|
Mülltonne: Schadsoftware von audacity.de runtergeladen und ausgeführtWindows 7 Beiträge, die gegen unsere Regeln verstoßen haben, solche, die die Welt nicht braucht oder sonstiger Müll landet hier in der Mülltonne... |
21.07.2020, 02:12 | #1 |
| Schadsoftware von audacity.de runtergeladen und ausgeführt Guten Abend, ich habe mir heute ausversehen das falsche Audacity runtergeladen und diese executable auch ausgeführt. Ich war etwas stutzig jedoch hatte mir Norton nichts ungewöhnliches gemeldet und bei Norton Insight war auch alles grün. Es kam ein Fenster mit dem Titel "extracting" und es wurde dann irgendwas extrahiert. So wie es aussieht wurde die audacity.exe nach "C:\Users\Max\AppData\Local\Temp\Rar$DRa34012.47648" extrahiert. Nach dem mir aufgefallen ist, dass dies das falsche Setup ist, habe ich es noch einmal in der Windows Sandbox ausgeführt. Dort kam wieder das Fenster mit "extracting" aber manchmal öffnete sich auch ein vermeindliches Installationsfenster und hat dann am Ende (Opera, etc.) installiert und auch gleich geöffnet. Dieses kam auf meinem richtigen Rechner nicht. Ich frage mich jetzt ob ich mir trotzdem etwas eingefangen haben könnte. Es wäre nett wenn jemand dort drübergucken könnte FRST.txt Teil 1 Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 19-07-2020 Ran by Max (administrator) on DESKTOP-1CJHL9G (ASUS All Series) (21-07-2020 01:42:07) Running from C:\Users\Max\Desktop Loaded Profiles: Max Platform: Windows 10 Pro Version 2004 19041.388 (X64) Language: English (United States) Default browser: "C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe" -- "%1" Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (6785719 Canada Inc -> Audacity Team) M:\Downloads\audacity.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc\AdobeNotificationClient.exe (AgileBits Inc. -> AgileBits Inc.) C:\Users\Max\AppData\Local\1Password\app\7\1Password.exe <3> (Autodesk, Inc. -> Autodesk Inc.) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe (Autodesk, Inc. -> Autodesk) C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\9.2.2.2501\AdskLicensingService\AdskLicensingService.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\Program Files (x86)\Battle.net\Battle.net.exe <4> (Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.7117\Agent.exe (Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe <44> (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.CpuIdRemote64.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.DisplayAdapter.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CueLLAccessService.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE.exe (Discord Inc. -> Discord Inc.) C:\Users\Max\AppData\Local\Discord\app-0.0.306\Discord.exe <6> (Docker Inc -> ) C:\Program Files\Docker\Docker\resources\com.docker.backend.exe (Docker Inc -> ) C:\Program Files\Docker\Docker\resources\com.docker.proxy.exe (Docker Inc -> ) C:\Program Files\Docker\Docker\resources\com.docker.wsl-distro-proxy.exe (Docker Inc -> ) C:\Program Files\Docker\Docker\resources\vpnkit.exe (Docker Inc -> ) C:\Program Files\Docker\Docker\resources\vpnkit-bridge.exe (Docker Inc -> ) C:\ProgramData\Docker\cli-plugins\docker-mutagen.exe (Docker Inc -> Docker Desktop) C:\Program Files\Docker\Docker\Docker Desktop.exe (Docker Inc -> Docker.Service) C:\Program Files\Docker\Docker\com.docker.service (Docker Inc -> GitHub, Inc.) C:\Program Files\Docker\Docker\frontend\Docker Desktop.exe <4> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <3> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\101.4.434\QtWebEngineProcess.exe <2> (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (Flexera Software LLC -> Flexera) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe (g10 Code GmbH -> The GnuPG Project) C:\Program Files (x86)\GnuPG\bin\gpg-agent.exe (GAINWARD TECHNOLOGY INT'L LIMITED -> Gainward Co. Ltd.) C:\Program Files\EXPERTool\TBPanel.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel Corporation\Intel(R) Turbo Boost Max Technology 3.0\ITBM.exe (Intel Corporation -> Intel Corporation) C:\Windows\SysWOW64\ITBMSvc.exe (Kenneth Skovhede -> ) C:\Program Files\Duplicati 2\Duplicati.WindowsService.exe <2> (Kenneth Skovhede -> Duplicati Team) C:\Program Files\Duplicati 2\Duplicati.Server.exe (Logiciel Lavasoft Canada Inc -> ) C:\Users\Max\AppData\Local\Temp\7zS84040D2B\GenericSetup.exe (Logiciel Lavasoft Canada Inc -> adaware) C:\Users\Max\AppData\Local\Temp\7zS84040D2B\installer.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3> (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerShell\7\pwsh.exe <2> (Microsoft Corporation -> Microsoft Corporation) C:\Users\Max\AppData\Local\Programs\Microsoft VS Code Insiders\Code - Insiders.exe <13> (Microsoft Corporation -> Microsoft Corporation) C:\Users\Max\AppData\Local\Programs\Microsoft VS Code Insiders\resources\app\out\vs\platform\files\node\watcher\win32\CodeHelper.exe <2> (Microsoft Corporation -> Microsoft Corporation) C:\Users\Max\AppData\Local\Temp\is-2114I.tmp\CodeSetup-insider-6c21258b65e4c9448323c930fabb1ac6b734c597.tmp (Microsoft Corporation -> Microsoft Corporation) C:\Users\Max\AppData\Local\Temp\vscode-update-user-x64\CodeSetup-insider-6c21258b65e4c9448323c930fabb1ac6b734c597.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12007.1001.2.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmproxyd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <4> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\lxss\wslhost.exe <5> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SndVol.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsSandbox.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsSandboxClient.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wsl.exe <4> (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\vmwp.exe <2> (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Developer Edition\firefox.exe <13> (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ccad5caddc3a3d35\Display.NvContainer\NVDisplay.Container.exe <2> (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (philandro Software GmbH -> philandro Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (PostgreSQL Global Development Group) [File not signed] C:\Program Files\PostgreSQL\12\bin\pg_ctl.exe (PostgreSQL Global Development Group) [File not signed] C:\Program Files\PostgreSQL\12\bin\postgres.exe <8> (Python Software Foundation -> Python Software Foundation) C:\Users\Max\AppData\Local\Programs\Python\Python38\pythonw.exe <2> (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files\EPSON Projector\Epson iProjection\EMP_MPENSV.exe (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe <6> (Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe <6> (Spotify AB -> Spotify Ltd) C:\Users\Max\AppData\Roaming\Spotify\Spotify.exe <5> (Symantec Corporation -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.20.4.57\NortonSecurity.exe <2> (Symantec Corporation -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.20.4.57\nsWscSvc.exe (Telegram FZ-LLC -> Telegram FZ-LLC) D:\Max\MyFiles\Programme\Telegram\Telegram.exe (Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology Corporation -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Technology Corporation -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology Corporation -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Technology Corporation -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (win.rar GmbH -> Alexander Roshal) C:\Program Files\WinRAR\WinRAR.exe <3> ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3325520 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [352712 2020-04-30] (Riot Games, Inc. -> Riot Games, Inc.) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [7657984 2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2042424 2020-03-16] (Adobe Inc. -> Adobe Inc.) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5007408 2019-07-31] (Adobe Inc. -> Adobe Systems Inc.) [File not signed] HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [665384 2019-12-05] (Autodesk, Inc. -> Autodesk, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [646160 2019-12-11] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [CORSAIR iCUE Software] => C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE Launcher.exe [410152 2020-06-30] (Corsair Memory, Inc. -> Corsair Memory, Inc.) HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [1Password] => C:\Users\Max\AppData\Local\1Password\app\7\1Password.exe [5799760 2020-07-07] (AgileBits Inc. -> AgileBits Inc.) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [Spotify] => C:\Users\Max\AppData\Roaming\Spotify\Spotify.exe [23330024 2020-07-10] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [TBPanel] => C:\Program Files\EXPERTool\TBPanel.exe [3200824 2019-10-01] (GAINWARD TECHNOLOGY INT'L LIMITED -> Gainward Co. Ltd.) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [104449672 2020-06-13] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Max\AppData\Local\Microsoft\Teams\Update.exe [1790704 2019-10-09] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [CCXProcess] => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [648328 2020-04-13] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [Discord] => C:\Users\Max\AppData\Local\Discord\app-0.0.306\Discord.exe [90950968 2020-02-24] (Discord Inc. -> Discord Inc.) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3377440 2020-07-11] (Valve -> Valve Corporation) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [6113328 2019-07-31] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91701608 2020-07-07] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Run: [Docker Desktop] => C:\Program Files\Docker\Docker\Docker Desktop.exe [1732776 2020-06-09] (Docker Inc -> Docker Desktop) HKU\S-1-5-21-159775396-41617272-500321057-1001\...\RunOnce: [Application Restart #3] => C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe [2120872 2020-07-15] (Brave Software, Inc. -> Brave Software, Inc.) HKLM\...\Windows x64\Print Processors\hpzppw72: C:\Windows\System32\spool\prtprocs\x64\hpzppw72.dll [266336 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [65096 2019-07-31] (Adobe Systems, Incorporated -> Adobe Systems Inc) HKLM\...\Print\Monitors\PCL hpz3lw72: C:\Windows\system32\hpz3lw72.dll [55392 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{401C381F-E0DE-4B85-8BD8-4F3F14FBDA57}] -> C:\Program Files (x86)\Microsoft\Edge Dev\Application\85.0.564.8\Installer\setup.exe [2020-07-15] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\84.1.11.97\Installer\chrmstp.exe [2020-07-16] (Brave Software, Inc.) [File not signed] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2020-07-17] ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Duplicati 2.lnk [2020-05-10] ShortcutTarget: Duplicati 2.lnk -> C:\Program Files\Duplicati 2\Duplicati.GUI.TrayIcon.exe (Kenneth Skovhede -> Duplicati Team) GroupPolicy: Restriction ? <==== ATTENTION GroupPolicy\User: Restriction ? <==== ATTENTION ==================== Scheduled Tasks (Whitelisted) ============ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {021DBD5A-09DA-4067-8E65-809D060744D7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6063024 2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Task: {031A677A-5C49-4FF0-8ACB-8D39FE193AEE} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1B52943A-DE5C-48C6-8640-74458EC5086C} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation) Task: {227AC391-AA45-42BD-9B72-2B2DA3E62163} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2019-10-09] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {2F2DB3AE-7C13-45CB-9519-5F9398D25392} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-10-08] (Dropbox, Inc -> Dropbox, Inc.) Task: {4D2E7B76-665C-4869-89B1-1E8727D7C98C} - System32\Tasks\MATLAB R2019b Startup Accelerator => C:\Program Files\MATLAB\R2019b\bin\win64\MATLABStartupAccelerator.exe [53248 2019-07-19] () [File not signed] Task: {4DB0DA62-19E4-4D0E-A736-104EBA744C00} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [2571704 2020-02-14] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) Task: {4E36A15D-9B13-4839-845A-2A8DB6850A9A} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4EE23CB9-5A30-4485-87AD-AC3B4CD3E1DC} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [127176 2020-05-20] (Mozilla Corporation -> Mozilla Foundation) Task: {4EEAA8C5-9A3A-487E-9179-E8020A580B9A} - System32\Tasks\EXPERTool => C:\Program Files\EXPERTool\TBPanel.exe [3200824 2019-10-01] (GAINWARD TECHNOLOGY INT'L LIMITED -> Gainward Co. Ltd.) Task: {7B29C8FD-D90B-4461-BE84-EEDEF83C098C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23810952 2020-06-23] (Microsoft Corporation -> Microsoft Corporation) Task: {7BD6E730-692E-4E2E-B5FC-BF27BD6D803B} - System32\Tasks\Intel(R) Turbo Boost Max 3.0 Technology Application Launcher => C:\Program Files (x86)\Intel Corporation\Intel(R) Turbo Boost Max Technology 3.0\ITBM.EXE [3292176 2018-01-05] (Intel Corporation -> Intel Corporation) Task: {80DABE2A-750A-4BF3-8360-4B8F10B6EAEC} - System32\Tasks\Norton Security with Backup\Norton Security Error Processor => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe [117056 2020-06-03] (Symantec Corporation -> Symantec Corporation) Task: {9600612B-D390-42F3-9441-1F34C2E1BD03} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation) Task: {998F227E-6A1E-4F64-A3D6-750E18389B07} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [862 2019-04-30] () [File not signed] Task: {9BFE4C04-D56A-4DF5-8834-B56E19EB73DB} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3325520 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {A9B6DEA6-5E7F-410C-BEEE-2D97A43107D9} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-10-08] (Dropbox, Inc -> Dropbox, Inc.) Task: {AC5401C4-0EFC-446A-BDF6-6BF59750BAAB} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton Security\Upgrade.exe [2162728 2020-06-03] (Symantec Corporation -> Symantec Corporation) Task: {B04EF910-A349-4B74-A007-15E1A5E85A88} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [65448 2020-05-24] (Microsoft Corporation -> Microsoft) Task: {B5A1EB72-4C36-4146-8EAE-C0981BB5630B} - System32\Tasks\Norton Security with Backup\Norton Security Autofix => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe [117056 2020-06-03] (Symantec Corporation -> Symantec Corporation) Task: {BA3F3C81-EAF8-4EA4-B4EE-552E64BC84B2} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BA4BAEB5-AFF3-4DF2-A4FA-0EA43AABB727} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [170848 2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Task: {BDA12F17-A7AC-43EC-B3B0-BA8EB8DB2B1E} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3293168 2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C8A4631E-1091-4D29-961B-7762A7591BA8} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation) Task: {CB9DD5FD-EED4-431A-B390-B733803F6CFC} - System32\Tasks\Norton Security with Backup\Norton Security Error Analyzer => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe [117056 2020-06-03] (Symantec Corporation -> Symantec Corporation) Task: {CC7EAEF0-1E3A-4D15-8EC2-DF6639811593} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [170848 2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Task: {CF998F69-82A4-481A-A5A6-FE81D307A3BD} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\Engine\22.20.4.57\WSCStub.exe [644472 2020-06-03] (Symantec Corporation -> Symantec Corporation) Task: {D0F19747-0EF1-4E6C-B9B4-5CB5172CDD29} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation) Task: {DE9878BD-BF4A-470B-962C-94DF961B48D4} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1850776 2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Task: {E01E0573-DA65-4D6A-BE45-471519B64EC9} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E551F77B-3692-4D8E-8561-5D5CAAF96FBC} - System32\Tasks\Max\Backup\HistoryArchive => C:\Program Files\PowerShell\7\pwsh.exe [312200 2020-05-13] (Microsoft Corporation -> Microsoft Corporation) Task: {E86414B3-D637-4B2B-BEC5-CDCC68B88482} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6063024 2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Task: {EB568655-082A-4670-A1D9-60B63EAFC76E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1331792 2020-05-07] (Adobe Inc. -> Adobe Inc.) Task: {EC3A5A76-F0D2-4B32-B5FE-8B325EF6012F} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation) Task: {F3BC5B3F-6F6D-47E5-B30C-DF01318A2F32} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23810952 2020-06-23] (Microsoft Corporation -> Microsoft Corporation) Task: {F5A8DD03-9440-44D2-877F-26215A225B5C} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2019-10-09] (Brave Software, Inc. -> BraveSoftware Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\MATLAB R2019b Startup Accelerator.job => C:\Program Files\MATLAB\R2019b\bin\win64\MATLABStartupAccelerator.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{4D98B99F-D774-4DBB-B4BE-67CA35CF81F3}: [DhcpNameServer] 130.149.7.7 192.129.31.50 Tcpip\..\Interfaces\{bb8453f5-bc14-4343-9042-a1fd97014d44}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{f078892d-cde0-4ab6-b85f-a6fd25ce915d}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) BHO: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Security\Engine\22.20.4.57\coIEPlg.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_241\bin\ssv.dll [2020-02-06] (Oracle America, Inc. -> Oracle Corporation) BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-07-31] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_241\bin\jp2ssv.dll [2020-02-06] (Oracle America, Inc. -> Oracle Corporation) BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-07-31] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Security\Engine32\22.20.4.57\coIEPlg.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\ssv.dll [2020-02-06] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-07-31] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\jp2ssv.dll [2020-02-06] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-07-31] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine\22.20.4.57\coIEPlg.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-07-31] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine32\22.20.4.57\coIEPlg.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-07-31] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-07-12] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF DefaultProfile: jhdoxfzu.default FF ProfilePath: C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\prpatu2i.dev-edition-default [2020-07-21] FF Extension: (1Password extension (desktop app required)) - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\prpatu2i.dev-edition-default\Extensions\onepassword4@agilebits.com.xpi [2020-02-22] [UpdateUrl:hxxps://cdn.agilebits.com/dist/1P/ext/autoupdate_firefox4.json] FF Extension: (Vue.js devtools) - C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\prpatu2i.dev-edition-default\Extensions\{5caff8cc-3d2e-4110-a88a-003cc85b3858}.xpi [2020-02-23] FF ProfilePath: C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\jhdoxfzu.default [2019-12-12] FF ProfilePath: C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\2s85e69a.default-release [2020-05-24] FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2019-07-31] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Plugin: @java.com/DTPlugin,version=11.241.2 -> C:\Program Files\Java\jre1.8.0_241\bin\dtplugin\npDeployJava1.dll [2020-02-06] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.241.2 -> C:\Program Files\Java\jre1.8.0_241\bin\plugin2\npjp2.dll [2020-02-06] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2020-03-16] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @java.com/DTPlugin,version=11.241.2 -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\dtplugin\npDeployJava1.dll [2020-02-06] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.241.2 -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\plugin2\npjp2.dll [2020-02-06] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-12-07] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-10-09] (Brave Software, Inc. -> BraveSoftware Inc.) FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-10-09] (Brave Software, Inc. -> BraveSoftware Inc.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2019-07-31] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2020-03-16] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: Web Components -> C:\Program Files (x86)\Web Components\npWebVideoPlugin.dll [2017-07-01] () [File not signed] FF Plugin HKU\S-1-5-21-159775396-41617272-500321057-1001: lsjt.com/LsNetClientCtl -> C:\Program Files (x86)\HsWebPlugin\npLsNetClientCtl.dll [2018-01-18] (HEROSPEED TECHNOLOGY LIMITED -> ) StartMenuInternet: Firefox-CA9422711AE1A81C - C:\Program Files\Firefox Developer Edition\firefox.exe Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1047416 2019-12-05] (Autodesk, Inc. -> Autodesk Inc.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [820280 2020-03-16] (Adobe Inc. -> Adobe Inc.) R2 AdskLicensingService; C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe [16926864 2019-08-08] (Autodesk, Inc. -> Autodesk) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3673680 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3406416 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3667408 2020-07-17] (philandro Software GmbH -> philandro Software GmbH) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8628224 2020-06-14] (BattlEye Innovations e.K. -> ) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2019-10-09] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2019-10-09] (Brave Software, Inc. -> BraveSoftware Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [10574728 2020-06-23] (Microsoft Corporation -> Microsoft Corporation) R2 com.docker.service; C:\Program Files\Docker\Docker\com.docker.service [17096 2020-06-09] (Docker Inc -> Docker.Service) R2 CorsairLLAService; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CueLLAccessService.exe [421928 2020-06-30] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R2 CorsairService; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe [56872 2020-06-30] (Corsair Memory, Inc. -> Corsair Memory, Inc.) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-10-08] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-10-08] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44552 2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) R2 Duplicati; C:\Program Files\Duplicati 2\Duplicati.WindowsService.exe [26576 2020-01-18] (Kenneth Skovhede -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [610464 2019-09-28] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 EMP_MPENSV; C:\Program Files\EPSON Projector\Epson iProjection\EMP_MPENSV.exe [243712 2018-02-28] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) R2 ITBMService; C:\WINDOWS\SysWOW64\ITBMSvc.exe [48656 2018-01-05] (Intel Corporation -> Intel Corporation) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11056776 2020-06-13] (Logitech Inc -> Logitech, Inc.) S3 MicrosoftEdgeDevElevationService; C:\Program Files (x86)\Microsoft\Edge Dev\Application\85.0.564.8\elevation_service.exe [1536920 2020-07-15] (Microsoft Corporation -> Microsoft Corporation) R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.20.4.57\NortonSecurity.exe [344760 2020-06-03] (Symantec Corporation -> Symantec Corporation) R2 nsWscSvc; C:\Program Files\Norton Security\Engine\22.20.4.57\nsWscSvc.exe [1055960 2020-06-03] (Symantec Corporation -> Symantec Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2474800 2020-01-23] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3394864 2020-01-23] (Electronic Arts, Inc. -> Electronic Arts) R2 postgresql-x64-12; C:\Program Files\PostgreSQL\12\bin\pg_ctl.exe [116224 2019-12-13] (PostgreSQL Global Development Group) [File not signed] S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1705088 2020-05-12] (Rockstar Games, Inc. -> Rockstar Games) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4956856 2020-07-05] (Microsoft Windows Publisher -> Microsoft Corporation) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [9826856 2020-04-30] (Riot Games, Inc. -> Riot Games, Inc.) S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [2145656 2020-04-10] (Wacom Technology Corporation -> Wacom Co. Ltd.) