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000461840 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000461824 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000458240 _____ (Microsoft Corporation) C:\Windows\system32\ChtBopomofoDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000456192 _____ (Microsoft Corporation) C:\Windows\system32\ChtHkStrokeDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000455680 _____ (Microsoft Corporation) C:\Windows\system32\ChsStrokeDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000451120 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000446480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000442880 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000438784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000424960 _____ (Microsoft Corporation) C:\Windows\system32\SDDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000417792 _____ (Microsoft Corporation) C:\Windows\system32\eeprov.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000407712 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000407040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000390128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000389120 _____ (Microsoft Corporation) C:\Windows\system32\BingASDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000385552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000376784 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000376320 _____ (Microsoft Corporation) C:\Windows\system32\ChxDecoder.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000367208 _____ (Microsoft Corporation) C:\Windows\system32\BCP47Langs.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\chxinputrouter.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000347648 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_AssignedAccess.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\wpr.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\winsku.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000321536 _____ (Microsoft Corporation) C:\Windows\system32\MtfDecoder.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\LanguageOverlayServer.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000298808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2020-03-10 22:40 - 2020-03-10 22:40 - 000289792 _____ (Microsoft Corporation) C:\Windows\system32\jpnranker.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000283240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtapi.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000282424 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000277504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000276496 _____ (Microsoft Corporation) C:\Windows\system32\MTF.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsku.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000255128 _____ (Microsoft Corporation) C:\Windows\system32\SgrmBroker.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000252944 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000244224 _____ (Microsoft Corporation) C:\Windows\system32\JpnServiceDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
2020-03-10 22:40 - 2020-03-10 22:40 - 000231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacEncoder.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000227328 _____ (Microsoft Corporation) C:\Windows\system32\wosc.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.OneCore.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000222008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinesam.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000213816 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000202552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MTF.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryUpgrade.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000193552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000193336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2020-03-10 22:40 - 2020-03-10 22:40 - 000186464 _____ (Microsoft Corporation) C:\Windows\system32\winbrand.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000174080 _____ (Microsoft Corporation) C:\Windows\system32\IoTAssignedAccessLockFramework.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\HoloShellRuntime.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000163840 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000163448 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000158720 _____ (Microsoft Corporation) C:\Windows\system32\MTFFuzzyDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000149504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Security.Attestation.DeviceAttestation.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000149488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbrand.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000147944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000146944 _____ (Microsoft Corporation) C:\Windows\system32\globinputhost.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\AdvancedEmojiDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\StaticDictDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000141728 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000134144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000133432 _____ (Microsoft Corporation) C:\Windows\system32\DTUHandler.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000130872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2020-03-10 22:40 - 2020-03-10 22:40 - 000126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbio.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000120832 _____ (Microsoft Corporation) C:\Windows\system32\chxranker.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000118472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000118272 _____ (Microsoft Corporation) C:\Windows\system32\WinHvEmulation.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000110592 _____ (Microsoft Corporation) C:\Windows\system32\HashtagDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000110080 _____ (Microsoft Corporation) C:\Windows\system32\WinHvPlatform.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000109704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialUIBroker.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000109056 _____ (Microsoft Corporation) C:\Windows\system32\MTFSpellcheckDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000103952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bindflt.sys
2020-03-10 22:40 - 2020-03-10 22:40 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000102400 _____ (Microsoft Corporation) C:\Windows\system32\MTFAppServiceDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\BingFilterDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000096256 _____ (Microsoft Corporation) C:\Windows\system32\RuleBasedDS.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000095544 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\RemoteAppLifetimeManager.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MuiUnattend.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2020-03-10 22:40 - 2020-03-10 22:40 - 000069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsCtfMonitor.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\umpo-overrides.dll
2020-03-10 22:40 - 2020-03-10 22:40 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2020-03-10 22:40 - 2020-03-10 22:40 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2020-03-10 22:40 - 2020-03-10 22:40 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2020-03-10 22:40 - 2020-03-10 22:40 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2020-03-10 22:40 - 2020-03-10 22:40 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2020-03-10 22:40 - 2020-03-10 22:40 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2020-03-10 22:40 - 2020-03-10 22:40 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2020-03-10 22:40 - 2020-03-10 22:40 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
 
==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-04-03 12:07 - 2019-02-21 23:32 - 000103070 _____ C:\Windows\ZAM.krnl.trace
2020-04-03 12:01 - 2018-12-27 01:50 - 000877484 _____ C:\Windows\system32\PerfStringBackup.INI
2020-04-03 12:01 - 2018-09-15 08:31 - 000000000 ____D C:\Windows\INF
2020-04-03 11:57 - 2018-12-27 02:01 - 000000000 ____D C:\ProgramData\NVIDIA
2020-04-03 11:55 - 2018-12-27 01:53 - 000000000 ___RD C:\Users\rdnev\OneDrive
2020-04-03 11:55 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-03 11:54 - 2018-12-27 01:41 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-04-03 11:54 - 2018-09-15 07:09 - 000786432 _____ C:\Windows\system32\config\BBI
2020-04-03 01:48 - 2020-02-26 22:26 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\Blitz
2020-04-03 00:23 - 2018-12-27 01:40 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-04-02 21:57 - 2019-01-08 22:58 - 000000000 ____D C:\Program Files (x86)\Dropbox
2020-04-02 21:19 - 2018-12-27 01:52 - 000000000 ____D C:\Users\rdnev\AppData\Local\Packages
2020-04-02 17:04 - 2019-10-05 23:22 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2020-04-02 17:04 - 2019-10-05 23:22 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData
2020-04-02 15:58 - 2020-02-26 22:42 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\Blitz-helpers
2020-04-02 15:57 - 2020-02-26 22:26 - 000000000 ____D C:\Users\rdnev\AppData\Local\Blitz
2020-04-02 15:56 - 2020-02-26 22:26 - 000002217 _____ C:\Users\rdnev\Desktop\Blitz.lnk
2020-04-02 15:56 - 2020-02-26 22:26 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz Inc
2020-04-02 11:30 - 2019-04-17 19:42 - 000000000 ____D C:\Users\Public\Documents\Adobe
2020-04-02 11:30 - 2019-04-17 19:42 - 000000000 ____D C:\ProgramData\Documents\Adobe
2020-04-02 11:30 - 2018-12-27 01:52 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\Adobe
2020-04-02 11:28 - 2019-04-17 22:36 - 000000000 ____D C:\Program Files\Common Files\Adobe
2020-04-02 11:26 - 2018-12-27 17:21 - 000000000 ____D C:\Users\rdnev\AppData\Local\D3DSCache
2020-04-02 09:49 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps
2020-04-02 09:49 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\AppReadiness
2020-04-01 09:11 - 2018-09-15 08:23 - 000000000 ____D C:\Windows\CbsTemp
2020-04-01 01:25 - 2020-02-13 23:49 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-04-01 01:25 - 2019-11-19 23:15 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-03-31 21:38 - 2019-04-17 19:39 - 000001402 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2020-03-31 21:38 - 2019-04-17 19:38 - 000000000 ____D C:\Program Files (x86)\Adobe
2020-03-31 21:35 - 2019-04-17 22:36 - 000000000 ____D C:\Program Files\Adobe
2020-03-31 21:24 - 2019-04-17 19:36 - 000000000 ____D C:\Users\rdnev\AppData\Local\Adobe
2020-03-31 18:46 - 2019-11-12 12:23 - 000131837 _____ C:\Users\rdnev\Desktop\folha horas.xlsx
2020-03-30 15:17 - 2019-11-19 23:15 - 000000000 ____D C:\Users\rdnev\AppData\LocalLow\Mozilla
2020-03-30 15:15 - 2019-11-19 23:15 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-03-29 02:09 - 2019-02-10 20:10 - 000000000 ____D C:\Users\rdnev\AppData\Local\CrashDumps
2020-03-26 01:03 - 2020-02-26 22:42 - 000000000 ____D C:\Users\rdnev\AppData\Local\log
2020-03-24 23:50 - 2019-10-05 23:22 - 000003518 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0
2020-03-23 04:05 - 2018-12-27 01:47 - 000000000 ____D C:\Users\rdnev
2020-03-21 16:34 - 2018-12-27 01:57 - 000003420 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-03-21 16:34 - 2018-12-27 01:57 - 000003296 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-03-18 10:47 - 2018-12-27 01:57 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-03-17 23:23 - 2018-12-27 01:53 - 000003374 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3593454028-354382374-75827813-1001
2020-03-17 23:23 - 2018-12-27 01:47 - 000002359 _____ C:\Users\rdnev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-17 19:57 - 2018-12-27 01:53 - 000000000 ____D C:\Users\rdnev\AppData\Local\PlaceholderTileLogoFolder
2020-03-17 19:49 - 2019-01-08 22:40 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-03-16 20:10 - 2018-12-27 03:09 - 000000000 ____D C:\ProgramData\Package Cache
2020-03-16 12:22 - 2018-12-27 01:52 - 000000000 ____D C:\Users\rdnev\AppData\Local\ConnectedDevicesPlatform
2020-03-16 12:07 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\SysWOW64\inetsrv
2020-03-16 12:07 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\system32\inetsrv
2020-03-14 19:27 - 2018-12-27 01:40 - 000440696 _____ C:\Windows\system32\FNTCACHE.DAT
2020-03-13 14:23 - 2019-02-10 16:52 - 000000000 ____D C:\Program Files (x86)\MSBuild
2020-03-12 22:33 - 2019-08-19 22:09 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation
2020-03-11 22:43 - 2018-12-27 01:52 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-03-11 22:43 - 2018-12-27 01:52 - 000000000 ___RD C:\Users\rdnev\3D Objects
2020-03-11 02:26 - 2018-09-15 10:11 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ___RD C:\Windows\PrintDialog
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ___RD C:\Program Files\Windows Defender
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\SysWOW64\setup
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\system32\ShellExperiences
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\system32\setup
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\system32\oobe
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\ShellExperiences
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\ShellComponents
2020-03-11 02:26 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\bcastdvr
2020-03-11 02:26 - 2018-09-15 07:09 - 000000000 ____D C:\Windows\system32\Dism
2020-03-11 02:26 - 2018-09-15 07:09 - 000000000 ____D C:\Windows\servicing
2020-03-10 22:48 - 2019-01-02 23:21 - 000000000 ____D C:\Windows\system32\MRT
2020-03-10 22:45 - 2019-01-02 23:21 - 121542864 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-03-09 22:12 - 2019-01-08 23:00 - 000000000 ___RD C:\Users\rdnev\Dropbox
2020-03-07 23:03 - 2019-01-06 16:45 - 000000000 ____D C:\Users\rdnev\AppData\Roaming\discord

==================== Files in the root of some directories ========

2019-04-17 23:43 - 2019-12-24 00:01 - 000001456 _____ () C:\Users\rdnev\AppData\Local\Adobe Save for Web 13.0 Prefs
2019-04-17 19:39 - 2019-04-17 19:39 - 000000410 _____ () C:\Users\rdnev\AppData\Local\oobelibMkey.log