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ccad5caddc3a3d35\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ccad5caddc3a3d35\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R1 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.19.8.65\Definitions\BASHDefs\20200714.001\BHDrvx64.sys [1952136 2019-10-07] (Symantec Corporation -> Symantec Corporation) R1 ccSet_NGC; C:\WINDOWS\System32\drivers\NGCx64\1614040.039\ccSetx64.sys [192376 2020-06-03] (Symantec Corporation -> Symantec Corporation) R2 CorsairLLAccess3B84E98236B28D4E075D5737DF9F567A1FB76E8A; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys [21752 2020-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [45968 2019-07-11] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [21904 2019-07-11] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [516784 2019-10-09] (Symantec Corporation -> Symantec Corporation) R3 empvhid; C:\WINDOWS\System32\drivers\EMP_VHID.sys [29688 2018-02-28] (DriverTest -> Windows (R) Win 7 DDK provider) R3 EPPVADMP_simple; C:\WINDOWS\system32\drivers\EMP_MPAU.sys [23040 2018-02-28] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [154288 2020-02-17] (Symantec Corporation -> Symantec Corporation) S3 hnswfpdriver; C:\WINDOWS\System32\drivers\hnswfpdriver.sys [21304 2019-12-07] (Microsoft Windows -> Microsoft Corporation) R1 IDSVia64; C:\Program Files\Norton Security\NortonData\22.19.8.65\Definitions\IPSDefs\20200717.061\IDSvia64.sys [1451016 2020-04-07] (Symantec Corporation -> Symantec Corporation) R3 IntelTurboBoostMax; C:\WINDOWS\system32\DRIVERS\IntelNit.sys [133984 2018-01-05] (Intel Corporation -> Intel Corporation) R2 LGHUBTemperatureService; C:\ProgramData\LGHUB\depots\57944\driver_cpu_temperature\logi_core_temp.sys [25448 2020-06-13] (Logitech Inc. -> Logitech) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [38136 2019-11-07] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [26672 2020-05-21] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66808 2019-11-07] (Logitech Inc -> Logitech) S3 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [69744 2019-12-17] (Insecure.Com LLC -> Insecure.Com LLC.) R3 SIUSBXP; C:\WINDOWS\system32\drivers\SiUSBXp.sys [19456 2019-08-13] (Microsoft Windows Hardware Compatibility Publisher -> Silicon Laboratories) R3 SRTSP; C:\WINDOWS\System32\drivers\NGCx64\1614040.039\SRTSP64.SYS [889648 2020-06-03] (Symantec Corporation -> Symantec Corporation) R1 SRTSPX; C:\WINDOWS\System32\drivers\NGCx64\1614040.039\SRTSPX64.SYS [50864 2020-06-03] (Symantec Corporation -> Symantec Corporation) R0 SymEFASI; C:\WINDOWS\System32\drivers\NGCx64\1614040.039\SYMEFASI64.SYS [1964552 2020-06-03] (Symantec Corporation -> Symantec Corporation) S0 SymELAM; C:\WINDOWS\System32\drivers\NGCx64\1614040.039\SymELAM.sys [25024 2020-06-03] (Microsoft Windows Early Launch Anti-Malware Publisher -> Broadcom Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [99848 2019-10-08] (Symantec Corporation -> Symantec Corporation) R3 SymEvnt; C:\Program Files\Norton Security\NortonData\22.19.8.65\SymPlatform\SymEvnt.sys [712368 2020-01-19] (Symantec Corporation -> Symantec Corporation) R1 SymIRON; C:\WINDOWS\System32\drivers\NGCx64\1614040.039\Ironx64.SYS [316656 2020-06-03] (Symantec Corporation -> Symantec Corporation) R1 SymNetS; C:\WINDOWS\System32\drivers\NGCx64\1614040.039\symnets.sys [575280 2020-06-03] (Symantec Corporation -> Symantec Corporation) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [3344328 2020-04-30] (Riot Games, Inc. -> Riot Games, Inc.) S3 vkrnlintvsc; C:\WINDOWS\System32\drivers\vkrnlintvsc.sys [41488 2019-12-07] (Microsoft Windows -> Microsoft Corporation) R3 vkrnlintvsp; C:\WINDOWS\System32\drivers\vkrnlintvsp.sys [44344 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WacHidRouterPro; C:\WINDOWS\System32\drivers\wachidrouter.sys [125776 2020-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Wacom Technology, Corp.) S3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [26448 2020-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Wacom Technology, Corp.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 wpCtrlDrv_NGC; C:\WINDOWS\System32\drivers\NGCx64\1614040.039\wpCtrlDrv.sys [1013656 2020-06-03] (Symantec Corporation -> Symantec Corporation) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) =================== (If an entry is included in the fixlist, the file/folder will be moved.) 2020-07-21 01:42 - 2020-07-21 01:43 - 000047730 _____ C:\Users\Max\Desktop\FRST.txt 2020-07-21 01:41 - 2020-07-21 01:39 - 002293760 _____ (Farbar) C:\Users\Max\Desktop\FRST64.exe 2020-07-21 01:40 - 2020-07-21 01:43 - 000000000 ____D C:\FRST 2020-07-20 23:55 - 2020-07-20 23:55 - 000000000 ____D C:\WINDOWS\system32\Tasks\Remediation 2020-07-20 23:27 - 2020-07-20 23:27 - 000000000 ____D C:\Users\Max\AppData\Roaming\yWorks 2020-07-20 11:52 - 2020-07-20 11:52 - 000003340 _____ C:\WINDOWS\system32\Tasks\Intel(R) Turbo Boost Max 3.0 Technology Application Launcher 2020-07-19 01:34 - 2020-07-19 20:16 - 000000000 ____D C:\Users\Max\AppData\Roaming\LosslessCut 2020-07-18 19:32 - 2020-07-18 19:32 - 000000000 ____D C:\Users\Max\.proxy 2020-07-17 20:39 - 2020-07-20 02:04 - 000000000 ____D C:\Program Files (x86)\AnyDesk 2020-07-17 20:39 - 2020-07-17 20:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnyDesk 2020-07-17 17:02 - 2020-07-17 17:07 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeX Live 2020 2020-07-17 13:29 - 2020-07-17 13:29 - 026271744 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 024264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 023433216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 019868672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 018766336 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 018068992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 014754816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 010922808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 010336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 009034752 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 008892600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 008188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 007964416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 007593544 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 007593472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 007534160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 007070208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 006920192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 006404608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 006356008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 006060544 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 006029312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 005964496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 005821952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 005337504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 004783328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 004734976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 004629328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 003925856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 003906048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 003860480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 003812304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 003810816 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2020-07-17 13:29 - 2020-07-17 13:29 - 003778560 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 003752448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 003547280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002963456 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2020-07-17 13:29 - 2020-07-17 13:29 - 002918216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002744320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2020-07-17 13:29 - 2020-07-17 13:29 - 002631168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002585912 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002568192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002520048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002486088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmswitch.sys 2020-07-17 13:29 - 2020-07-17 13:29 - 002399744 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002338304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002286128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002245632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002177528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002104320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002077696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 002026496 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001978656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001956016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001952392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001876480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001858560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001784488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001701368 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001668904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001654824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001641472 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001640888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001606656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001557824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 001550336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001509736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001507328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001477632 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001474048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001449280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001448448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001422336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 001378568 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001374720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001337856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001303040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001301592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001286560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001255744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 001253888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001246720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001239552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001218560 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001207296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001195520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001182008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001126472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001090560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001071224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001058816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001041408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001022976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001014872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001008184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000994248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000991744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000966872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000945664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000933176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000903168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000889384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000881112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000876544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000868352 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000856328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000843264 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000831016 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000824328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000804352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000801560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000798720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000779360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000758784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000748360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000704496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000696240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000676088 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000673976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000644096 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntimewindows.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000634680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000633856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntime.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000623960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000623392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.ConversationalAgent.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000606880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2020-07-17 13:29 - 2020-07-17 13:29 - 000595512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000560400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000555744 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000539960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000523720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000522040 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2020-07-17 13:29 - 2020-07-17 13:29 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000487552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000482616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000475704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000453952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000443704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000420936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000419840 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000418816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000413208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000412672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.Phone.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000409552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000405304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000398848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.ESim.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000395600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerPlatform.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreShellAPI.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000367104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnclient.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000343992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AarSvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2020-07-17 13:29 - 2020-07-17 13:29 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000319808 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000313152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000311920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnclient.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000276992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerPlatform.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl 2020-07-17 13:29 - 2020-07-17 13:29 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordEnrollmentManager.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000260288 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000253016 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2020-07-17 13:29 - 2020-07-17 13:29 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2020-07-17 13:29 - 2020-07-17 13:29 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000227640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleBand.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl 2020-07-17 13:29 - 2020-07-17 13:29 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtcModel.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000217912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000215896 _____ (Microsoft Corporation) C:\WINDOWS\system32\coreglobconfig.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000195128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2020-07-17 13:29 - 2020-07-17 13:29 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdigest.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowService.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2020-07-17 13:29 - 2020-07-17 13:29 - 000179000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2020-07-17 13:29 - 2020-07-17 13:29 - 000173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000171024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000163208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coreglobconfig.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000151864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowService.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000132728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CaptureService.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWSDAHost.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000111616 _____ C:\WINDOWS\system32\RDVGHelper.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000095032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2020-07-17 13:29 - 2020-07-17 13:29 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000092952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000086784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Print.Workflow.Source.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DiagnosticInvoker.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiverExt.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.internal.shellcommon.AccountsControlExperience.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemUWPLauncher.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Print.Workflow.Source.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000061752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiverExt.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagnosticdataquery.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ResourcePolicyClient.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000040248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkPS.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIMgrBroker.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowProxy.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000024288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerEnc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000020632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerEnc.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowProxy.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.Native.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDJPN.DLL 2020-07-17 13:29 - 2020-07-17 13:29 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL 2020-07-17 13:29 - 2020-07-17 13:29 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIManagerBrokerps.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.Native.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteFXvGPUDisablement.exe 2020-07-17 13:29 - 2020-07-17 13:29 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000009269 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2020-07-17 13:29 - 2020-07-17 13:29 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106n.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd101.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106n.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd101.DLL 2020-07-17 13:29 - 2020-07-17 13:29 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll 2020-07-17 13:29 - 2020-07-17 13:29 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 017540608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 007992824 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 006709248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 006175232 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 005766168 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 004485216 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2020-07-17 13:28 - 2020-07-17 13:28 - 003818496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 003779896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2020-07-17 13:28 - 2020-07-17 13:28 - 003749376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 002566144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 002466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 002311680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 002305024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 002131024 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 002040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001766912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001762632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001712128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001556480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001530880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001491968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001403904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001305600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrSvc.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001082168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001069056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001048480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 001043456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000968192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000937464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000914200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000902976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2020-07-17 13:28 - 2020-07-17 13:28 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000879104 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000858624 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000799552 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2020-07-17 13:28 - 2020-07-17 13:28 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000678200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2020-07-17 13:28 - 2020-07-17 13:28 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000539256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000506672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellAPI.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000454968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2020-07-17 13:28 - 2020-07-17 13:28 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000423424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000380632 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe 2020-07-17 13:28 - 2020-07-17 13:28 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000215864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys 2020-07-17 13:28 - 2020-07-17 13:28 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys 2020-07-17 13:28 - 2020-07-17 13:28 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Internal.Input.ExpressiveInput.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000148280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyServer.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2020-07-17 13:28 - 2020-07-17 13:28 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000113112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticInvoker.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.AccountsControlExperience.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemUWPLauncher.exe 2020-07-17 13:28 - 2020-07-17 13:28 - 000076992 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000071792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyClient.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000070968 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll 2020-07-17 13:28 - 2020-07-17 13:28 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll 2020-07-17 13:25 - 2020-06-30 05:04 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2020-07-17 13:25 - 2020-06-30 04:58 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2020-07-17 11:29 - 2020-07-18 02:26 - 000000000 ____D C:\Program Files\Firefox Developer Edition 2020-07-13 16:46 - 2020-07-13 16:46 - 000000000 ____D C:\Users\Max\Desktop\New folder (2) 2020-07-10 02:19 - 2020-07-10 02:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2020-07-10 01:56 - 2020-07-10 01:56 - 000000000 ____D C:\Users\Max\AppData\LocalLow\Team 17 Digital ltd_ 2020-07-08 14:20 - 2020-07-08 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2020-07-08 14:20 - 2020-07-08 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2020-07-08 14:20 - 2020-07-08 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2020-07-08 14:20 - 2020-07-08 14:20 - 000044552 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe |