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
 
Addition.txt

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-03-2020
Ran by rdnev (03-04-2020 12:08:09)
Running from C:\Users\rdnev\Downloads
Windows 10 Pro Version 1809 17763.1098 (X64) (2018-12-27 00:44:42)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3593454028-354382374-75827813-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3593454028-354382374-75827813-503 - Limited - Disabled)
Guest (S-1-5-21-3593454028-354382374-75827813-501 - Limited - Disabled)
rdnev (S-1-5-21-3593454028-354382374-75827813-1001 - Administrator - Enabled) => C:\Users\rdnev
WDAGUtilityAccount (S-1-5-21-3593454028-354382374-75827813-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
AS: ESET Security (Enabled - Up to date) {333C65BB-8923-0EAA-C47E-C486E687BEFD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe (HKLM\...\{9A968479-8205-40F1-8D14-09F3434E5B48}) (Version: 1.0.0000 - Adobe Systems Incorporated) Hidden
Adobe Animate CC 2018 (HKLM-x32\...\FLPR_18_0_1) (Version: 18.0.1 - Adobe Systems Incorporated)
Adobe Audition 2019 (HKLM-x32\...\AUDT_12_1) (Version: 12.1 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.9.0.504 - Adobe Systems Incorporated)
Adobe Illustrator CC 2019 (HKLM-x32\...\ILST_23_0_1) (Version: 23.0.1 - Adobe Systems Incorporated)
Adobe Photoshop CC 2019 (HKLM-x32\...\PHSP_20_0_1) (Version: 20.0.1 - Adobe Systems Incorporated)
Anthem™ (HKLM-x32\...\{57b4eaa0-f1f5-407e-afbd-2db397381ad8}) (Version: 1.0.58.44883 - Electronic Arts)
Application Verifier x64 External Package (HKLM\...\{B27BC1FC-8474-9E32-73C2-6F7CD58AD1E3}) (Version: 10.1.17763.132 - Microsoft) Hidden
Battery Calibration (HKLM-x32\...\{634AC01E-49DB-4AD2-B87C-90D4DCC6AFA1}) (Version: 1.0.1807.0401 - Micro-Star International Co., Ltd.) Hidden
Battery Calibration (HKLM-x32\...\InstallShield_{634AC01E-49DB-4AD2-B87C-90D4DCC6AFA1}) (Version: 1.0.1807.0401 - Micro-Star International Co., Ltd.)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlestate Games Launcher 0.9.2.970 (HKLM-x32\...\{B0FDA062-7581-4D67-B085-C4E7C358037F}_is1) (Version: 0.9.2.970 - Battlestate Games)
Blitz (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Blitz) (Version: 1.6.41 - Blitz Inc.)
Brother MFL-Pro Suite MFC-J415W (HKLM-x32\...\{FB83EAC4-E3F6-4666-B45B-44522F2344B6}) (Version: 2.0.0.0 - Brother Industries, Ltd.)
Creative ASIO (USB) (HKLM-x32\...\Creative_ASIO(USB)) (Version: 1.00 - Creative Technology Limited)
Creative Media Toolbox 6 (HKLM-x32\...\{F1A14CB2-A048-45A6-AFDA-3571296E1D76}) (Version: 6.02 - Creative Technology Limited)
Creative System Information (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited)
Discord (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Discord) (Version: 0.0.306 - Discord Inc.)
Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.03 - Creative Technology Limited)
Dropbox (HKLM-x32\...\Dropbox) (Version: 94.4.384 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
Epic Games Launcher (HKLM-x32\...\{DCE27B29-200D-491A-BBC5-98ECEFEC0843}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Escape from Tarkov (HKLM-x32\...\EscapeFromTarkov) (Version: 0.12.2.5707 - Battlestate Games)
ESET Security (HKLM\...\{F1544F11-BFCC-43CC-9D0C-169A7E99369E}) (Version: 13.0.24.0 - ESET, spol. s r.o.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.149 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HCS Tools version 1.05 (HKLM-x32\...\{D3659B78-75B0-4571-A23D-899D23C6A2C9}_is1) (Version: 1.05 - HCS VoicePacks Ltd)
HCS VoicePacks Celeste version Singularity and Event Horizon (HKLM-x32\...\{FD1ECC86-9D77-4771-8C69-5BD39E3432A2}_is1) (Version: Singularity and Event Horizon - HCS VoicePacks Ltd)
Kits Configuration Installer (HKLM-x32\...\{29B915AE-013F-151F-3E61-67F7363C3A09}) (Version: 10.1.17763.132 - Microsoft) Hidden
Kodi (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Kodi) (Version: - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
Legends of Runeterra (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Riot Game bacon.live) (Version: - Riot Games, Inc)
LG Mobile Driver (HKLM-x32\...\{3F490D0E-3131-438C-BCF9-7549CB88DF41}) (Version: 4.2.0 - LG Electronics)
LGUP for Store (HKLM-x32\...\{27FDA0D1-5BEA-427A-913C-FF050C211674}) (Version: 1.14.3 - LG Electronics)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 80.0.361.109 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.121.21 - )
Microsoft Office 365 ProPlus - pt-pt (HKLM\...\O365ProPlusRetail - pt-pt) (Version: 16.0.12527.20278 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Teams) (Version: 1.3.00.4461 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual Studio Code (User) (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.43.2 - Microsoft Corporation)
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.18.1104.625 - Microsoft Corporation)
Minecraft Launcher (HKLM-x32\...\{E15F69FA-660D-45CC-B28F-6CBC4CAD2091}) (Version: 1.0.0.0 - Mojang)
Mozilla Firefox 73.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 73.0.1 (x64 en-US)) (Version: 73.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 70.0.1 - Mozilla)
MSI Development Tools (HKLM-x32\...\{6C961B30-A670-8A05-3BFE-3947E84DD4E4}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
MSI Remind Manager Service (HKLM-x32\...\{3E23F267-3E35-40F9-B6BF-BC034D214717}) (Version: 1.0.1707.1901 - Micro-Star International Co., Ltd.) Hidden
MSI Remind Manager Service (HKLM-x32\...\InstallShield_{3E23F267-3E35-40F9-B6BF-BC034D214717}) (Version: 1.0.1707.1901 - Micro-Star International Co., Ltd.)