21.07.2020, 02:14 | #2 |
| Schadsoftware von audacity.de runtergeladen und ausgeführt FRST.txt Teil 2
__________________Code:
ATTFilter 2020-07-06 12:08 - 2020-07-06 12:08 - 000002719 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerToys (Preview).lnk 2020-07-06 12:08 - 2020-07-06 12:08 - 000000000 ____D C:\WINDOWS\system32\Tasks\PowerToys 2020-07-06 12:07 - 2020-07-06 12:08 - 000000000 ____D C:\Program Files\PowerToys 2020-07-05 21:37 - 2020-07-05 21:37 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2020-07-05 21:36 - 2020-07-05 21:36 - 000000020 ___SH C:\Users\Max\ntuser.ini 2020-07-05 21:35 - 2020-07-20 20:25 - 000845026 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-07-05 21:35 - 2020-07-20 20:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Security with Backup 2020-07-05 21:35 - 2020-07-20 20:18 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-07-05 21:35 - 2020-07-18 02:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2020-07-05 21:35 - 2020-07-12 16:27 - 000003478 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2020-07-05 21:35 - 2020-07-12 16:27 - 000003354 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2020-07-05 21:35 - 2020-07-08 22:26 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2020-07-05 21:35 - 2020-07-05 21:35 - 000007623 _____ C:\WINDOWS\diagwrn.xml 2020-07-05 21:35 - 2020-07-05 21:35 - 000007623 _____ C:\WINDOWS\diagerr.xml 2020-07-05 21:35 - 2020-07-05 21:35 - 000003452 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA 2020-07-05 21:35 - 2020-07-05 21:35 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-07-05 21:35 - 2020-07-05 21:35 - 000003364 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineUA 2020-07-05 21:35 - 2020-07-05 21:35 - 000003248 _____ C:\WINDOWS\system32\Tasks\MATLAB R2019b Startup Accelerator 2020-07-05 21:35 - 2020-07-05 21:35 - 000003228 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2020-07-05 21:35 - 2020-07-05 21:35 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-07-05 21:35 - 2020-07-05 21:35 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-07-05 21:35 - 2020-07-05 21:35 - 000003140 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore 2020-07-05 21:35 - 2020-07-05 21:35 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-07-05 21:35 - 2020-07-05 21:35 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-07-05 21:35 - 2020-07-05 21:35 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-07-05 21:35 - 2020-07-05 21:35 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-07-05 21:35 - 2020-07-05 21:35 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-07-05 21:35 - 2020-07-05 21:35 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-07-05 21:35 - 2020-07-05 21:35 - 000002846 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-159775396-41617272-500321057-1001 2020-07-05 21:35 - 2020-07-05 21:35 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-07-05 21:35 - 2020-07-05 21:35 - 000002612 _____ C:\WINDOWS\system32\Tasks\Norton WSC Integration 2020-07-05 21:35 - 2020-07-05 21:35 - 000002612 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0 2020-07-05 21:35 - 2020-07-05 21:35 - 000002526 _____ C:\WINDOWS\system32\Tasks\SamsungMagician 2020-07-05 21:35 - 2020-07-05 21:35 - 000002378 _____ C:\WINDOWS\system32\Tasks\EXPERTool 2020-07-05 21:35 - 2020-07-05 21:35 - 000002176 _____ C:\WINDOWS\system32\Tasks\npcapwatchdog 2020-07-05 21:35 - 2020-07-05 21:35 - 000000000 ____D C:\WINDOWS\system32\Tasks\Max 2020-07-05 21:35 - 2020-07-05 21:35 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-159775396-41617272-500321057-1001 2020-07-05 21:31 - 2020-07-05 20:55 - 002876416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2020-07-05 21:30 - 2020-07-20 20:18 - 000008192 ___SH C:\DumpStack.log.tmp 2020-07-05 21:30 - 2020-07-20 20:18 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-07-05 21:30 - 2020-07-18 02:26 - 000454648 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-07-05 21:30 - 2020-07-05 21:30 - 000001162 _____ C:\WINDOWS\system32\config\VSMIDK 2020-07-05 21:02 - 2020-07-06 07:29 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2020-07-05 21:01 - 2020-07-20 15:45 - 000000000 ____D C:\Users\Max 2020-07-05 21:01 - 2019-12-07 11:10 - 000001105 _____ C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-07-05 20:59 - 2020-07-05 21:02 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2020-07-05 20:58 - 2020-07-08 03:02 - 000000000 ____D C:\ProgramData\ssh 2020-07-05 20:56 - 2020-07-05 20:56 - 014357304 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmms.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 011490816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 009493504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 007756288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 006554424 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmchipset.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 005681152 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 005420648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 005371536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 005056000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 004880384 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 004815872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 004759040 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvgm.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 004523520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 004468736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsDesktopEngine.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 004363056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 004270592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 003859456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 003843584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 003498216 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 003431424 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 003380736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 003332608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 003281920 _____ (Microsoft Corporation) C:\WINDOWS\system32\HostNetSvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 003201336 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmcompute.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 003082752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002994488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 002842112 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002827776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002809856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2020-07-05 20:56 - 2020-07-05 20:56 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2020-07-05 20:56 - 2020-07-05 20:56 - 002685440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002631008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002601472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002448896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002418488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002413056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002403296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmwp.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 002338376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002317312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002204936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002202624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002198016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002193736 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002113032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002020080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 002018632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001987072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001980936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001951744 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001912320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001880208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001831424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001812376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001805184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2020-07-05 20:56 - 2020-07-05 20:56 - 001777664 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001769016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001751424 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001719304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001714176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001704960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001695744 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001692320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001686528 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001680896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001665536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001659904 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001611776 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001588024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001585976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001583616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001568256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConstraintIndex.Search.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001541224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001538136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001537040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001500984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001485824 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001473024 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001472824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001438008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001430528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001428480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001424960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001411072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001411032 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001401344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001400216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001394032 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2020-07-05 20:56 - 2020-07-05 20:56 - 001386496 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001360936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001357312 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMNetMgr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001353216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001332224 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmclient.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001330176 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001320448 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001304888 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmemulateddevices.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001296384 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001287680 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001283912 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmComputeAgent.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001259336 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001252864 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001252088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001238528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_IME.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001236512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001233408 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001214464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001212904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001211376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001208832 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsperformancerecordercontrol.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001204968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001197232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001176536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001158144 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2020-07-05 20:56 - 2020-07-05 20:56 - 001140736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001133872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001132032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001128752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 001125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001120256 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001117344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001114624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001111552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMNetMgr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001094144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001087712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdosys.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001075712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001066304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001046904 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001033696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001027072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001015112 _____ (Microsoft Corporation) C:\WINDOWS\system32\CmService.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi3.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 001004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2fs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000999896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000985600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000975672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000969528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000967680 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000961192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000946928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000946176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srmclient.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000940344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000937472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000924512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000920904 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000908288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000907456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000906528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000897536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsperformancerecordercontrol.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000896512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000894264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000889856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000886272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000884736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000862720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000861496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000859136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2fs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\assignedaccessmanagersvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000854016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi3.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000837120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000832512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdosys.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000827720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000797696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000788160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000783360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000760736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000759608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000759096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000756552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000751104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000750464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000746808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000744960 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000744752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000742400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000739128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000738304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000736056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000733184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000732432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000711168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000706056 _____ (Microsoft Corporation) C:\WINDOWS\system32\upshared.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000706048 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000702976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000696832 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkObjCore.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000682496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000676560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000674616 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000671744 _____ C:\WINDOWS\system32\hgattest.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000671032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmcompute.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIsoCtnr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000668984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000659768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmuidevices.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000650752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmscan.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000635824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000632536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000630088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000624440 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmEmulatedStorage.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000611944 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000611840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000604472 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000602184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000600616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000599864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\psisdecd.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\gns.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000594480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessManager.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000583608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000581560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Devices.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2020-07-05 20:56 - 2020-07-05 20:56 - 000579072 _____ (Microsoft® Windows® Operating System) C:\WINDOWS\system32\wvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000575288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000573752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000567312 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsconfig.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000564736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Pipeline.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000559840 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000553984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000546616 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmpmem.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000538328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000537088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000530440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000529208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmserial.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000528696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000517976 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000517432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.PredictionUnit.