MTG Arena (HKLM-x32\...\{F62E5477-A813-448F-AD6C-34FB7C31E360}) (Version: 0.1.1805 - Wizards of the Coast)
Node.js (HKLM\...\{C5BDCF7D-282C-4B1D-ABA3-BAC062F4FD11}) (Version: 13.11.0 - Node.js Foundation)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.1.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.1.57 - NVIDIA Corporation)
NVIDIA Graphics Driver 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.12 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0816-0000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.56.33908 - Electronic Arts, Inc.)
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
PAGAN ONLINE (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\PGN.WW.PRODUCTION) (Version: - Wargaming.net)
plugin Autenticação.Gov (HKLM-x32\...\{DA5C6D6B-C160-4732-9A6D-CB0B58387A84}) (Version: 2.0.46 - Agência para a Modernização Administrativa)
qBittorrent 4.1.5 (HKLM-x32\...\qBittorrent) (Version: 4.1.5 - The qBittorrent project)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.21292 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8117 - Realtek Semiconductor Corp.)
RSI Launcher 1.1.1 (HKLM\...\81bfc699-f883-50c7-b674-2483b6baae23) (Version: 1.1.1 - Cloud Imperium Games)
RSI PTU Launcher 1.0.0-ptu.33 (HKLM\...\94a6df8a-d3f9-558d-bb04-097c192530b9) (Version: 1.0.0-ptu.33 - Cloud Imperium Games)
SCM (HKLM\...\{1CC45AFD-DFFF-4165-86B4-FA112B167509}) (Version: 13.018.06221 - Application)
Screenpresso (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Screenpresso) (Version: 1.7.16.0 - Learnpulse)
SDK ARM Additions (HKLM-x32\...\{0B5D6FB7-05A5-271B-5B99-82384219A471}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
SDK ARM Redistributables (HKLM-x32\...\{4A5F6E94-7967-A333-8231-CA9AF35E03BD}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
Sound Blaster Omni Surround 5.1 (HKLM-x32\...\{DD0AD523-C679-4844-A9E7-F446273C43D0}) (Version: 1.01.07 - Creative Technology Limited)
Sound Blaster Omni Surround 5.1 Extras (HKLM-x32\...\{C9120656-8F23-409A-8B4D-278FEAA33856}) (Version: 1.0 - Creative Technology Limited)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SteelSeries Engine 3.11.2 (HKLM\...\SteelSeries Engine 3) (Version: 3.11.2 - SteelSeries ApS)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.4.193 - Synaptics Incorporated)
Teams Machine-Wide Installer (HKLM-x32\...\{39AF0813-FA7B-4860-ADBE-93B9B214B914}) (Version: 1.2.0.19260 - Microsoft Corporation)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.4.4445 - TeamViewer)
Thrustmaster Force Feedback Driver (HKLM-x32\...\{8F5A0981-5CDC-41D0-BCA2-AD3B777FC358}) (Version: 2.FFD.2018 - Thrustmaster)
Thrustmaster TARGET (HKLM-x32\...\{8036A569-CA02-4D33-A7E9-E9BC8A482E91}) (Version: 3.0.18.328 - Thrustmaster)
Tom Clancy's The Division 2 (HKLM-x32\...\Uplay Install 4932) (Version: - Ubisoft)
Universal CRT Extension SDK (HKLM-x32\...\{7D225043-6CC5-7B56-11DD-AFF90E4C1C0C}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{CB19DBA2-C210-5646-9522-695A1317CD34}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{0460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9}) (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{5F577A45-3C65-352B-061D-D6A57F05402C}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{3B588BBE-EB02-D1B2-5CD5-7DB85AD8A3E7}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{D2DC1EDF-EE04-9B5F-BDD7-06645D859EC3}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (HKLM-x32\...\{CE83D0BD-418A-F3D1-D6CE-687E96D1EBD0}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
Uplay (HKLM-x32\...\Uplay) (Version: 82.0 - Ubisoft)
vcpp_crt.redist.clickonce (HKLM-x32\...\{253D6AD3-5786-4B3B-B4E1-E082482A1F26}) (Version: 14.16.27033 - Microsoft Corporation) Hidden
Visual Studio Build Tools 2017 (HKLM-x32\...\a8143d5f) (Version: 15.9.28307.1064 - Microsoft Corporation)
VoiceAttack version 1.7.5 (HKLM-x32\...\{D6EDF6DB-029E-4A34-A3A0-D960CB0FCB2A}_is1) (Version: 1.7.5 - VoiceAttack.com)
vs_FileTracker_Singleton (HKLM-x32\...\{A41E138F-5A3F-443C-B72D-957AB994FB5A}) (Version: 15.9.28128 - Microsoft Corporation) Hidden
Wargaming.net Game Center (HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Wargaming.net Game Center) (Version: 18.9.1.3085 - Wargaming.net)
WinAppDeploy (HKLM-x32\...\{716AE8F2-1BE3-7657-DF6B-F23DEEC75AF9}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
Windows SDK AddOn (HKLM-x32\...\{1E76DFA7-96F3-4281-8E41-8A226C3E42EE}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.17763.132 (HKLM-x32\...\{5fe95b9d-9219-4d8b-a031-71323ae48a81}) (Version: 10.1.17763.132 - Microsoft Corporation)
WinRT Intellisense Desktop - en-us (HKLM-x32\...\{00B12DF9-5428-9406-DE2C-8E8A1A062B05}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{E82A4A6C-C21C-35FE-B805-3E44318F6D63}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (HKLM-x32\...\{7E898893-9C42-A572-7F57-FDE55CE812F7}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{E8B1CB29-5C24-D882-3CEF-F8A7263BC63D}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
WinRT Intellisense Mobile - en-us (HKLM-x32\...\{F6F11150-93DE-0507-FCA0-F746E0207017}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (HKLM-x32\...\{8329C3A0-8582-D1C2-67FF-800654BFDF45}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{771C9DEF-7C0B-85DA-6426-7A20F06BEC94}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (HKLM-x32\...\{B047C746-63E8-41C7-A5C0-7ABD390CF3E6}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{0063AF94-397B-9C64-1C71-D404B27C5D96}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden
YNAB 4 version 4.3.857 (HKLM-x32\...\com.ynab.YNAB4.LiveCaptive_is1) (Version: 4.3.857 - YouNeedABudget.com)
 