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000508720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOMEX.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000502600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2020-07-05 20:56 - 2020-07-05 20:56 - 000500536 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmDataStore.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2020-07-05 20:56 - 2020-07-05 20:56 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroles.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000497464 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmusrv.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\msTextPrediction.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psisdecd.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000483840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000474624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000474112 _____ (Microsoft® Windows® Operating System) C:\WINDOWS\SysWOW64\wvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000471248 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIso.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000469936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000467968 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srmscan.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000464896 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassdo.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000451424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000446264 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Display.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\termmgr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000434504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboutSettingsHandlers.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000430392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000428544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswmdm.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000417064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000412896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageHandlers.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000407864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizeng.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_OptionalFeatures.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000405304 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmprox.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000403768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000402448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsynthstor.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000398848 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000397824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_User.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmvpci.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenData.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000383488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000380432 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsmb.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSATAPI.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000373776 _____ C:\WINDOWS\system32\vp9fs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000373064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000373048 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmEmulatedNic.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.FileExplorer.Common.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000371376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000367616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioHandlers.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000366392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRClient.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\termmgr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassdo.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Fonts.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000350736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswmdm.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AccountsRt.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpviewerax.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000329496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000323072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpr.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsynth3dvideo.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapisrv.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RASMM.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000308024 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000304640 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000303616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSATAPI.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TaskApis.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000297984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000294200 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmiccore.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000286520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000286008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsif.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000285496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkEd.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpviewerax.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000267776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax 2020-07-05 20:56 - 2020-07-05 20:56 - 000265448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wavemsp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000261136 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmCrashDump.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchangeHost.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000254464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapisrv.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000251192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000249856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\FileHistory.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000249144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsSandboxClient.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacEncoder.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.SystemManagement.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkEd.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wavemsp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmon.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000223544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000223544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000219960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVShNotify.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000218112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Analog.Shell.Broker.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000210432 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax 2020-07-05 20:56 - 2020-07-05 20:56 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000204000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityCenterBroker.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmidx.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsl.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\recdisc.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000195912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000195384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamingUX.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000195240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SwitcherDataModel.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\csplte.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000188000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasrecst.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netprofm.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageLiveTileTask.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000175928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVDllSurrogate.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsentUxClient.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaatext.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSHExtensions.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CfgSPCellular.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpdxm.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000167224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVNice.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAPNCsp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000164152 _____ C:\WINDOWS\system32\cmdiag.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cic.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000148992 _____ C:\WINDOWS\system32\EoAExperiences.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasnap.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmidx.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000142000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbrokerAx.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Feedback.Analog.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Compression.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000133744 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasrecst.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Haptics.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwclientres.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000131688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvEmulation.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000129336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdp4vs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000126016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAMM.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaatext.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfrgui.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000118072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000111616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoipRT.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000110512 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\socialapis.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasnap.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkspbrokerAx.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000103936 _____ C:\WINDOWS\system32\cmimageworker.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrvext.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000101288 _____ (Microsoft Corporation) C:\WINDOWS\system32\FsIso.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmjpegdec.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000099640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000097296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dfrgui.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compstui.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000093952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000091448 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwanRadioManager.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.Preview.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSSessionUX.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2020-07-05 20:56 - 2020-07-05 20:56 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PeopleAPIs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcEpMap.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmjpegdec.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRBroker.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wslconfig.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasads.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2020-07-05 20:56 - 2020-07-05 20:56 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000069432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceReactivation.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000068608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbussdapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Printers.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConfigureExpandedStorage.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000064840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmproxyd.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\bash.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000064016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmclient.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrTasks.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000059208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfLdr.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasads.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtutils.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumapi.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ffbroker.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Websocket.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000045912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coloradapterclient.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000042808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000042320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000041864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityCenterBrokerPS.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000039736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000038712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncAppvPublishingServer.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Websocket.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CIDiag.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000031760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys 2020-07-05 20:56 - 2020-07-05 20:56 - 000028384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SecurityCenterBrokerPS.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\npmproxy.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000021816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScriptRunner.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000021480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmproxy.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000020280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000016696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmsprep.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwstreamingux.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe 2020-07-05 20:56 - 2020-07-05 20:56 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2020-07-05 20:56 - 2020-07-05 20:56 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 007265088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 006069888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 005858128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 003405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 003304960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 003299840 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 003181056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 003053056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 002974720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 002970624 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 002647040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 002376704 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 002103712 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001952768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001931224 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001922048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001915904 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsudk.shellcommon.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001869312 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001822728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001560408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001554432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001526272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001508864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001493504 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001488392 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001473024 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll |
21.07.2020, 02:15 | #3 |
| Schadsoftware von audacity.de runtergeladen und ausgeführt FRST.txt Teil 3
__________________Code:
ATTFilter 2020-07-05 20:55 - 2020-07-05 20:55 - 001426944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001358336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001337168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001267712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001262592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001251840 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001250816 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001150752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 001142784 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001132544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001092392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001053496 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001046528 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001024512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001015936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 001001984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000954880 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkObjCore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000938416 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000935936 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000930816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000929792 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000914944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000852992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000831488 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000821048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2020-07-05 20:55 - 2020-07-05 20:55 - 000819712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000796984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000793088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000793088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000764456 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000762368 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000751104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsInternal.ComposableShell.ComposerFramework.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000725600 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000708592 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000707032 _____ C:\WINDOWS\system32\TextShaping.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000702776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2020-07-05 20:55 - 2020-07-05 20:55 - 000697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000683008 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000681984 _____ (Microsoft Corporation) C:\WINDOWS\system32\provcore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000664064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000652288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000647992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2020-07-05 20:55 - 2020-07-05 20:55 - 000647680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000628104 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\UiaManager.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000601400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2020-07-05 20:55 - 2020-07-05 20:55 - 000593440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000583168 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000577392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000546304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000524288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRClient.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalAuth.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys 2020-07-05 20:55 - 2020-07-05 20:55 - 000428680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000420448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000418816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MitigationClient.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskApis.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc_isv.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvctpSvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000383224 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000367248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.DisplayEnhancementOverride.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000359456 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000353840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvrcp.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000339000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.SystemManagement.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000306176 _____ C:\WINDOWS\system32\HeatCore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Proxy.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddisplay.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Accessibility.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposerFramework.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000261432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000240176 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApproveChildRequest.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000234296 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000214840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000206152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpcivsp.sys 2020-07-05 20:55 - 2020-07-05 20:55 - 000203976 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsBroker.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssrvlic.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\EapTeapAuth.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Haptics.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3mm.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Compression.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000159032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2020-07-05 20:55 - 2020-07-05 20:55 - 000157240 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.System.UserProfile.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoipRT.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000146944 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\socialapis.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000143160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys 2020-07-05 20:55 - 2020-07-05 20:55 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tsusbhub.sys 2020-07-05 20:55 - 2020-07-05 20:55 - 000131896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000127288 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleAPIs.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000116024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRBroker.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.Preview.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindfltapi.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\atl.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerApi.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbussdapi.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\LSCSHostPolicy.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxGipRadioManager.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanRadioManager.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\coloradapterclient.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnosticsTool.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\atlthunk.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSaveTask.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys 2020-07-05 20:55 - 2020-07-05 20:55 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\lstelemetry.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WSDScan.sys 2020-07-05 20:55 - 2020-07-05 20:55 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2020-07-05 20:55 - 2020-07-05 20:55 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2020-07-05 20:55 - 2020-07-05 20:55 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe 2020-07-05 20:52 - 2020-07-05 20:52 - 018011136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCaptureReplay.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 013957632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCaptureReplay.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 004826624 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d12SDKLayers.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 004795392 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe 2020-07-05 20:52 - 2020-07-05 20:52 - 003592704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d12SDKLayers.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 003578880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsRemoteEngine.exe 2020-07-05 20:52 - 2020-07-05 20:52 - 001985024 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 001411584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsOfflineAnalysis.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 001379328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11_3SDKLayers.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 001152512 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCap.exe 2020-07-05 20:52 - 2020-07-05 20:52 - 001083904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11_3SDKLayers.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000901632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCap.exe 2020-07-05 20:52 - 2020-07-05 20:52 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1debug3.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1debug3.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000417792 _____ C:\WINDOWS\system32\d3dconfig.exe 2020-07-05 20:52 - 2020-07-05 20:52 - 000374784 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DXCpl.exe 2020-07-05 20:52 - 2020-07-05 20:52 - 000365056 _____ C:\WINDOWS\SysWOW64\d3dconfig.exe 2020-07-05 20:52 - 2020-07-05 20:52 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\perf_gputiming.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000347136 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\DXCpl.exe 2020-07-05 20:52 - 2020-07-05 20:52 - 000337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXGIDebug.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsExperiment.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf_gputiming.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\DirectML.Debug.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXGIDebug.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsExperiment.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsMonitor.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000187904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DirectML.Debug.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsReporting.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsCapture.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsMonitor.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSD3DWARPDebug.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsCapture.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsReporting.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VSD3DWARPDebug.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DxToolsReportGenerator.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DxToolsReportGenerator.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsProxyStub.dll 2020-07-05 20:52 - 2020-07-05 20:52 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsProxyStub.dll 2020-07-05 20:49 - 2020-07-18 02:24 - 000000000 ___SD C:\WINDOWS\system32\lxss 2020-07-05 20:49 - 2020-07-18 02:24 - 000000000 ____D C:\Program Files\Hyper-V 2020-07-05 20:49 - 2020-07-06 07:29 - 000000000 ____D C:\Program Files (x86)\MSBuild 2020-07-05 20:49 - 2020-07-05 20:49 - 000000000 ___SD C:\WINDOWS\SysWOW64\lxss 2020-07-05 20:49 - 2020-07-05 20:49 - 000000000 ___SD C:\WINDOWS\system32\containers 2020-07-05 20:49 - 2020-07-05 20:49 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2020-07-05 20:49 - 2020-07-05 20:49 - 000000000 ____D C:\Users\Public\Documents\Hyper-V 2020-07-05 20:49 - 2020-07-05 20:49 - 000000000 ____D C:\ProgramData\Documents\Hyper-V 2020-07-05 20:49 - 2020-07-05 20:49 - 000000000 ____D C:\Program Files\Reference Assemblies 2020-07-05 20:49 - 2020-07-05 20:49 - 000000000 ____D C:\Program Files\MSBuild 2020-07-05 20:49 - 2020-07-05 20:49 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2020-07-05 20:48 - 2019-12-03 14:04 - 000781384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2020-07-05 20:48 - 2019-12-03 14:04 - 000105544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2020-07-05 20:48 - 2019-12-03 14:04 - 000037864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2020-07-05 20:48 - 2019-11-08 14:44 - 001168968 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2020-07-05 20:48 - 2019-11-08 14:44 - 000127056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2020-07-05 20:48 - 2019-11-08 14:44 - 000038072 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2020-07-05 20:42 - 2020-07-05 20:42 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2020-07-05 20:10 - 2020-07-17 13:14 - 000000000 ___DC C:\WINDOWS\Panther 2020-07-05 20:02 - 2020-07-06 07:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Corsair 2020-07-05 20:02 - 2020-07-05 20:02 - 000000000 ____D C:\Program Files (x86)\Corsair 2020-07-05 19:57 - 2020-07-17 13:25 - 000000000 ___HD C:\$WinREAgent 2020-07-05 19:41 - 2020-06-23 00:02 - 001780960 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2020-07-05 19:41 - 2020-06-23 00:02 - 001780960 _____ C:\WINDOWS\system32\vulkaninfo.exe 2020-07-05 19:41 - 2020-06-23 00:02 - 001371352 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2020-07-05 19:41 - 2020-06-23 00:02 - 001371352 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2020-07-05 19:41 - 2020-06-23 00:02 - 001086680 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2020-07-05 19:41 - 2020-06-23 00:02 - 001086680 _____ C:\WINDOWS\system32\vulkan-1.dll 2020-07-05 19:41 - 2020-06-23 00:02 - 000946400 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2020-07-05 19:41 - 2020-06-23 00:02 - 000946400 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2020-07-05 19:41 - 2020-06-23 00:02 - 000455408 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2020-07-05 19:41 - 2020-06-23 00:02 - 000351128 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 006652816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 005883280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 005499104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 003902864 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 002368912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 002075376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 001568496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 001486744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 001146264 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 001016544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 000817544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 000812440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 000674016 _____ C:\WINDOWS\system32\nvofapi64.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 000669424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 000656792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 000581872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2020-07-05 19:41 - 2020-06-23 00:00 - 000555928 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 000543112 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2020-07-05 19:41 - 2020-06-23 00:00 - 000444816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2020-07-05 19:41 - 2020-06-22 23:59 - 005383864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2020-07-05 19:41 - 2020-06-22 23:59 - 004705744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2020-07-05 19:41 - 2020-06-22 23:59 - 000850824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2020-07-05 19:41 - 2020-06-22 05:05 - 000222112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2020-07-05 19:41 - 2020-06-22 05:05 - 000078796 _____ C:\WINDOWS\system32\nvinfo.pb 2020-07-05 19:41 - 2020-06-22 05:05 - 000039824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll 2020-06-28 01:51 - 2020-06-28 01:51 - 000000000 ____D C:\Users\Max\AppData\LocalLow\Ninja Kiwi 2020-06-24 13:48 - 2020-07-06 07:29 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2020-07-21 01:37 - 2019-11-06 21:17 - 000000000 ____D C:\Users\Max\AppData\Local\Battle.net 2020-07-21 01:36 - 2019-11-30 17:28 - 000000000 ____D C:\Users\Max\AppData\Roaming\gnupg 2020-07-21 01:33 - 2019-10-11 13:00 - 000000000 ____D C:\Users\Max\AppData\Roaming\Discord 2020-07-21 01:32 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-07-21 01:17 - 2019-10-09 00:25 - 000000000 ____D C:\Users\Max\AppData\Roaming\Spotify 2020-07-21 01:07 - 2019-10-12 13:46 - 000000539 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2020-07-20 23:11 - 2019-10-09 16:10 - 000000000 ____D C:\Users\Max\AppData\Roaming\Code - Insiders 2020-07-20 22:54 - 2020-02-08 16:02 - 000000000 ____D C:\Users\Max\AppData\Local\Docker 2020-07-20 22:37 - 2019-12-09 19:08 - 000000000 ____D C:\Program Files (x86)\Call of Duty Modern Warfare 2020-07-20 22:28 - 2019-10-09 02:00 - 000000000 ____D C:\Users\Max\AppData\Local\LGHUB 2020-07-20 21:08 - 2020-04-07 00:16 - 000000000 ____D C:\Users\Max\AppData\Roaming\WTablet 2020-07-20 21:01 - 2019-10-08 20:15 - 000000000 ____D C:\ProgramData\NVIDIA 2020-07-20 20:56 - 2019-10-09 02:13 - 000000000 ____D C:\Users\Max\AppData\LocalLow\Mozilla 2020-07-20 20:30 - 2019-10-09 16:10 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code - Insiders 2020-07-20 20:25 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2020-07-20 20:21 - 2020-05-02 23:49 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2020-07-20 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2020-07-20 20:18 - 2020-02-08 16:03 - 000000000 ____D C:\ProgramData\DockerDesktop 2020-07-20 16:28 - 2020-02-08 16:10 - 000000000 ____D C:\Users\Max\AppData\Roaming\Docker Desktop 2020-07-20 14:52 - 2020-04-03 23:33 - 000002292 ____H C:\Users\Max\Documents\Default.rdp 2020-07-20 13:46 - 2019-10-09 17:35 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2020-07-20 13:46 - 2019-10-09 17:35 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData 2020-07-20 11:58 - 2019-12-07 11:51 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2020-07-20 11:54 - 2019-12-07 11:03 - 000008192 _____ C:\WINDOWS\system32\config\ELAM 2020-07-20 11:52 - 2019-10-09 02:00 - 000000000 ____D C:\Users\Max\AppData\Roaming\LGHUB 2020-07-20 02:04 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2020-07-20 02:04 - 2019-11-06 21:55 - 000000000 ____D C:\Program Files (x86)\Steam 2020-07-18 19:00 - 2019-10-09 00:26 - 000000000 ____D C:\Users\Max\AppData\Local\Spotify 2020-07-18 16:07 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2020-07-18 16:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-07-18 02:26 - 2019-12-12 01:39 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-07-18 02:24 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2020-07-18 02:24 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2020-07-18 02:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2020-07-18 02:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2020-07-18 02:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2020-07-18 02:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2020-07-18 02:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2020-07-18 02:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-07-18 02:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-07-18 02:24 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2020-07-18 02:12 - 2020-02-19 23:52 - 000001075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Developer Edition.lnk 2020-07-17 21:09 - 2019-11-06 21:16 - 000000000 ____D C:\Program Files (x86)\Battle.net 2020-07-17 20:39 - 2019-11-25 15:10 - 000001953 _____ C:\Users\Public\Desktop\AnyDesk.lnk 2020-07-17 20:39 - 2019-11-25 15:10 - 000001953 _____ C:\ProgramData\Desktop\AnyDesk.lnk 2020-07-17 20:39 - 2019-10-09 00:02 - 000000000 ____D C:\Users\Max\AppData\Roaming\AnyDesk 2020-07-17 13:31 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-07-17 13:06 - 2019-10-11 13:15 - 000000000 ____D C:\Users\Max\AppData\Roaming\npm-cache 2020-07-16 23:15 - 2019-10-09 00:08 - 000002418 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2020-07-16 23:15 - 2019-10-09 00:08 - 000002377 _____ C:\Users\Public\Desktop\Brave.lnk 2020-07-16 23:15 - 2019-10-09 00:08 - 000002377 _____ C:\ProgramData\Desktop\Brave.lnk 2020-07-15 21:33 - 2019-11-06 19:53 - 000002344 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge Dev.lnk 2020-07-15 21:33 - 2019-11-06 19:53 - 000002303 _____ C:\Users\Public\Desktop\Microsoft Edge Dev.lnk 2020-07-15 21:33 - 2019-11-06 19:53 - 000002303 _____ C:\ProgramData\Desktop\Microsoft Edge Dev.lnk 2020-07-15 21:33 - 2019-10-08 20:21 - 000000000 ____D C:\Users\Max\AppData\Local\Packages 2020-07-14 12:57 - 2019-10-08 22:54 - 000000000 ____D C:\Users\Max\AppData\Local\D3DSCache 2020-07-13 18:45 - 2020-01-23 14:08 - 000000000 ____D C:\Users\Max\AppData\Roaming\Insomnia 2020-07-13 14:06 - 2020-01-23 14:07 - 000000000 ____D C:\Users\Max\AppData\Local\insomnia 2020-07-13 13:20 - 2019-11-28 17:09 - 000000000 ____D C:\Users\Max\.poetry 2020-07-12 00:12 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-07-12 00:11 - 2019-10-09 03:22 - 000000000 ____D C:\Program Files\Microsoft Office 2020-07-10 21:35 - 2019-10-08 22:59 - 000000000 ____D C:\Users\Max\AppData\Local\NVIDIA 2020-07-10 03:17 - 2020-04-29 15:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2020-07-10 02:19 - 2019-10-08 22:39 - 000000000 ____D C:\Program Files (x86)\Dropbox 2020-07-10 01:13 - 2019-12-16 20:54 - 000000000 ____D C:\Program Files\Epic Games 2020-07-09 17:54 - 2019-12-15 19:02 - 000000000 ____D C:\ProgramData\TEMP 2020-07-09 14:24 - 2019-11-13 21:16 - 000000000 ____D C:\Users\Max\Documents\My Games 2020-07-08 19:12 - 2019-11-23 00:37 - 000007273 _____ C:\Users\Max\.node_repl_history 2020-07-08 14:56 - 2019-10-11 11:44 - 000000000 ____D C:\Users\Max\AppData\Local\.IdentityService 2020-07-08 00:31 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing 2020-07-07 20:20 - 2020-04-18 21:39 - 000000000 ____D C:\Users\Max\.vscode-server-insiders 2020-07-07 20:06 - 2019-10-08 21:53 - 000001357 _____ C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1Password.lnk 2020-07-07 20:06 - 2019-10-08 21:53 - 000000000 ____D C:\Users\Max\AppData\Local\1Password 2020-07-06 11:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat 2020-07-06 07:29 - 2020-06-14 12:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HsWebPlugin 2020-07-06 07:29 - 2020-06-14 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WebComponents 2020-07-06 07:29 - 2020-06-13 22:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2020-07-06 07:29 - 2020-06-09 13:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js 2020-07-06 07:29 - 2020-06-09 13:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git 2020-07-06 07:29 - 2020-06-09 13:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CMake 2020-07-06 07:29 - 2020-05-28 23:00 - 000000000 ____D C:\Program Files\UNP 2020-07-06 07:29 - 2020-05-24 11:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Slack Technologies 2020-07-06 07:29 - 2020-05-24 11:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Go Programming Language 2020-07-06 07:29 - 2020-05-21 11:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cppcheck x64 2.0 2020-07-06 07:29 - 2020-05-15 22:10 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2020-07-06 07:29 - 2020-05-14 14:19 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender 2020-07-06 07:29 - 2020-05-05 00:14 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kong 2020-07-06 07:29 - 2020-05-03 00:30 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Arnold for Maya 2020 2020-07-06 07:29 - 2020-05-03 00:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk Maya 2020 2020-07-06 07:29 - 2020-05-02 19:37 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wacom Tablet 2020-07-06 07:29 - 2020-05-02 15:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games 2020-07-06 07:29 - 2020-03-25 18:43 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DBeaver Community 2020-07-06 07:29 - 2020-03-25 12:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician 2020-07-06 07:29 - 2020-03-16 14:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2020-07-06 07:29 - 2020-03-08 16:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerShell 2020-07-06 07:29 - 2020-02-06 16:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2020-07-06 07:29 - 2020-01-23 14:08 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Insomnia 2020-07-06 07:29 - 2020-01-21 19:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PostgreSQL 12 2020-07-06 07:29 - 2020-01-16 18:04 - 000000000 ____D C:\WINDOWS\SysWOW64\Npcap 2020-07-06 07:29 - 2020-01-16 18:04 - 000000000 ____D C:\WINDOWS\system32\Npcap 2020-07-06 07:29 - 2020-01-12 19:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MATLAB R2019b 2020-07-06 07:29 - 2019-12-31 16:41 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 2020-07-06 07:29 - 2019-12-31 16:40 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line 2020-07-06 07:29 - 2019-12-31 16:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line 2020-07-06 07:29 - 2019-12-19 03:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2020-07-06 07:29 - 2019-12-15 19:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TreeSize 2020-07-06 07:29 - 2019-12-10 04:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Modern Warfare 2020-07-06 07:29 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2020-07-06 07:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2020-07-06 07:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\spool 2020-07-06 07:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-07-06 07:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2020-07-06 07:29 - 2019-11-24 03:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FontForge 2020-07-06 07:29 - 2019-11-23 03:45 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Brave Apps 2020-07-06 07:29 - 2019-11-16 13:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JabRef 2020-07-06 07:29 - 2019-11-07 18:46 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.8 2020-07-06 07:29 - 2019-11-06 22:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch 2020-07-06 07:29 - 2019-11-06 21:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2020-07-06 07:29 - 2019-11-06 21:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2020-07-06 07:29 - 2019-10-13 20:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends 2020-07-06 07:29 - 2019-10-13 19:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2020-07-06 07:29 - 2019-10-11 13:00 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2020-07-06 07:29 - 2019-10-11 11:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 3.7 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\SysWOW64\3082 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\SysWOW64\1055 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\SysWOW64\1049 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\SysWOW64\1046 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\SysWOW64\1045 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\SysWOW64\1040 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\SysWOW64\1036 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\SysWOW64\1029 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\system32\3082 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\system32\1055 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\system32\1049 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\system32\1046 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\system32\1045 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\system32\1040 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\system32\1036 2020-07-06 07:29 - 2019-10-11 11:19 - 000000000 ____D C:\WINDOWS\system32\1029 2020-07-06 07:29 - 2019-10-11 11:17 - 000000000 ____D C:\Program Files\IIS 2020-07-06 07:29 - 2019-10-11 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\1033 2020-07-06 07:29 - 2019-10-11 11:14 - 000000000 ____D C:\WINDOWS\system32\1033 2020-07-06 07:29 - 2019-10-10 18:36 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeX Live 2019 2020-07-06 07:29 - 2019-10-09 18:35 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2020-07-06 07:29 - 2019-10-09 17:55 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-07-06 07:29 - 2019-10-09 17:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-07-06 07:29 - 2019-10-09 16:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ConEmu 2020-07-06 07:29 - 2019-10-09 10:49 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation 2020-07-06 07:29 - 2019-10-09 03:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2020-07-06 07:29 - 2019-10-09 01:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EXPERTool 2020-07-06 07:29 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2020-07-06 07:29 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2020-07-06 07:29 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2020-07-05 21:52 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2020-07-05 21:49 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate 2020-07-05 21:36 - 2019-10-09 13:56 - 000000948 __RSH C:\ProgramData\ntuser.pol 2020-07-05 21:36 - 2019-10-08 20:34 - 000000000 ____D C:\ProgramData\Packages 2020-07-05 21:36 - 2019-10-08 20:21 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-07-05 21:36 - 2019-10-08 20:21 - 000000000 ___RD C:\Users\Max\3D Objects 2020-07-05 21:33 - 2019-12-07 11:14 - 000000000 __RHD C:\Users\Public\Libraries 2020-07-05 21:32 - 2019-10-08 22:58 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2020-07-05 21:32 - 2019-10-08 20:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) Turbo Boost Max Technology 3.0 2020-07-05 21:28 - 2019-12-07 11:18 - 000000000 ____D C:\WINDOWS\Setup 2020-07-05 21:03 - 2020-05-03 00:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Allegorithmic 2020-07-05 21:03 - 2020-01-01 19:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxon 2020-07-05 21:03 - 2019-12-31 15:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alesis 2020-07-05 21:03 - 2019-12-15 17:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Projector 2020-07-05 21:03 - 2019-10-13 00:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk 2020-07-05 21:03 - 2019-10-11 11:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits 2020-07-05 21:03 - 2019-10-11 11:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Azure 2020-07-05 21:03 - 2019-10-11 11:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2019 2020-07-05 21:03 - 2019-10-08 20:11 - 000000000 ____D C:\Program Files (x86)\Intel Corporation 2020-07-05 20:58 - 2019-12-07 11:54 - 000000000 ___SD C:\WINDOWS\system32\AppV 2020-07-05 20:58 - 2019-12-07 11:54 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2020-07-05 20:58 - 2019-12-07 11:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2020-07-05 20:58 - 2019-12-07 11:54 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2020-07-05 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2020-07-05 20:52 - 2019-12-07 11:52 - 000000000 ____D C:\WINDOWS\OCR 2020-07-05 20:51 - 2019-12-07 11:51 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2020-07-05 20:51 - 2019-12-07 11:50 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2020-07-05 20:51 - 2019-12-07 11:50 - 000000000 ____D C:\WINDOWS\system32\WCN 2020-07-05 20:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2020-07-05 20:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME 2020-07-05 20:51 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender 2020-07-05 20:51 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2020-07-05 20:49 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\schemas 2020-07-05 20:02 - 2019-10-09 01:13 - 000000000 ____D C:\ProgramData\Corsair 2020-07-05 19:43 - 2019-10-08 20:15 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2020-07-05 19:43 - 2019-10-08 20:15 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2020-07-05 19:43 - 2019-10-08 20:15 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2020-07-05 00:47 - 2020-03-21 11:17 - 000011785 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1 2020-07-05 00:47 - 2020-03-20 12:38 - 000018863 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1 2020-07-05 00:47 - 2020-03-20 12:38 - 000018251 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1 2020-07-04 21:54 - 2019-10-09 18:39 - 000000000 ____D C:\Users\Max\AppData\Local\CrashDumps 2020-07-04 21:53 - 2020-03-20 12:38 - 000001209 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1 2020-07-03 17:38 - 2019-11-30 17:28 - 000000000 ____D C:\Users\Max\AppData\Roaming\kleopatra 2020-07-02 01:37 - 2020-05-01 14:48 - 000000000 ____D C:\Users\Max\Desktop\New folder 2020-07-01 16:27 - 2020-02-08 16:09 - 000000000 ____D C:\Users\Max\.docker 2020-06-30 22:48 - 2020-04-12 00:03 - 000000000 ____D C:\Users\Max\.pylint.d 2020-06-29 12:34 - 2020-03-25 18:43 - 000000000 ____D C:\Program Files\DBeaver 2020-06-29 12:33 - 2019-10-09 16:51 - 000000992 _____ C:\Users\Public\Desktop\ConEmu (x64).lnk 2020-06-29 12:33 - 2019-10-09 16:51 - 000000992 _____ C:\ProgramData\Desktop\ConEmu (x64).lnk 2020-06-29 12:33 - 2019-10-09 16:51 - 000000000 ____D C:\Program Files\ConEmu 2020-06-28 19:01 - 2019-10-08 20:23 - 000000000 ____D C:\Users\Max\AppData\Local\PlaceholderTileLogoFolder 2020-06-28 18:57 - 2019-10-09 17:37 - 000000000 ___RD C:\Users\Max\Creative Cloud Files 2020-06-28 18:57 - 2019-10-09 17:30 - 000000000 ____D C:\Users\Max\AppData\Local\Adobe 2020-06-27 23:38 - 2019-10-08 20:23 - 000000000 ___RD C:\Users\Max\OneDrive 2020-06-27 02:42 - 2020-03-22 02:54 - 000011535 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1 2020-06-26 22:15 - 2019-10-08 20:42 - 000002408 _____ C:\Users\Public\Desktop\Norton Security.lnk 2020-06-26 22:15 - 2019-10-08 20:42 - 000002408 _____ C:\ProgramData\Desktop\Norton Security.lnk 2020-06-24 14:14 - 2019-10-08 21:05 - 000000000 ____D C:\Program Files\Common Files\AV 2020-06-24 13:48 - 2019-10-08 20:42 - 000000000 ____D C:\WINDOWS\system32\Drivers\NGCx64 2020-06-24 02:05 - 2020-03-27 03:32 - 000011560 _____ C:\ProgramData\DisplaySessionContainer4.log_backup1 2020-06-24 02:05 - 2020-03-24 03:41 - 000013873 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1 2020-06-22 05:05 - 2020-03-20 12:38 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2020-06-22 05:05 - 2020-03-20 12:36 - 000067456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2020-06-22 05:05 - 2019-12-19 03:34 - 002799416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2020-06-22 05:05 - 2019-12-19 03:34 - 002159592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2020-06-22 05:05 - 2019-12-19 03:34 - 001314792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll 2020-06-22 05:05 - 2019-12-19 03:34 - 000170472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2020-06-22 05:05 - 2019-12-19 03:34 - 000146408 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2020-06-22 03:32 - 2020-03-21 03:06 - 000014635 _____ C:\ProgramData\DisplaySessionContainer6.log_backup1 2020-06-21 13:12 - 2020-03-20 12:38 - 000014010 _____ C:\ProgramData\DisplaySessionContainer5.log_backup1 2020-06-21 12:28 - 2019-10-13 19:19 - 000000000 ____D C:\Program Files (x86)\Origin ==================== Files in the root of some directories ======== 2020-04-10 17:29 - 2020-04-10 17:29 - 000000066 _____ () C:\Users\Max\commitlint.config.js 2019-10-11 00:03 - 2019-10-11 00:10 - 000000028 _____ () C:\Users\Max\AppData\Roaming\kulerdata.json 2019-10-10 15:06 - 2020-05-10 14:37 - 000000128 _____ () C:\Users\Max\AppData\Roaming\winscp.rnd 2019-10-09 17:34 - 2019-10-09 17:34 - 000000410 _____ () C:\Users\Max\AppData\Local\oobelibMkey.log 2019-10-09 03:17 - 2020-03-29 00:12 - 000007664 _____ () C:\Users\Max\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ======================== |
21.07.2020, 02:16 | #4 |
| Schadsoftware von audacity.de runtergeladen und ausgeführt Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-07-2020 Ran by Max (21-07-2020 01:44:46) Running from C:\Users\Max\Desktop Windows 10 Pro Version 2004 19041.388 (X64) (2020-07-05 19:35:59) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-159775396-41617272-500321057-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-159775396-41617272-500321057-503 - Limited - Disabled) Guest (S-1-5-21-159775396-41617272-500321057-501 - Limited - Disabled) Max (S-1-5-21-159775396-41617272-500321057-1001 - Administrator - Enabled) => C:\Users\Max sshd (S-1-5-21-159775396-41617272-500321057-1003 - Limited - Enabled) WDAGUtilityAccount (S-1-5-21-159775396-41617272-500321057-504 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Norton Security (Enabled - Up to date) {1122B19A-E671-38EC-8EAC-87048FD4528D} AV: Norton Security (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Norton Security (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E} FW: Norton Security (Enabled) {291930BF-AC1E-39B4-A5F3-2E31710715F6} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 1Password (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\1Password) (Version: 7.6.778 - AgileBits Inc.) Active Directory Authentication Library for SQL Server (HKLM\...\{6BF11ECE-3CE8-4FBA-991A-1F55AA6BE5BF}) (Version: 15.0.1300.359 - Microsoft Corporation) Hidden Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 19.012.20040 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.1.0.407 - Adobe Systems Incorporated) Adobe Lightroom Classic (HKLM-x32\...\LTRM_9_2_1) (Version: 9.2.1 - Adobe Inc.) Adobe Photoshop 2020 (HKLM-x32\...\PHSP_21_0_3) (Version: 21.0.3 - Adobe Systems Incorporated) Alesis VI25 Editor (HKLM-x32\...\{5D785DD3-6818-464B-9703-4E86B88B3E27}) (Version: 1.00.0000 - Alesis) AnyDesk (HKLM-x32\...\AnyDesk) (Version: ad 6.0.5 - philandro Software GmbH) Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.2.2 - Electronic Arts, Inc.) Application Verifier x64 External Package (HKLM\...\{10CA1677-8F02-3131-F25C-780BAB52E468}) (Version: 10.1.18362.1 - Microsoft) Hidden ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach) Autodesk Desktop App (HKLM-x32\...\Autodesk Desktop App) (Version: 7.0.21.17 - Autodesk) Autodesk Genuine Service (HKLM-x32\...\{54A00624-3EF9-49A2-92A9-7244EADD0212}) (Version: 3.2.18 - Autodesk) Autodesk Genuine Service (HKLM-x32\...\{BF7A2FE6-C943-4C1E-A2CA-729AD1474E9B}) (Version: 3.1.15 - Autodesk) Autodesk Genuine Service (HKLM-x32\...\{EF86FB37-98AB-49C2-930B-77A5E04758FE}) (Version: 2.2.0 - Autodesk) Autodesk Maya 2020 (HKLM\...\{7FF82F77-D33A-4FD1-933F-06ECB0202979}) (Version: 20.1.0.632 - Autodesk) Hidden Autodesk Maya 2020 (HKLM\...\{E63648E7-BD88-4137-AED6-156E77E79DD3}) (Version: 2020.1.0.632 - Autodesk, Inc.) Autodesk Single Sign On Component (HKLM\...\{951BB060-1350-4C93-BD83-D966C51D4005}) (Version: 11.2.0.1802 - Autodesk) Hidden Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bifrost Extension 2.0.5.0 for Maya 2020 (HKLM\...\{55EA9152-717D-460A-AA14-06C76B27FB84}) (Version: 2.0.5.0 - Autodesk) Blender (HKLM\...\{EDFAE2A8-E73B-4CD1-9648-46A7E4434BDA}) (Version: 2.82.1 - Blender Foundation) Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 84.1.11.97 - Brave Software Inc) Call of Duty Modern Warfare (HKLM-x32\...\Call of Duty Modern Warfare) (Version: - Blizzard Entertainment) ClickOnce Bootstrapper Package for Microsoft .NET Framework (HKLM-x32\...\{0243F145-076D-423A-8F77-218DC8840261}) (Version: 4.8.04119 - Microsoft Corporation) Hidden CMake (HKLM\...\{3B98BA21-4079-464C-B23C-E5E19D10EADB}) (Version: 3.17.3 - Kitware) ConEmu 200615.x64 (HKLM\...\{A514B23F-63F9-4B3C-A805-26C93955F343}) (Version: 11.200.6150 - ConEmu-Maximus5) CORSAIR iCUE Software (HKLM-x32\...\{F3FDA3E9-1209-40AF-96AA-2A1CB18C5CDE}) (Version: 3.30.97 - Corsair) Cppcheck x64 2.0 (HKLM\...\{D49BBC55-EA91-408D-B509-3B8499E796C8}) (Version: 2.0 - The Cppcheck team) DBeaver 7.1.1 (HKLM\...\DBeaver) (Version: 7.1.1 - DBeaver Corp) DiagnosticsHub_CollectionService (HKLM\...\{1F3C3AAC-9F7A-47DA-A082-0ACE770041BE}) (Version: 16.1.28901 - Microsoft Corporation) Hidden Discord (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Discord) (Version: 0.0.306 - Discord Inc.) Docker Desktop (HKLM\...\Docker Desktop) (Version: 2.3.0.3 - Docker Inc.) Dropbox (HKLM-x32\...\Dropbox) (Version: 101.4.434 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden Duplicati 2 (HKLM\...\{FC1F2B24-1783-4352-98E9-669896601613}) (Version: 2.0.5.1 - Duplicati Team) Entity Framework 6.2.0 Tools for Visual Studio 2019 (HKLM-x32\...\{7C2070BF-8E07-4B5F-A182-FADB0B95AB39}) (Version: 6.2.0.0 - Microsoft Corporation) Hidden Epic Games Launcher (HKLM-x32\...\{C69A2919-0662-4390-9418-67C931B44C18}) (Version: 1.1.236.0 - Epic Games, Inc.) Epson iProjection Ver.2.22 (HKLM-x32\...\{2018E638-9C1E-4627-9B6D-5E90CC648259}) (Version: 2.2.2.0 - SEIKO EPSON CORPORATION) EXPERTool v10.32 (HKLM\...\{551D9481-9487-4D0C-9A1D-6BC3E7B6D991}_is1) (Version: 10.32.0.1 - Gainward Co. Ltd.) Firefox Developer Edition 79.0 (x64 en-US) (HKLM\...\Firefox Developer Edition 79.0 (x64 en-US)) (Version: 79.0 - Mozilla) FL Studio 20 (HKLM-x32\...\FL Studio 20) (Version: - Image-Line) FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line) FontForge version 14-03-2020 (HKLM-x32\...\{56748B9C-19AE-4689-B8C5-5A45AE0A993A}_is1) (Version: 14-03-2020 - FontForgeBuilds) Git version 2.27.0 (HKLM\...\Git_is1) (Version: 2.27.0 - The Git Development Community) GitHub CLI (HKLM-x32\...\{3EDE11B1-A8BF-4361-8C56-80B84DE731BC}) (Version: 0.9.0 - GitHub, Inc.) GNU Privacy Guard (HKLM-x32\...\GnuPG) (Version: 2.2.19 - The GnuPG Project) Go Programming Language amd64 go1.14.3 (HKLM\...\{B587E2AC-C8FF-49A0-8FD8-C8EEE579A970}) (Version: 1.14.3 - hxxps://golang.org) Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.99.0 - Google Inc.) Hidden Gpg4win (3.1.11) (HKLM-x32\...\Gpg4win) (Version: 3.1.11 - The Gpg4win Project) HsWebPlugin version 8.1.3.18 (HKLM-x32\...\{79c75956-b535-5f33-8aee-1d1607ddf6c3}}_is1) (Version: 8.1.3.18 - ) icecap_collection_neutral (HKLM-x32\...\{2A00DCB3-752F-446C-B3B3-1B6ADFBFF3E3}) (Version: 16.6.30014 - Microsoft Corporation) Hidden icecap_collection_x64 (HKLM\...\{BE5E54C4-6B68-4AE3-A7F4-45F0D29D48D3}) (Version: 16.6.30014 - Microsoft Corporation) Hidden icecap_collectionresources (HKLM-x32\...\{1E6E5904-E97F-41F7-B3DB-0C8CD3180E3C}) (Version: 16.6.30014 - Microsoft Corporation) Hidden icecap_collectionresourcesx64 (HKLM-x32\...\{7FD392DF-51A1-4DC1-9C6F-BF7C58A576AC}) (Version: 16.6.30014 - Microsoft Corporation) Hidden IIS 10.0 Express (HKLM\...\{2B8326B6-4202-4239-B9A9-F3EC8812E82D}) (Version: 10.0.03917 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) Hidden IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) Hidden Insomnia (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\insomnia) (Version: 2020.3.3 - Kong) Insomnia Designer (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\insomnia-designer) (Version: 2020.2.0 - Kong) Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation) Intel(R) Turbo Boost Max Technology 3.0 (HKLM\...\IntelNit) (Version: 1.0.0.1035 - Intel Corporation) IntelliTraceProfilerProxy (HKLM-x32\...\{7D94CF67-6666-4111-B027-D7AB7F189F70}) (Version: 15.0.18198.01 - Microsoft Corporation) Hidden Ironsight (HKLM-x32\...\IS_US_LIV_2019112609) (Version: 1.0 - Aeria) JabRef 5.0-alpha (HKLM\...\0034-7691-1464-4754) (Version: 5.0-alpha - JabRef Community) Java 8 Update 241 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180241F0}) (Version: 8.0.2410.7 - Oracle Corporation) Java 8 Update 241 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180241F0}) (Version: 8.0.2410.7 - Oracle Corporation) Java SE Development Kit 8 Update 241 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180241}) (Version: 8.0.2410.7 - Oracle Corporation) Kits Configuration Installer (HKLM-x32\...\{63AAA877-5536-9481-2385-28A082100D78}) (Version: 10.1.18362.1 - Microsoft) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: - Logitech) MATLAB R2019b (HKLM\...\Matlab R2019b) (Version: 9.7 - MathWorks) Maxon Cinema 4D R21 (HKLM\...\Maxon Cinema 4D R21) (Version: R21 - Maxon) Microsoft .NET Core SDK 3.1.300 (x64) from Visual Studio (HKLM\...\{0D8DAD1B-30B8-4EA4-8CF7-D52385BCD3C0}) (Version: 3.1.300.015161 - Microsoft Corporation) Microsoft 365 Apps for Enterprise - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 16.0.13001.20266 - Microsoft Corporation) Microsoft 365 Apps for enterprise - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.13001.20266 - Microsoft Corporation) Microsoft Azure Authoring Tools - v2.9.6 (HKLM\...\{EDADFA19-7F96-4075-A4AB-2209910626C5}) (Version: 2.9.8899.26 - Microsoft Corporation) Microsoft Azure Compute Emulator - v2.9.6 (HKLM\...\Microsoft Azure Compute Emulator - v2.9.6) (Version: 2.9.8899.26 - Microsoft Corporation) Microsoft Azure Libraries for .NET – v2.9 (HKLM\...\{C5C91AA6-3E83-430E-8B7A-6B790083F28D}) (Version: 3.0.0127.060 - Microsoft Corporation) Microsoft Azure Storage Emulator - v5.10 (HKLM-x32\...\Microsoft Azure Storage Emulator - v5.10) (Version: 5.10.19227.2113 - Microsoft Corporation) Microsoft Edge Dev (HKLM-x32\...\Microsoft Edge Dev) (Version: 85.0.564.8 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.133.5 - ) Microsoft ODBC Driver 17 for SQL Server (HKLM\...\{8D98AC2C-FC5C-440D-A2D3-6C9655F957D8}) (Version: 17.2.0.1 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\OneDriveSetup.exe) (Version: 20.084.0426.0007 - Microsoft Corporation) Microsoft SQL Server 2016 LocalDB (HKLM\...\{9097BF1A-13A0-4A4A-A1F8-473E2A669863}) (Version: 13.1.4001.0 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2019 CTP2.2 (HKLM\...\{8D7CE3B0-5379-46FE-9F4B-A65D9F4CC1F1}) (Version: 15.0.1200.24 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2019 CTP2.2 (HKLM-x32\...\{725CC962-98BD-42C7-87D8-51C680FB1779}) (Version: 15.0.1200.24 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Teams) (Version: 1.2.00.24753 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.26.28720 (HKLM-x32\...\{7d607fb4-7e28-4c7a-a92f-3fcdaf555faf}) (Version: 14.26.28720.3 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.26.28720 (HKLM-x32\...\{86380aef-fd23-4fc3-8723-a98ccad8f2c6}) (Version: 14.26.28720.3 - Microsoft Corporation) Microsoft Visual Studio Code Insiders (User) (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\{217B4C08-948D-4276-BFBB-BEE930AE5A2C}_is1) (Version: 1.48.0 - Microsoft Corporation) Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 2.6.2033.413 - Microsoft Corporation) Microsoft Web Deploy 4.0 (HKLM\...\{BBCDB523-F5B7-4E53-A911-C85191E3BDF0}) (Version: 10.0.2606 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Mozilla Firefox 76.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 76.0.1 (x64 en-US)) (Version: 76.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 78.0 - Mozilla) MSI Development Tools (HKLM-x32\...\{DB4DB790-64DD-1902-4BF2-833B3B6DBCA1}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden MtoA for Maya 2020 (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\MtoA2020) (Version: 4.0.2 - Autodesk) Node.js (HKLM\...\{C2F6BD60-DD92-4330-9442-9187948F46CB}) (Version: 14.4.0 - Node.js Foundation) Norton Security (HKLM-x32\...\NGC) (Version: 22.20.4.57 - Symantec Corporation) Npcap (HKLM-x32\...\NpcapInst) (Version: 0.9986 - Nmap Project) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden NVIDIA GeForce Experience 3.20.3.63 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.3.63 - NVIDIA Corporation) NVIDIA Graphics Driver 451.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 451.48 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.38.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.34 - NVIDIA Corporation) NVIDIA PhysX System Software 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13001.20144 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13001.20266 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0407-1000-0000000FF1CE}) (Version: 16.0.13001.20144 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.13001.20144 - Microsoft Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 10.5.60.37244 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) PostgreSQL 12 (HKLM\...\PostgreSQL 12) (Version: 12 - PostgreSQL Global Development Group) PowerShell 7-x64 (HKLM\...\{8B844F39-E6EE-486B-BE85-96A485AE2B96}) (Version: 7.0.1.0 - Microsoft Corporation) PowerToys (Preview) (HKLM\...\{C9EA6CF4-135E-416A-9D43-48AB00212CBB}) (Version: 0.19.0 - Microsoft) Progress Telerik Fiddler (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Fiddler2) (Version: 5.0.20202.18177 - Progress Software Corporation) Python 3.7.5 (64-bit) (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\{6922e1ef-88d0-46f1-9018-19b9b29b3b1d}) (Version: 3.7.5150.0 - Python Software Foundation) Python 3.7.5 Add to Path (64-bit) (HKLM\...\{AD14FF05-6684-4EFC-9C97-476959A0AB6F}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Core Interpreter (64-bit symbols) (HKLM\...\{8186EDC2-D02C-4561-BD11-55F3B9C363FF}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Core Interpreter (64-bit) (HKLM\...\{6DC6BC71-F1FB-412D-A16A-2FE8C463E89F}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Development Libraries (64-bit) (HKLM\...\{5A54B213-36D8-40CB-9E55-D20864AEF3C8}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Documentation (64-bit) (HKLM\...\{B33E7CE3-8BFE-4F55-8505-2F74D97392C4}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Executables (64-bit symbols) (HKLM\...\{3AA7C0A6-97EC-41C9-B2F8-37BCA749D9C9}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Executables (64-bit) (HKLM\...\{8864B390-4DFB-43AB-934B-F02C48577666}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 pip Bootstrap (64-bit) (HKLM\...\{2E590D5A-4E40-4C9C-AFF8-7CB80F085752}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Standard Library (64-bit symbols) (HKLM\...\{8159776E-5D9A-457B-BAA5-AD306A89D3C9}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Standard Library (64-bit) (HKLM\...\{45CB356A-C0DF-430E-B75F-7764DBA06DF9}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Tcl/Tk Support (64-bit symbols) (HKLM\...\{10FB2B6E-BDA1-479F-9844-FF3A9C8ED166}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Tcl/Tk Support (64-bit) (HKLM\...\{42DC5149-4088-4217-8F86-487FA8B953FC}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Test Suite (64-bit symbols) (HKLM\...\{A5AC50DE-D446-4AF2-8D83-8BC548B57C31}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Test Suite (64-bit) (HKLM\...\{1822F1DC-2972-499D-9FE2-C27395C06766}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.7.5 Utility Scripts (64-bit) (HKLM\...\{EFF40415-0D5B-4CBA-9080-3EE2DADB527C}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden Python 3.8.1 (64-bit) (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\{8a7dcce5-d286-4a58-8de9-18f6e5c83a0c}) (Version: 3.8.1150.0 - Python Software Foundation) Python 3.8.1 Core Interpreter (64-bit) (HKLM\...\{F94E2016-28A6-4FCC-B5A1-D2D9757AF26A}) (Version: 3.8.1150.0 - Python Software Foundation) Hidden Python 3.8.1 Development Libraries (64-bit) (HKLM\...\{913F572C-BF38-4E44-9065-7E1B024D43FB}) (Version: 3.8.1150.0 - Python Software Foundation) Hidden Python 3.8.1 Documentation (64-bit) (HKLM\...\{3FE61A1E-16AE-4702-81A6-C9F6CE3586EB}) (Version: 3.8.1150.0 - Python Software Foundation) Hidden Python 3.8.1 Executables (64-bit) (HKLM\...\{D6160A7A-D48F-48A6-8E5D-FECBE5901D82}) (Version: 3.8.1150.0 - Python Software Foundation) Hidden Python 3.8.1 pip Bootstrap (64-bit) (HKLM\...\{912206BD-EA52-4586-8A89-BD7716E5BD50}) (Version: 3.8.1150.0 - Python Software Foundation) Hidden Python 3.8.1 Standard Library (64-bit) (HKLM\...\{7E83F4DD-B376-4158-90C3-4E9AE54D0AB3}) (Version: 3.8.1150.0 - Python Software Foundation) Hidden Python 3.8.1 Tcl/Tk Support (64-bit) (HKLM\...\{96BBA29C-F949-4DF7-9221-EEE7F7D66377}) (Version: 3.8.1150.0 - Python Software Foundation) Hidden Python 3.8.1 Test Suite (64-bit) (HKLM\...\{64A5FC80-95DB-4CA0-AA8A-C4D652BBC96E}) (Version: 3.8.1150.0 - Python Software Foundation) Hidden Python 3.8.1 Utility Scripts (64-bit) (HKLM\...\{F0D5C7E7-4ECE-425F-BD33-8091DB57A31F}) (Version: 3.8.1150.0 - Python Software Foundation) Hidden Python Launcher (HKLM-x32\...\{7DBA9B7D-924F-4CE8-8AE8-65977EF62744}) (Version: 3.8.6860.0 - Python Software Foundation) Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.) Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.23.252 - Rockstar Games) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.5.5 - Rockstar Games) Rokoko Motion Library - Maya 2020.1 (HKLM\...\Rokoko Motion Library 1.0.0) (Version: 1.0.0 - Rokoko) Rokoko Motion Library (HKLM\...\{92A4BB66-5445-4E92-ABFA-9DC9EE7FB559}) (Version: 1.0.0 - Rokoko) Hidden Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 6.1.0.170 - Samsung Electronics) SDK ARM Additions (HKLM-x32\...\{73681F86-CD86-4208-572F-959B45430B04}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden SDK ARM Redistributables (HKLM-x32\...\{67EE3804-9642-62BA-EBF1-B1561FB4ECBE}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Skype version 8.62 (HKLM-x32\...\Skype_is1) (Version: 8.62 - Skype Technologies S.A.) Slack Machine-Wide (HKLM\...\{B27E58D0-C4C7-4F2D-859F-20BEB9BDCAA2}) (Version: 4.6.0.0 - Slack Technologies) Spotify (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Spotify) (Version: 1.1.37.690.g8f3b16fc - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Substance in Maya 2020-2.0.3 (HKLM\...