Packages:
=========
Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1731.1.0_x86__kgqvnymyfvs32 [2020-04-01] (king.com)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.0.2204.0_x64__rz1tebttyb220 [2019-11-15] (Dolby Laboratories)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2018-12-27] (Fitbit)
Killer Control Center -> C:\Program Files\WindowsApps\RivetNetworks.KillerControlCenter_2.0.2323.0_x64__rh07ty8m5nkag [2019-01-02] (Rivet Networks LLC) [Startup Task]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-25] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-25] (Microsoft Corporation) [MS Ad]
Microsoft Notícias -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-24] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.1224.0_x64__8wekyb3d8bbwe [2020-02-04] (Microsoft Studios) [MS Ad]
MSN Meteorologia -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-24] (Microsoft Corporation) [MS Ad]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.95.602.0_x64__mcm4njqhnhss8 [2019-10-21] (Netflix, Inc.)
Panels - Custom UI Builder -> C:\Program Files\WindowsApps\14495Panels.Panels-CustomUIBuilder_1.1.0.0_x64__t203xt8whertw [2019-03-13] (Panels)
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_3.5.1.0_x64__nfy108tqq3p12 [2020-03-19] (Thumbmunkeys Ltd) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive - Personal] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}0
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{04271989-C4D2-08B9-C5CF-FEA11DC95160} -> [OneDrive - VINCI Energies] => D:\OneDrive - VINCI Energies [2020-03-16 13:03]
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-7A7C409EAC54} -> [Creative Cloud Files] => C:\Users\rdnev\Creative Cloud Files [2019-04-17 19:47]
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\rdnev\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20031.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\rdnev\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20031.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\rdnev\Dropbox [2019-01-08 23:00]
CustomCLSID: HKU\S-1-5-21-3593454028-354382374-75827813-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => D:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-12-16] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-12-16] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => D:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => D:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-12-16] (ESET, spol. s r.o. -> ESET)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\Drivers32: [vidc.spv1] => C:\Users\rdnev\AppData\Local\Learnpulse\Screenpresso\ScreenpressoCodec.dll [167656 2020-03-16] (Learnpulse -> LearnPulse)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\rdnev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicações do Chrome\Google Keep – notas e listas.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default --app-id=hmjkmjkepdijhoojdojkdfohbdgmmhki
ShortcutWithArgument: C:\Users\rdnev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicações do Chrome\Helium Backup.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default --app-id=gpglbgbpeobllokpmeagpoagjbfknanl
ShortcutWithArgument: C:\Users\rdnev\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) =============