\{47209805-a05c-4af2-b34b-459745022023}_is1) (Version: 2.0.3 - Adobe) Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.2.0.24753 - Microsoft Corporation) TreeSize V7.1.3 (64 bit) (HKLM\...\TreeSize_is1) (Version: 7.1.3 - JAM Software) TypeScript SDK (HKLM-x32\...\{7E046A6D-8DDB-41BF-B2FB-46CA2C9506FB}) (Version: 3.8.3.0 - Microsoft Corporation) Hidden UE4 Prerequisites (x64) (HKLM\...\{F9EC45F9-074A-48BF-92E9-A8CADD56F693}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden UE4 Prerequisites (x64) (HKLM-x32\...\{4e242cc8-5e3c-4b08-9d55-dbc62ddd1208}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden Universal CRT Extension SDK (HKLM-x32\...\{13952D7A-B7B3-F4F8-5F29-5CD18E8168B7}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (HKLM-x32\...\{74CBC330-ED16-31B9-E8BE-0C6A8E67DE32}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Universal CRT Redistributable (HKLM-x32\...\{0460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9}) (Version: 10.0.26624 - Microsoft Corporation) Hidden Universal CRT Redistributable (HKLM-x32\...\{847D4DAF-0182-265B-324F-406462E8A90D}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Universal CRT Tools x64 (HKLM\...\{54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Universal CRT Tools x86 (HKLM-x32\...\{9F7B0D96-881D-8850-C303-43F3A08E6902}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Universal General MIDI DLS Extension SDK (HKLM-x32\...\{6F54BF87-2EE6-FA6D-431D-33A665992D49}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) VALORANT (HKU\S-1-5-21-159775396-41617272-500321057-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc) vcpp_crt.redist.clickonce (HKLM-x32\...\{AA38DC14-21AD-4BE9-BCDB-736C0FD94713}) (Version: 14.26.28720 - Microsoft Corporation) Hidden Visual Studio Enterprise 2019 (HKLM-x32\...\aa9440a3) (Version: 16.6.30114.105 - Microsoft Corporation) VS Immersive Activate Helper (HKLM-x32\...\{A71406B5-E487-4B01-8E59-D466841350F5}) (Version: 16.0.102.0 - Microsoft Corporation) Hidden VS JIT Debugger (HKLM\...\{C7E8A4F2-EF09-42A8-B892-69D5ED99D965}) (Version: 16.0.102.0 - Microsoft Corporation) Hidden VS Script Debugging Common (HKLM\...\{A4272808-82F5-410F-A5F9-1BF6F63F6B9A}) (Version: 16.0.102.0 - Microsoft Corporation) Hidden vs_BlendMsi (HKLM-x32\...\{B5E3A3E1-1529-4D5A-9E95-34971FA07825}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_clickoncebootstrappermsi (HKLM-x32\...\{BAF91847-0A64-405E-98EC-A0BA6FB4BC4E}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_clickoncebootstrappermsires (HKLM-x32\...\{271F1F42-B547-4498-825F-590DBB1774F7}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_clickoncesigntoolmsi (HKLM-x32\...\{30D97A69-3C0F-4552-9A72-60E591B210C7}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_codecoveragemsi (HKLM-x32\...\{CCD2BE9E-EF63-480B-BB98-E24CB96A21E0}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_codeduitestframeworkmsi (HKLM-x32\...\{92F1055E-06E7-4928-A29D-2D868EB12D26}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_communitymsi (HKLM-x32\...\{2CCEC45B-1462-4FFD-8214-90E3C25000F7}) (Version: 16.6.30014 - Microsoft Corporation) Hidden vs_communitymsires (HKLM-x32\...\{95E79BBC-97FD-4FEB-91B5-CC0231324812}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_cuitcommoncoremsi16 (HKLM-x32\...\{DCCEE148-43B4-4F45-9E79-DB061E21D50F}) (Version: 16.5.29521 - Microsoft Corporation) Hidden vs_cuitextensionmsi16 (HKLM-x32\...\{59269AF2-EB96-4585-B336-B6C310898ED4}) (Version: 16.5.29521 - Microsoft Corporation) Hidden vs_cuitextensionmsi16_x64 (HKLM-x32\...\{ED5909A0-996B-472D-B501-11D1AAFE9FE4}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_devenvmsi (HKLM-x32\...\{AD0C92A4-1514-4BC1-A723-A272A8343924}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_filehandler_amd64 (HKLM-x32\...\{7A991159-9069-471D-B85F-89B1E4E66822}) (Version: 16.6.30014 - Microsoft Corporation) Hidden vs_filehandler_x86 (HKLM-x32\...\{16E73A5A-339C-4177-A0BD-04278C06625C}) (Version: 16.6.30014 - Microsoft Corporation) Hidden vs_FileTracker_Singleton (HKLM-x32\...\{C8E7C1FC-925C-4163-BAB3-769E6C7961D2}) (Version: 16.6.30014 - Microsoft Corporation) Hidden vs_Graphics_Singletonx64 (HKLM\...\{ABBD10CA-0CFA-4D76-B033-F76C55A54336}) (Version: 16.4.29411 - Microsoft Corporation) Hidden vs_Graphics_Singletonx86 (HKLM-x32\...\{E47B4703-2337-4ED0-BA24-3EC08D643684}) (Version: 16.4.29411 - Microsoft Corporation) Hidden vs_minshellinteropmsi (HKLM-x32\...\{27B16914-BC5D-4018-8074-071262A27F6D}) (Version: 16.2.28917 - Microsoft Corporation) Hidden vs_minshellmsi (HKLM-x32\...\{DA7AB063-D1A3-4D5A-8221-598ACF4574B4}) (Version: 16.6.30014 - Microsoft Corporation) Hidden vs_minshellmsires (HKLM-x32\...\{EC04CD66-C03A-470D-B0D2-4BBC87F6382D}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_networkemulationmsi_x64 (HKLM-x32\...\{4A7C360D-F268-4712-8D92-EBE9936DBEC8}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_SQLClickOnceBootstrappermsi (HKLM-x32\...\{0A54CADD-CBA1-4BC9-A134-6C9F91F41B9A}) (Version: 16.5.29521 - Microsoft Corporation) Hidden vs_tipsmsi (HKLM-x32\...\{E208E682-50EE-4F2F-9860-C91B906B8A03}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_vswebprotocolselectormsi (HKLM-x32\...\{5F2E2347-2042-4340-BBDD-262BB1791EC7}) (Version: 16.6.30014 - Microsoft Corporation) Hidden Wacom Tablet (HKLM\...\Wacom Tablet Driver) (Version: 6.3.39-1 - Wacom Technology Corp.) Web Components (HKLM-x32\...\{03B13AF8-9625-478A-AF0E-205337B9415A}_is1) (Version: 3.0.6.26 - ) WinAppDeploy (HKLM-x32\...\{8E3AE0EF-D067-700C-BDB4-10D5552155DC}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Windows SDK AddOn (HKLM-x32\...\{E6F877A1-2F65-4BF0-87B6-A4071B7663D3}) (Version: 10.1.0.0 - Microsoft Corporation) Windows Software Development Kit - Windows 10.0.18362.1 (HKLM-x32\...\{126dedf0-cc0e-4b48-9ece-806b0e437195}) (Version: 10.1.18362.1 - Microsoft Corporation) Windows Subsystem for Linux Update (HKLM\...\{9F858BB9-156F-4C4C-9295-0A06CA83D17C}) (Version: 4.19.104 - Microsoft Corporation) WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH) WinRT Intellisense Desktop - en-us (HKLM-x32\...\{E67F1F03-FB4A-3D61-8999-E6A4C4B26F34}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{7EF010FF-7800-28BA-FF49-2D219EC7BA82}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense IoT - en-us (HKLM-x32\...\{36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{6B03A6A4-643C-57CE-CA6F-4E19BF47497A}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense Mobile - en-us (HKLM-x32\...\{918A448F-59E8-FBF5-B087-D3F07160C7E0}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense PPI - en-us (HKLM-x32\...\{66483041-F590-EC46-4AF0-EE39C62FB680}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{9C61E6D2-C43E-6746-B519-6185558C4A24}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense UAP - en-us (HKLM-x32\...\{6B37CC5B-78DF-5050-2215-68479716A587}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{250D5341-0879-4016-399C-BBCD87B80E95}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Wireshark 3.2.1 64-bit (HKLM-x32\...\Wireshark) (Version: 3.2.1 - The Wireshark developer community, hxxps://www.wireshark.org) Packages: ========= Acrobat Notification Client -> C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2020-05-14] (Adobe Systems Incorporated) Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc [2019-11-04] (Adobe Systems Incorporated) Adobe XD -> C:\Program Files\WindowsApps\Adobe.CC.XD_27.2.12.4_x64__adky2gkssdxte [2020-03-26] (Adobe Systems Incorporated) Debian -> C:\Program Files\WindowsApps\TheDebianProject.DebianGNULinux_1.1.8.0_x64__76v4gfsz19hv4 [2020-03-13] (The Debian Project) Drawboard PDF -> C:\Program Files\WindowsApps\Drawboard.DrawboardPDF_5.29.0.0_x64__gqbn7fs4pywxm [2020-07-16] (Drawboard) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_115.1.152.0_x64__v10z8vjag6ke6 [2020-05-28] (HP Inc.) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-10] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-10] (Microsoft Corporation) [MS Ad] Microsoft Edge Dev -> C:\Program Files (x86)\Microsoft\Edge Dev\Application [2020-07-15] (0) Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.7082.0_x64__8wekyb3d8bbwe [2020-07-15] (Microsoft Studios) [MS Ad] Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_20.10630.5323.0_x64__8wekyb3d8bbwe [2020-07-18] (Microsoft Corporation) MPEG-2 Video Extension -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.22661.0_x64__8wekyb3d8bbwe [2019-12-30] (Microsoft Corporation) MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad] NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.958.0_x64__56jybvy8sckqj [2020-06-25] (NVIDIA Corp.) Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-04-20] (Microsoft Corporation) Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c [2020-07-15] (Skype) [Startup Task] Windows Terminal -> C:\Program Files\WindowsApps\Microsoft.WindowsTerminal_1.0.1811.0_x64__8wekyb3d8bbwe [2020-06-30] (Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-159775396-41617272-500321057-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-5BE9ADC92EB9} -> [Creative Cloud Files] => C:\Users\Max\Creative Cloud Files [2019-10-09 17:37] CustomCLSID: HKU\S-1-5-21-159775396-41617272-500321057-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\Max\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19231.3\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-159775396-41617272-500321057-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\Max\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19231.3\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-159775396-41617272-500321057-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\Max\Dropbox [2019-10-08 22:44] CustomCLSID: HKU\S-1-5-21-159775396-41617272-500321057-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> ) ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems, Incorporated -> Adobe Systems Inc.) ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [GpgEX] -> {CCD955E4-5C16-4A33-AFDA-A8947A94946B} => C:\Program Files (x86)\Gpg4win\bin_64\gpgex.dll [2019-12-17] (g10 Code GmbH) [File not signed] ContextMenuHandlers1: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.20.4.57\NavShExt.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.20.4.57\NavShExt.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ContextMenuHandlers3: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Program Files\PowerToys\modules\PowerRename\PowerRenameExt.dll [2020-06-29] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers4: [GpgEX] -> {CCD955E4-5C16-4A33-AFDA-A8947A94946B} => C:\Program Files (x86)\Gpg4win\bin_64\gpgex.dll [2019-12-17] (g10 Code GmbH) [File not signed] ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ccad5caddc3a3d35\nvshext.dll [2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> ) ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems, Incorporated -> Adobe Systems Inc.) ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ContextMenuHandlers6: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.20.4.57\NavShExt.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Whitelisted) ==================== ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeX Live 2020\TeX Live command-line.lnk -> D:\texlive\2020\tlpkg\installer\tl-cmd.bat () Shortcut: C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeX Live 2020\Uninstall TeX Live.lnk -> D:\texlive\2020\tlpkg\installer\uninst.bat () Shortcut: C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeX Live 2019\TeX Live command-line.lnk -> D:\texlive\2019\tlpkg\installer\tl-cmd.bat () Shortcut: C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeX Live 2019\Uninstall TeX Live.lnk -> D:\texlive\2019\tlpkg\installer\uninst.bat () Shortcut: C:\Users\Max\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation) Shortcut: C:\Users\Public\Desktop\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation) ShortcutWithArgument: C:\Users\Max\Desktop\BootstrapVue.lnk -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=heabpfjjlpenmjpelijmakdakcjffnke ShortcutWithArgument: C:\Users\Max\AppData\Local\Microsoft\Edge Dev\User Data\Default\Microsoft Edge Dev.lnk -> C:\Program Files (x86)\Microsoft\Edge Dev\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default ShortcutWithArgument: C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Brave Apps\BootstrapVue.lnk -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=heabpfjjlpenmjpelijmakdakcjffnke ShortcutWithArgument: C:\Users\Max\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge Dev.lnk -> C:\Program Files (x86)\Microsoft\Edge Dev\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default ShortcutWithArgument: C:\Users\Max\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\e2f3576b7abb043d\Brave.lnk -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc.) -> --profile-directory=Default ==================== Loaded Modules (Whitelisted) ============= 2020-07-17 12:11 - 2020-07-17 12:11 - 001076736 _____ () [File not signed] \\?\c:\Users\Max\.vscode-insiders\extensions\ms-python.python-2020.7.94776\out\client\node_modules\zeromq\prebuilds\win32-x64\electron.napi.node 2020-07-17 20:32 - 2020-07-17 20:32 - 096130560 _____ () [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\libcef.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000117760 _____ () [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\libEGL.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 004342784 _____ () [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\libGLESv2.dll 2020-06-30 13:42 - 2020-06-30 13:42 - 000209408 _____ () [File not signed] C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\quazip.dll 2020-06-30 13:42 - 2020-06-30 13:42 - 000101376 _____ () [File not signed] C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\zlib.dll 2020-04-29 15:01 - 2020-07-07 01:43 - 001899520 _____ () [File not signed] C:\Program Files (x86)\Microsoft\Skype for Desktop\ffmpeg.dll 2020-04-29 15:01 - 2020-07-07 01:43 - 000115712 _____ () [File not signed] C:\Program Files (x86)\Microsoft\Skype for Desktop\libegl.dll 2020-04-29 15:01 - 2020-07-07 01:43 - 006668800 _____ () [File not signed] C:\Program Files (x86)\Microsoft\Skype for Desktop\libglesv2.dll 2020-06-09 13:22 - 2020-06-09 13:22 - 002128896 _____ () [File not signed] C:\Program Files\Docker\Docker\frontend\ffmpeg.dll 2020-06-09 13:22 - 2020-06-09 13:22 - 000141824 _____ () [File not signed] C:\Program Files\Docker\Docker\frontend\libegl.dll 2020-06-09 13:22 - 2020-06-09 13:22 - 007731200 _____ () [File not signed] C:\Program Files\Docker\Docker\frontend\libglesv2.dll 2020-01-21 19:22 - 2019-12-13 14:43 - 000293888 _____ () [File not signed] C:\Program Files\PostgreSQL\12\bin\LIBPQ.dll 2020-01-21 19:20 - 2019-12-13 14:43 - 002269696 _____ () [File not signed] C:\Program Files\PostgreSQL\12\bin\libxml2.dll 2020-04-30 22:20 - 2020-04-30 22:20 - 000032256 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\__init__.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000216064 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\class_validators.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000250880 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\color.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000118272 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\dataclasses.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000099840 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\datetime_parse.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000134656 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\decorator.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000107520 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\env_settings.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000136704 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\error_wrappers.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000197120 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\errors.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000310784 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\fields.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000075264 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\json.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000380928 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\main.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000221696 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\networks.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000059904 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\parse.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000325120 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\schema.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000060416 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\tools.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000346624 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\types.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000116736 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\typing.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000233472 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\utils.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000261120 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\validators.cp38-win_amd64.pyd 2020-04-30 22:20 - 2020-04-30 22:20 - 000064000 _____ () [File not signed] C:\Users\Max\AppData\Local\Programs\Python\Python38\lib\site-packages\pydantic\version.cp38-win_amd64.pyd 2020-01-21 19:20 - 2019-12-13 14:43 - 001872271 _____ (Free Software Foundation) [File not signed] C:\Program Files\PostgreSQL\12\bin\libiconv-2.dll 2020-01-21 19:20 - 2019-12-13 14:43 - 000829175 _____ (Free Software Foundation) [File not signed] C:\Program Files\PostgreSQL\12\bin\libintl-8.dll 2019-07-14 13:19 - 2019-12-17 12:47 - 001043968 _____ (g10 Code GmbH) [File not signed] C:\Program Files (x86)\Gpg4win\bin_64\gpgex.dll 2019-12-17 12:48 - 2019-12-17 12:48 - 002804224 _____ (g10 Code GmbH) [File not signed] C:\Program Files (x86)\Gpg4win\bin_64\gpgol.dll 2019-08-09 17:10 - 2019-08-09 17:10 - 000114688 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\Microsoft.Management.Infrastructure.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000073728 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\Microsoft.Win32.Registry.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000179200 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Collections.Concurrent.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000322048 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Collections.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000081408 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Collections.Specialized.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000143872 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Console.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000019968 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Diagnostics.FileVersionInfo.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000247808 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Diagnostics.Process.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000206848 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.IO.FileSystem.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000121856 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.IO.Pipes.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000410624 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Linq.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 005246976 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Linq.Expressions.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000230912 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Private.Uri.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000197120 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Runtime.Extensions.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000202752 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Security.AccessControl.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000135680 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Security.Principal.Windows.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000848896 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Text.Encoding.CodePages.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000068096 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Threading.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000098816 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\PowerShell\7\System.Threading.Tasks.Parallel.dll 2020-04-19 18:18 - 2020-04-19 18:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\AppVIsvSubsystems64.dll 2020-04-19 18:18 - 2020-04-19 18:18 - 000000000 ____L (Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\c2r64.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 000837120 _____ (Microsoft) [File not signed] [File is in use] C:\Program Files\PowerShell\7\Microsoft.ApplicationInsights.dll 2020-05-13 02:10 - 2020-05-13 02:10 - 001836032 _____ (Newtonsoft) [File not signed] [File is in use] C:\Program Files\PowerShell\7\Newtonsoft.Json.dll 2020-07-20 13:02 - 2020-07-20 13:02 - 003060736 _____ (Newtonsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Newtonsoft.Json\7bb5f69bc73f5030d4a31549391e8605\Newtonsoft.Json.ni.dll 2020-07-20 01:52 - 2020-07-20 01:52 - 003922944 _____ (Newtonsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Newtonsoft.Json\0c701b348a834c92772f74c937958b1e\Newtonsoft.Json.ni.dll 2020-01-18 12:29 - 2020-01-18 12:29 - 001491456 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files\Duplicati 2\SQLite\win64\SQLite.Interop.dll 2020-01-18 12:29 - 2020-01-18 12:29 - 001625088 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files\Duplicati 2\x64\SQLite.Interop.dll 2020-05-04 10:57 - 2020-05-04 10:57 - 000090112 _____ (Silicon Laboratories, Inc.) [File not signed] C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\SiUSBXp.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000760832 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\chrome_elf.dll 2020-01-21 19:20 - 2019-12-13 14:43 - 021529088 _____ (The ICU Project) [File not signed] C:\Program Files\PostgreSQL\12\bin\icudt53.dll 2020-01-21 19:20 - 2019-12-13 14:43 - 001844224 _____ (The ICU Project) [File not signed] C:\Program Files\PostgreSQL\12\bin\icuin53.dll 2020-01-21 19:20 - 2019-12-13 14:43 - 001317376 _____ (The ICU Project) [File not signed] C:\Program Files\PostgreSQL\12\bin\icuuc53.dll 2019-10-13 19:19 - 2019-10-13 19:18 - 001277440 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll 2019-10-13 19:19 - 2019-10-13 19:18 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll 2020-05-06 11:50 - 2020-05-06 11:50 - 002516992 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\libcrypto-1_1.dll 2020-05-06 11:50 - 2020-05-06 11:50 - 000530944 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\libssl-1_1.dll 2020-01-21 19:20 - 2019-12-13 14:43 - 002842112 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\PostgreSQL\12\bin\libcrypto-1_1-x64.dll 2020-01-21 19:20 - 2019-12-13 14:43 - 000680960 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\PostgreSQL\12\bin\libssl-1_1-x64.dll 2019-10-13 19:19 - 2019-10-13 19:18 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll 2020-01-30 15:43 - 2019-10-13 19:18 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll 2020-01-30 15:43 - 2019-10-13 19:18 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll 2020-01-30 15:43 - 2019-10-13 19:18 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll 2020-01-30 15:43 - 2019-10-13 19:18 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll 2020-01-30 15:43 - 2019-10-13 19:18 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000047104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\audio\qtaudio_windows.