2018-12-27 02:15 - 2016-09-27 18:21 - 000363520 _____ () [File not signed] C:\Windows\SYSTEM32\APOMgr64.DLL
2019-05-23 12:27 - 2005-04-22 05:36 - 000143360 _____ () [File not signed] C:\Windows\system32\BrSNMP64.dll
2018-12-27 02:15 - 2016-09-27 18:23 - 000089600 _____ () [File not signed] C:\Windows\SYSTEM32\CmdRtr64.DLL
2019-05-23 12:27 - 2012-07-05 12:32 - 000084480 _____ (Brother Industries, Ltd.) [File not signed] C:\Windows\system32\BrNetSti.dll
2013-10-28 14:11 - 2013-10-28 14:11 - 000551936 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Omni\Sound Blaster Omni Control Panel\CTAudEp.dll
2011-09-16 19:04 - 2011-09-16 19:04 - 000238080 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Omni\Sound Blaster Omni Control Panel\CTLoadRs.dll
2013-02-27 13:29 - 2013-02-27 13:29 - 000251904 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Omni\Sound Blaster Omni Control Panel\HKDetect.dll
2019-03-17 13:19 - 2017-02-17 13:21 - 000037376 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\cint.dll
2019-03-17 13:19 - 2016-04-14 13:46 - 001036800 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\TmCommon.dll
2019-03-17 13:19 - 2018-02-15 16:23 - 000190976 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\TmHidControl.dll
2017-09-05 19:46 - 2017-09-05 19:46 - 002146304 _____ (Holtek Semiconductor Inc.) [File not signed] C:\Program Files\SteelSeries\SteelSeries Engine 3\HIDDLL.dll
2017-09-05 19:46 - 2017-09-05 19:46 - 002284032 _____ (Holtek) [File not signed] C:\Program Files\SteelSeries\SteelSeries Engine 3\ISPDLL.dll
2019-04-17 22:31 - 2019-02-21 17:00 - 000078336 _____ (Igor Pavlov) [File not signed] D:\Program Files\7-Zip\7-zip.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\rdnev\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [130]
AlternateDataStreams: C:\Users\rdnev\Desktop\VID_20190527_105307.mp4:com.dropbox.attributes [168]
AlternateDataStreams: C:\Users\rdnev\Desktop\VID_20190527_105307.mp4:com.dropbox.attrs [58]
AlternateDataStreams: C:\Users\rdnev\Desktop\VID_20190602_155933.mp4:com.dropbox.attributes [168]
AlternateDataStreams: C:\Users\rdnev\Desktop\VID_20190602_155933.mp4:com.dropbox.attrs [58]
AlternateDataStreams: C:\Users\rdnev\AppData\Local\Temp:$DATA [16]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\amdrv.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\amdrv.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\sharepoint.com -> hxxps://novabase-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-09-15 08:31 - 2018-09-15 08:31 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Python38\Scripts\;C:\Python38\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\ProgramData\chocolatey\bin;C:\Program Files\nodejs\
HKU\S-1-5-21-3593454028-354382374-75827813-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "BrStsMon00"
HKLM\...\StartupApproved\Run32: => "ControlCenter3"
HKLM\...\StartupApproved\Run32: => "TeamsMachineInstaller"
HKU\S-1-5-21-3593454028-354382374-75827813-1001\...\StartupApproved\Run: => "CreativeTaskScheduler"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{019C9438-591E-4D24-AC8C-416DB3D25A38}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{3F1B0C27-C6DA-421C-B656-190A9DD7AA94}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B3E177E2-686E-4A99-9F3C-4F04992148A7}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{71A70F58-3AEB-4AA8-A696-4C1A3E87E109}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{7DC894A1-7E94-4671-812F-BF3BCC2FB87E}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{08722FA4-738D-4B45-BD8D-07F228521989}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{8FD383F7-D4B3-4444-BD7A-E37F02A4BA05}] => (Allow) D:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{50437E47-252D-49C5-B07A-C59D4C1D4891}] => (Allow) D:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{3FDC5DFA-ACA4-4155-8588-83A87A2E1DFF}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CA2442B2-BA33-467A-95F6-574456DD2B96}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7D6639CE-4A5B-4960-9904-AF25FC6B60DE}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{96DE0462-2476-4325-BD22-C870C51EA722}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{457AE331-0E29-4A20-8F04-181D54F9B93B}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe (Digital Extremes Ltd. -> Digital Extremes)
FirewallRules: [{666E6C20-4B38-492D-9E5D-DC18FE25C8F9}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes)
FirewallRules: [{52C75D47-D8FD-47DC-A94F-39F2E6438C76}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe (Digital Extremes Ltd. -> Digital Extremes)
FirewallRules: [{4A9022FF-2A07-4434-A07F-C2D40CEF2881}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes)
FirewallRules: [{55E2596E-C0DA-45F8-BE3A-B829D95DDF3F}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe (Digital Extremes Ltd. -> Digital Extremes)
FirewallRules: [{7AB26703-DAE2-46E4-89A5-75006CF364DD}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe (Digital Extremes Ltd. -> )
FirewallRules: [{C4ABEE61-8E61-4DF8-9C1F-5F20E9B2546E}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe (Digital Extremes Ltd. -> Digital Extremes)
FirewallRules: [{C5F0F695-7237-4037-B8FB-732A9F6E6C5E}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes)
FirewallRules: [{7B726C6D-40D2-4516-9C04-D2A9BB237F7D}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe (Digital Extremes Ltd. -> Digital Extremes)
FirewallRules: [{12281474-9B6E-4BDD-B226-EAEDD5082305}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes)
FirewallRules: [{CC65C8BE-CF04-49E4-8F85-29486624BBEF}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe (Digital Extremes Ltd. -> Digital Extremes)
FirewallRules: [{D04342B8-0537-43C3-84B4-4FF1C9C8BDC2}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe (Digital Extremes Ltd. -> )
FirewallRules: [{99F0FDCE-9E86-4A1F-9E52-87A0A1539E90}] => (Allow) D:\Program Files\Nox\bin\Nox.exe No File
FirewallRules: [{6230A450-4F5B-49E9-80FE-0F5358AB40A8}] => (Allow) C:\Program Files (x86)\\Bignox\\BigNoxVM\\RT\NoxVMHandle.exe No File
FirewallRules: [{30B7334B-CAE2-4FA3-ABB0-BB037D527018}] => (Allow) d:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's The Division 2\TheDivision2.exe (Ubisoft Entertainment Sweden AB -> Ubisoft)
FirewallRules: [{F5A86EB2-1611-46A6-8FAF-D3ECC3451CF0}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F7CA0942-329B-4BA9-9994-A7E44C70517F}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2C76A62D-12AF-4765-BE65-23B7ECFA8B2C}] => (Allow) LPort=54925
FirewallRules: [{817D52F7-EDE0-409E-823F-30A25C70D721}] => (Allow) D:\Program Files (x86)\Origin Games\Anthem\AnthemTrial.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{9DD62ABD-86C3-45D4-8BD0-8C640978401B}] => (Allow) D:\Program Files (x86)\Origin Games\Anthem\AnthemTrial.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{54EEC4C9-FEB3-4B7D-BB34-2B9BF1A62C0D}] => (Allow) D:\Program Files (x86)\Origin Games\Anthem\Anthem.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{C0C193DD-73D1-48C9-943B-B846ADB63142}] => (Allow) D:\Program Files (x86)\Origin Games\Anthem\Anthem.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{EE590B0A-C942-4DF8-9AFB-B1DA4F496085}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Destiny 2\destiny2.exe (Bungie Inc. -> Bungie)
FirewallRules: [{67CB1C63-BD63-489F-936D-87C09F09753D}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Destiny 2\destiny2.exe (Bungie Inc. -> Bungie)
FirewallRules: [{8A3846F0-F4DE-471C-B273-8896CEDAA51D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{79DF2EA2-5960-43A7-AB98-6358CE8E5B4B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{9DBE3AD0-4736-43EA-9AEC-F9995A2F9A75}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{2D0C2495-0F5E-4EF2-BD36-CD11C091C2A9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{543452D2-890B-4CC8-B721-920F45519654}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7F8FBD73-603D-4BB7-BA1D-386164007215}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{DB22A41F-201D-4B19-9064-01055A3E69CD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D528801A-1FAC-48D0-9777-E303F50CD40C}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox_BE.exe (FUNCOM OSLO AS -> BattlEye Innovations)
FirewallRules: [{3629ED4C-5E38-40EB-A7B7-D3A673EAF53D}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox_BE.exe (FUNCOM OSLO AS -> BattlEye Innovations)
FirewallRules: [{AA8FE65C-8A23-4F42-9C00-E28AA366214F}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox.exe (FUNCOM OSLO AS -> Funcom Oslo AS)
FirewallRules: [{ABD62CFE-0806-42D8-904E-B07A6459FFB4}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox.exe (FUNCOM OSLO AS -> Funcom Oslo AS)
FirewallRules: [{B90A26D4-A402-41FA-9E99-5A19043F411A}] => (Allow) D:\Battlestate Games\BsgLauncher\BsgLauncher.exe (Battlestate Games Ltd -> Battlestate Games)
FirewallRules: [{21C37815-9147-484D-BEFE-5C8216B0B91E}] => (Allow) D:\Battlestate Games\BsgLauncher\BsgLauncher.exe (Battlestate Games Ltd -> Battlestate Games)
FirewallRules: [{54FB5FC0-A3FB-42DA-95B5-184F79C3BC61}] => (Allow) D:\Program Files\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe (YAGER Development GmbH -> YAGER Development GmbH)
FirewallRules: [{3B35FB5B-3BCB-423D-BE7E-AF2A3B0326D6}] => (Allow) D:\Program Files\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe (YAGER Development GmbH -> YAGER Development GmbH)
FirewallRules: [{D9075DF4-B43F-4218-B22D-9DD5BB9D18A8}] => (Allow) D:\Program Files\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe (YAGER Development GmbH -> YAGER Development GmbH)
FirewallRules: [{07E71AF4-3C8C-448C-B2BF-04CC439097C3}] => (Allow) D:\Program Files\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe (YAGER Development GmbH -> YAGER Development GmbH)
FirewallRules: [{E1A41875-9686-4F12-9EF1-E9282F1F4970}] => (Allow) D:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{61D9D3C9-9A06-4706-B0E9-E78AA7F68FC9}] => (Allow) D:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C62D6A26-4F8A-49F3-8CDE-F2FC9158F71A}] => (Allow) D:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{19BBA2EF-EE2D-4E17-95B9-CCD0ADB3A485}] => (Allow) D:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C0CA5D75-15FB-43CA-976F-6A039C02E100}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{98CBDC11-3829-4EF3-A7A5-E0C1DEF9E60D}] => (Allow) D:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{4C62484F-18FA-4A42-9302-71919ADB97DC}] => (Allow) D:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{AC7E68A3-4AA0-4B1B-8F5F-54DD4A233BBA}] => (Allow) D:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{56168646-190F-4852-B9EC-928BC2DA1A70}] => (Allow) D:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{FF822D2A-5D0F-4068-A685-D766D6C331D8}] => (Allow) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{039DB634-A3E5-4976-927B-66582D077DEC}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)

==================== Restore Points =========================

25-03-2020 19:52:33 Scheduled Checkpoint
01-04-2020 09:10:36 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (04/03/2020 11:54:57 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: OriginWebHelperService.exe, version: 10.5.56.33908, time stamp: 0x5dd474e2
Faulting module name: OriginWebHelperService.exe, version: 10.5.56.33908, time stamp: 0x5dd474e2
Exception code: 0xc0000005
Fault offset: 0x00098210
Faulting process id: 0x16b0
Faulting application start time: 0x01d609a64d15b44c
Faulting application path: D:\Program Files (x86)\Origin\OriginWebHelperService.exe
Faulting module path: D:\Program Files (x86)\Origin\OriginWebHelperService.exe
Report Id: 23dec7fa-1551-483c-98ed-42482d33e1f5
Faulting package full name:
Faulting package-relative application ID:

Error: (04/03/2020 11:49:45 AM) (Source: W3SVC-WP) (EventID: 2297) (User: )
Description: The worker process for application pool 'DefaultAppPool' encountered an error 'Cannot read configuration file
' trying to read global module configuration data from file '\\?\C:\inetpub\temp\apppools\DefaultAppPool\DefaultAppPool.config', line number '0'. Worker process startup aborted.

Error: (04/03/2020 11:49:45 AM) (Source: W3SVC-WP) (EventID: 2307) (User: )
Description: The worker process for application pool 'DefaultAppPool' encountered an error 'Cannot read configuration file
' trying to read configuration data from file '\\?\C:\inetpub\temp\apppools\DefaultAppPool\DefaultAppPool.config', line number '0'. The data field contains the error code.

Error: (04/02/2020 09:49:33 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program explorer.exe version 10.0.17763.1075 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 3ac0

Start Time: 01d608cb3a1d4b28

Termination Time: 0

Application Path: C:\Windows\explorer.exe

Report Id: ec4b7643-8508-477f-a6f7-6767d2326c75

Faulting package full name:

Faulting package-relative application ID:

Hang type: Cross-process

Error: (04/02/2020 01:52:30 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: OriginWebHelperService.exe, version: 10.5.56.33908, time stamp: 0x5dd474e2
Faulting module name: OriginWebHelperService.exe, version: 10.5.56.33908, time stamp: 0x5dd474e2
Exception code: 0xc0000005
Fault offset: 0x00098210
Faulting process id: 0x1824
Faulting application start time: 0x01d60888f7e9301b
Faulting application path: D:\Program Files (x86)\Origin\OriginWebHelperService.exe
Faulting module path: D:\Program Files (x86)\Origin\OriginWebHelperService.exe
Report Id: 34dd6975-3354-4f4c-a214-bffc45fc2996
Faulting package full name:
Faulting package-relative application ID:

Error: (04/02/2020 01:39:55 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.

Error: (04/01/2020 09:03:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: OriginWebHelperService.exe, version: 10.5.56.33908, time stamp: 0x5dd474e2
Faulting module name: OriginWebHelperService.exe, version: 10.5.56.33908, time stamp: 0x5dd474e2
Exception code: 0xc0000005
Fault offset: 0x00098210
Faulting process id: 0x1788
Faulting application start time: 0x01d608609732bae3
Faulting application path: D:\Program Files (x86)\Origin\OriginWebHelperService.exe
Faulting module path: D:\Program Files (x86)\Origin\OriginWebHelperService.exe
Report Id: dcded48c-3bd9-4346-855b-2b113a6d9385
Faulting package full name:
Faulting package-relative application ID:

Error: (04/01/2020 05:16:59 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program explorer.exe version 10.0.17763.1075 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 41f4

Start Time: 01d60816458f77d3

Termination Time: 0

Application Path: C:\Windows\explorer.exe

Report Id: e353f051-813b-40b8-9543-08c9f056e4f2

Faulting package full name:

Faulting package-relative application ID:

Hang type: Cross-process
 
System errors:
=============
Error: (04/03/2020 11:58:00 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-JQVGJJT)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
and APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
to the user DESKTOP-JQVGJJT\rdnev SID (S-1-5-21-3593454028-354382374-75827813-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (04/03/2020 11:56:58 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
Windows.SecurityCenter.SecurityAppBroker
and APPID
Unavailable
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (04/03/2020 11:56:58 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
Windows.SecurityCenter.WscBrokerManager
and APPID
Unavailable
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (04/03/2020 11:56:26 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-JQVGJJT)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
and APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
to the user DESKTOP-JQVGJJT\rdnev SID (S-1-5-21-3593454028-354382374-75827813-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (04/03/2020 11:55:53 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-JQVGJJT)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
Windows.SecurityCenter.WscCloudBackupProvider
and APPID
Unavailable
to the user DESKTOP-JQVGJJT\rdnev SID (S-1-5-21-3593454028-354382374-75827813-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (04/03/2020 11:55:53 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-JQVGJJT)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
Windows.SecurityCenter.WscCloudBackupProvider
and APPID
Unavailable
to the user DESKTOP-JQVGJJT\rdnev SID (S-1-5-21-3593454028-354382374-75827813-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (04/03/2020 11:55:33 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (04/03/2020 11:55:33 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.


Windows Defender:
===================================
Date: 2019-11-15 21:17:24.871
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {96DBBF5D-76B1-41D1-9034-48146C55A25F}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-11-15 20:58:36.614
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {060C5A99-4F63-400D-9C05-56D52AFAC4B1}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-11-15 20:58:25.164
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {92F8D967-2217-4CB1-A954-BE83C76C5699}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-11-13 22:15:52.645
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {E9F781B5-9352-4B5A-AA0F-577A64561D5A}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2019-11-13 22:11:25.658
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {54D7B64F-BDAE-46AC-85A9-12875891EC31}
Scan Type: Antimalware
Scan Parameters: Quick Scan

CodeIntegrity:
===================================

Date: 2020-04-01 21:05:35.672
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-01 21:05:35.664
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-01 21:05:35.654
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-01 21:05:35.646
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-01 21:05:35.630
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-01 21:05:35.620
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-01 21:05:35.606
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-01 21:05:35.600
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: American Megatrends Inc. E1785IMS.117 07/14/2017
Motherboard: Micro-Star International Co., Ltd. MS-1785
Processor: Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz
Percentage of memory in use: 27%
Total physical RAM: 16339.77 MB
Available physical RAM: 11859.64 MB
Total Virtual: 17363.77 MB
Available Virtual: 11287.1 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.87 GB) (Free:77.36 GB) NTFS
Drive d: (FREEDOS) (Fixed) (Total:921.52 GB) (Free:303.66 GB) NTFS
Drive e: (DriverCD) (Fixed) (Total:10 GB) (Free:5.89 GB) NTFS

\\?\Volume{f5155845-526f-472b-8a62-1d68918566cd}\ (Recovery) (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS
\\?\Volume{4b93927a-217d-4394-aab9-ce39657ddc67}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 8767BE27)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 326A535E)
Partition 1: (Active) - (Size=921.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=10 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================
 
Your logs are clean.
This is what I suggest...

Reset Chrome...
Click on "Customize and control Google Chrome":
p22003758.gif

Click "Settings" then "Show advanced settings" at the bottom of the screen.
Click "Reset browser settings" button.
Restart Chrome.

If the above didn't help....

Reinstall Chrome...
If you want to save your bookmarks...
How to Backup Bookmarks in Google Chrome
If you want to save your passwords as well see here: http://www.intowindows.com/how-to-backup-saved-passwords-in-google-chrome-browser/
  • Close all Chrome windows and tabs.
  • Go to the Start menu > Control Panel. (Windows 8 users: Learn how to access the Control Panel)
  • Click Programs and Features.
  • Double-click Google Chrome.
  • Click Uninstall from the confirmation dialog. Delete your user profile information, like your browser preferences, bookmarks, and history, by selecting the "Also delete your browsing data" checkbox.
Install fresh copy.
 
Back