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000026112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\imageformats\qgif.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000027136 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\imageformats\qico.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000243712 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\imageformats\qjpeg.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000223744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\imageformats\qmng.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000020992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\imageformats\qsvg.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000332288 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\imageformats\qtiff.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 001140224 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\platforms\qwindows.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000041984 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\qml\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\qml\QtGraphicalEffects\qtgraphicaleffectsplugin.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\qml\QtQml\Models.2\modelsplugin.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\qml\QtQuick.2\qtquick2plugin.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000084480 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\qml\QtQuick\Controls.2\qtquickcontrols2plugin.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000267776 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\qml\QtQuick\Controls\qtquickcontrolsplugin.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000071680 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\qml\QtQuick\Layouts\qquicklayoutsplugin.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000211456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\qml\QtQuick\Templates.2\qtquicktemplates2plugin.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\qml\QtQuick\Window.2\windowplugin.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 004943360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5Core.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 005022208 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5Gui.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000626176 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5Multimedia.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000877056 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5Network.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 002908672 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5Qml.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 003078656 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5Quick.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000096256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5QuickControls2.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000681472 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5QuickTemplates2.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000259072 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5Svg.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 004718080 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5Widgets.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000439296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5WinExtras.dll 2020-07-17 20:32 - 2020-07-17 20:32 - 000159232 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Battle.net\Battle.net.12152\Qt5Xml.dll ==================== Alternate Data Streams (Whitelisted) ======== (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:6DAA43DB [194] ==================== Safe Mode (Whitelisted) ================== ==================== Association (Whitelisted) ================= ==================== Internet Explorer trusted/restricted ========== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-159775396-41617272-500321057-1001\...\sharepoint.com -> hxxps://ittuberlin-files.sharepoint.com ==================== Hosts content: ========================= (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2019-03-19 06:49 - 2020-06-07 11:55 - 000001096 _____ C:\WINDOWS\system32\drivers\etc\hosts 192.168.178.68 host.docker.internal 192.168.178.68 gateway.docker.internal 127.0.0.1 kubernetes.docker.internal 2019-10-12 13:46 - 2020-07-21 01:07 - 000000539 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics 172.17.231.121 ac09dc8d-5357-4924-9948-1d5d1c6b8176.mshome.net # 2020 7 1 27 23 7 58 611 172.17.224.1 DESKTOP-1CJHL9G.mshome.net # 2025 7 6 19 23 7 58 739 ==================== Other Areas =========================== (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Users\Max\AppData\Local\Programs\Python\Python38\Scripts\;C:\Users\Max\AppData\Local\Programs\Python\Python38\;C:\Users\Max\AppData\Local\Programs\Python\Python37\Scripts\;C:\Users\Max\AppData\Local\Programs\Python\Python37\;C:\Program Files (x86)\Common Files\Intel\Shared Libraries\redist\intel64\compiler;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\ProgramData\chocolatey\bin;C:\Program Files\Microsoft SQL Server\130\Tools\Binn\;C:\Program Files\Microsoft SQL Server\Client SDK\ODBC\170\Tools\Binn\;C:\Program Files\CMake\bin;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Gpg4win\..\GnuPG\bin;C:\Program Files\MATLAB\R2019b\bin;%MAVEN_HOME%\bin;C:\Program Files\PowerShell\7\;C:\Go\bin;C:\Program Files\dotnet\;C:\Program Files\Docker\Docker\resources\bin;C:\ProgramData\DockerDesktop\version-bin;C:\Program Files\Git\cmd;C:\Program Files\nodejs\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-159775396-41617272-500321057-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Max\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Windows Firewall is enabled. Network Binding: ============= Ethernet: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled) vEthernet (WSL): Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled) vEthernet (Default Switch): Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled) Wi-Fi: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled) vEthernet (Ethernet): Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled) vEthernet (Wi-Fi): Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled) ==================== MSCONFIG/TASK MANAGER disabled items == (If an entry is included in the fixlist, it will be removed.) HKLM\...\StartupApproved\StartupFolder: => "Duplicati 2.lnk" HKLM\...\StartupApproved\StartupFolder: => "AnyDesk.lnk" HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "Autodesk Desktop App" HKU\S-1-5-21-159775396-41617272-500321057-1001\...\StartupApproved\StartupFolder: => "GenuineService.lnk" HKU\S-1-5-21-159775396-41617272-500321057-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-159775396-41617272-500321057-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams" HKU\S-1-5-21-159775396-41617272-500321057-1001\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer" HKU\S-1-5-21-159775396-41617272-500321057-1001\...\StartupApproved\Run: => "CCXProcess" HKU\S-1-5-21-159775396-41617272-500321057-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-159775396-41617272-500321057-1001\...\StartupApproved\Run: => "DeepL" HKU\S-1-5-21-159775396-41617272-500321057-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-159775396-41617272-500321057-1001\...\StartupApproved\Run: => "Docker Desktop" HKU\S-1-5-21-159775396-41617272-500321057-1001\...\StartupApproved\Run: => "Keybase.Keybase.GUI" ==================== FirewallRules (Whitelisted) ================ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{C68B3156-D1D6-461F-A7F3-530580BA3696}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{225DBBDB-A3CC-4110-9A0B-27D290B0DCF7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{B722F0B1-1DCF-482C-895B-5E43D2D3D9EB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{483C5816-AA44-42A1-902B-D18C254B2575}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{18D7E11E-05ED-4938-9D10-15F7FE8C9613}] => (Block) C:\program files (x86)\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision) FirewallRules: [{BD134E03-9EE1-4355-BCE7-E206FA168F8A}] => (Block) C:\program files (x86)\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision) FirewallRules: [UDP Query User{85B5865D-E0B0-4F33-85E5-B932EA1EB868}C:\program files (x86)\call of duty modern warfare\modernwarfare.exe] => (Allow) C:\program files (x86)\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision) FirewallRules: [TCP Query User{09CB7F1B-8259-4F5E-935C-56A07130F952}C:\program files (x86)\call of duty modern warfare\modernwarfare.exe] => (Allow) C:\program files (x86)\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision) FirewallRules: [{97A632D5-4DA4-4224-B514-0B2E314F03A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BloonsTD6\BloonsTD6.exe () [File not signed] FirewallRules: [{E551D87E-9D87-4AC5-9F6D-019195ABB622}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BloonsTD6\BloonsTD6.exe () [File not signed] FirewallRules: [{423039F3-E371-47BB-8984-ED43892C1B0C}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\85.0.552.1\msedgewebview2.exe => No File FirewallRules: [{46D2BCBA-BFCC-410A-937A-FDC6EB2107DA}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\85.0.545.0\msedgewebview2.exe => No File FirewallRules: [{BE51B51B-3B97-4F4B-904E-424B729ABD9F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scrap Mechanic\Release\ScrapMechanic.exe () [File not signed] FirewallRules: [{607709A4-6D2F-471D-8DF3-F62497D75F95}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scrap Mechanic\Release\ScrapMechanic.exe () [File not signed] FirewallRules: [{7A5BE60B-0EDA-4615-A305-739B221C2C1F}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\85.0.538.0\msedgewebview2.exe => No File FirewallRules: [{49748FE7-45F7-4D16-AD12-07D1B0C1BA6E}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\85.0.531.1\msedgewebview2.exe => No File FirewallRules: [{F9FC86EB-A711-44E4-AF28-35D35640CE06}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\84.0.522.9\msedgewebview2.exe => No File FirewallRules: [{B918CBAB-EA9B-48B5-B91A-AEDF26398CC3}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\84.0.522.5\msedgewebview2.exe => No File FirewallRules: [{1AD5A064-6B6A-4692-957B-E3BFD00D0B6A}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\84.0.516.1\msedgewebview.exe => No File FirewallRules: [{3CEAAB5D-EF66-4E00-AF6C-020080241D5C}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\84.0.508.0\msedgewebview.exe => No File FirewallRules: [{018A0E67-8AD3-4420-B108-4F83AA1E40DB}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\84.0.502.0\msedgewebview.exe => No File FirewallRules: [{373518CD-74C2-487F-9F71-0B805F24ACB7}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\84.0.495.2\msedgewebview.exe => No File FirewallRules: [{585C37AB-EC25-4F12-8A03-5A206BCD8912}] => (Allow) C:\Users\Max\AppData\Local\Programs\Fiddler\Fiddler.exe (Progress Software Corporation -> Progress Software Corporation) FirewallRules: [{80F453D8-E4F9-4B4E-8DBC-01D2B941CC89}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\84.0.488.1\msedgewebview.exe => No File FirewallRules: [{E6C6F9F7-C554-4ACA-B647-7FC64E1048B6}] => (Allow) C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{D9140829-A021-4882-BCB4-D68C79E485A5}] => (Allow) C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{E53378DA-4396-4A8E-BAFA-B90D08D765B5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed] FirewallRules: [{151AD3F8-421C-4CB5-BF09-4A782851B857}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed] FirewallRules: [{A36CC4B9-115D-45E2-8AB2-6514B2ADDF46}] => (Block) C:\users\Max\appdata\local\packages\thedebianproject.debiangnulinux_76v4gfsz19hv4\localstate\rootfs\home\life\.vscode-server-insiders\bin\ee803826ad8f16534bbf72fa463306ebcb1e7ee6\node => No File FirewallRules: [{CFDD7405-A104-40C5-8B38-53F517C8ED5E}] => (Block) C:\users\Max\appdata\local\packages\thedebianproject.debiangnulinux_76v4gfsz19hv4\localstate\rootfs\home\life\.vscode-server-insiders\bin\ee803826ad8f16534bbf72fa463306ebcb1e7ee6\node => No File FirewallRules: [UDP Query User{7D46347F-9A7A-44DF-94EA-F958855EB0C3}C:\users\Max\appdata\local\packages\thedebianproject.debiangnulinux_76v4gfsz19hv4\localstate\rootfs\home\life\.vscode-server-insiders\bin\ee803826ad8f16534bbf72fa463306ebcb1e7ee6\node] => (Allow) C:\users\Max\appdata\local\packages\thedebianproject.debiangnulinux_76v4gfsz19hv4\localstate\rootfs\home\life\.vscode-server-insiders\bin\ee803826ad8f16534bbf72fa463306ebcb1e7ee6\node => No File FirewallRules: [TCP Query User{703A273A-776F-4625-9A2A-73D7374B9820}C:\users\Max\appdata\local\packages\thedebianproject.debiangnulinux_76v4gfsz19hv4\localstate\rootfs\home\life\.vscode-server-insiders\bin\ee803826ad8f16534bbf72fa463306ebcb1e7ee6\node] => (Allow) C:\users\Max\appdata\local\packages\thedebianproject.debiangnulinux_76v4gfsz19hv4\localstate\rootfs\home\life\.vscode-server-insiders\bin\ee803826ad8f16534bbf72fa463306ebcb1e7ee6\node => No File FirewallRules: [{DC2745CE-9745-4740-80EA-3E149DF303CB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Terraria\Terraria.exe (Re-Logic) [File not signed] FirewallRules: [{0DDB6F8F-0867-48B6-B16B-A6A32029B2E3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Terraria\Terraria.exe (Re-Logic) [File not signed] FirewallRules: [{A91E7477-CAA8-4DE4-B333-8A0847C985CE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{B32F82CD-D05F-48A2-B8FB-0459147FDEC9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{09BCD776-33A6-40BC-B8D2-3789FC9D6945}] => (Allow) C:\Program Files\EPSON Projector\Epson iProjection\EMP_MPP.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) FirewallRules: [{5C463B94-8DE7-475D-9639-4B20DA99BDA2}] => (Allow) C:\Program Files\EPSON Projector\Epson iProjection\EMP_MPP.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) FirewallRules: [{527D2412-059F-463A-945D-DE6E4F4B2C20}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{609F4DAC-13E3-48E1-B54E-EE116BD6592C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{C5FD959C-B360-4377-95D4-BE8993A5E739}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{67BA8D27-E530-4ECB-90E0-9A8E13900848}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{C4B76BEB-F2B6-4877-A19C-D7534DC07627}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{EC180CE1-CBB9-4B02-966D-39C0348A2B0F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{4116F561-A1EA-47F6-A05C-6F6C5E93FD83}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{E9DCA70B-7483-4BA1-83CF-280487C1B4E1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{6CCB91E2-80AD-45CD-A242-776898363145}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File FirewallRules: [{8C52A7E7-9B31-4F4D-A763-113656BB4E09}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File FirewallRules: [{B2C11F6D-AA00-489F-B05B-8889B68AD997}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{4F54E6A5-2669-4A35-A898-9EF8FF6AE252}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [UDP Query User{7A5CDC18-AFE9-409D-B3BD-B9C405F60B2F}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) FirewallRules: [TCP Query User{BC36DA8E-3A4B-4A17-AD2A-6E2F9026EC51}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) FirewallRules: [UDP Query User{503336D6-DCEE-4496-8DE9-194821F44DF3}C:\users\Max\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\Max\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [TCP Query User{31EA6226-4161-4E65-887F-ED93DB5F5881}C:\users\Max\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\Max\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{FC323875-A6DB-4579-8512-1B701A2B346E}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{995B999C-9AFD-4B5E-84A9-520DC7EBFDF8}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [UDP Query User{50B78151-7F9F-45E2-8A3C-39D28C75CC9B}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) FirewallRules: [TCP Query User{66A29D98-EF8B-43CF-A198-544754C36E0E}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) FirewallRules: [{97D632E0-BC9D-414F-B19F-7774C1E9B776}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{4D2E0F5D-924A-4963-8947-64E90D547D59}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{6BAE7E76-2CE9-40DA-83DF-9C12BF338B86}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{867C51D6-7720-420C-AD06-5C3F58B29D1F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{93E18E63-FEEA-43B9-ACB5-3A2055DAE70C}C:\users\Max\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\Max\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [TCP Query User{71FBE846-B5D3-4C2A-BAF5-B6F789E8D70B}C:\users\Max\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\Max\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{BBDE558C-43DD-4BCC-B95B-818C89E46834}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scrap Mechanic\Release\ScrapMechanic.exe () [File not signed] FirewallRules: [{417C879C-728A-4FB5-8197-D02FDB106BD9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scrap Mechanic\Release\ScrapMechanic.exe () [File not signed] FirewallRules: [{410330E0-AB3A-480A-8F6B-714D92A59700}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe (Grinding Gear Games Limited -> ) FirewallRules: [{1C786829-D750-47AA-81D3-4C9D82940095}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe (Grinding Gear Games Limited -> ) FirewallRules: [{6A806B55-DF16-4965-BD06-1F128237D867}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{05FC54BE-6409-4A3F-BE7C-F325C434B370}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{7330A6FF-1AD3-4148-BD4B-13B64333E40E}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{15AF4AB6-3F73-4731-BE77-60A3F695CE64}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{5D9B864C-39AD-48A2-83F9-BEFC3D886298}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{9253442A-4044-49BC-8384-198BD3331245}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{343FBA21-3012-4909-BC23-05304C021023}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{9BE9E3E1-1402-43F2-A79F-02119043448A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{B5261D39-33AB-4E48-B29A-2590E870633D}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\msedge.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{F6BCCC55-D241-45C2-9AE0-20A158721071}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Dev\Application\85.0.564.8\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{19CCC464-E8AE-4CB8-9D67-2E35F0CA0626}] => (Allow) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.) FirewallRules: [{F46F5A8B-37A7-49C1-A008-538B1D11B4FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed] FirewallRules: [{E621E8CE-0F67-4C75-90C2-1A03F594106E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed] FirewallRules: [{6A9A6372-7FC9-4EB6-8B28-38652289A4E2}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH) FirewallRules: [{47AF7390-E1BD-4BBE-A278-0E06FDDD5D01}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH) FirewallRules: [{89DE9A99-A0B3-4CCE-9990-3BD336A09659}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH) FirewallRules: [{9B89E683-8F5C-4986-BEA4-53BDF89DDE0C}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH) FirewallRules: [{D9D465BA-4920-4D70-B721-20974D5D405E}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH) FirewallRules: [{33C6C9AA-642B-4315-92B1-B835B3B7EC3B}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH) ==================== Restore Points ========================= 17-07-2020 13:23:26 Windows Modules Installer ==================== Faulty Device Manager Devices ============ ==================== Event log errors: ======================== Application errors: ================== Error: (07/20/2020 11:53:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: SearchApp.exe, version: 10.0.19041.153, time stamp: 0x0ba6e048 Faulting module name: KERNELBASE.dll, version: 10.0.19041.388, time stamp: 0x3cc24707 Exception code: 0xc0000602 Fault offset: 0x000000000010b37c Faulting process id: 0x25e0 Faulting application start time: 0x01d65ec22c07c8ad Faulting application path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe Faulting module path: C:\WINDOWS\System32\KERNELBASE.dll Report Id: b83549f2-a7f6-4d89-a4df-205f0d8c3b78 Faulting package full name: Microsoft.Windows.Search_1.14.0.19041_neutral_neutral_cw5n1h2txyewy Faulting package-relative application ID: CortanaUI Error: (07/20/2020 08:19:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: wmiprvse.exe, version: 10.0.19041.1, time stamp: 0xdc25e467 Faulting module name: ntdll.dll, version: 10.0.19041.207, time stamp: 0xcad89ab4 Exception code: 0xc0000374 Fault offset: 0x00000000000fdec9 Faulting process id: 0x18d8 Faulting application start time: 0x01d65ec227f7da43 Faulting application path: C:\WINDOWS\system32\wbem\wmiprvse.exe Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll Report Id: ba70a1e8-788b-41c3-8055-9cb3a891a999 Faulting package full name: Faulting package-relative application ID: Error: (07/20/2020 11:53:04 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: wmiprvse.exe, version: 10.0.19041.1, time stamp: 0xdc25e467 Faulting module name: ntdll.dll, version: 10.0.19041.207, time stamp: 0xcad89ab4 Exception code: 0xc0000374 Fault offset: 0x00000000000fdec9 Faulting process id: 0x18f8 Faulting application start time: 0x01d65e7b794661a7 Faulting application path: C:\WINDOWS\system32\wbem\wmiprvse.exe Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll Report Id: 2432d59d-3188-43a8-96a6-60ba0d0d049d Faulting package full name: Faulting package-relative application ID: Error: (07/18/2020 08:23:57 PM) (Source: Windows Search Service) (EventID: 7042) (User: ) Description: The Windows Search Service is being stopped because there is a problem with the indexer: Recovery phase failed. Context: Application, SystemIndex Catalog Details: The gatherer is shutting down. (HRESULT : 0x80040d23) (0x80040d23) Error: (07/18/2020 08:23:57 PM) (Source: Windows Search Service) (EventID: 3602) (User: ) Description: Error ID 1 happened in Windows Search recovery stage, please restart the service. If this error persists, please recreate the index. Context: Application, SystemIndex Catalog Details: The gatherer is shutting down. (HRESULT : 0x80040d23) (0x80040d23) Error: (07/18/2020 08:20:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: wmiprvse.exe, version: 10.0.19041.1, time stamp: 0xdc25e467 Faulting module name: ntdll.dll, version: 10.0.19041.207, time stamp: 0xcad89ab4 Exception code: 0xc0000374 Fault offset: 0x00000000000fdec9 Faulting process id: 0xb2c Faulting application start time: 0x01d65d30199e9510 Faulting application path: C:\WINDOWS\system32\wbem\wmiprvse.exe Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll Report Id: 27ceba37-3a10-47b1-9d95-10ff704b1213 Faulting package full name: Faulting package-relative application ID: Error: (07/18/2020 08:20:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: wmiprvse.exe, version: 10.0.19041.1, time stamp: 0xdc25e467 Faulting module name: ntdll.dll, version: 10.0.19041.207, time stamp: 0xcad89ab4 Exception code: 0xc0000005 Fault offset: 0x00000000000a457a Faulting process id: 0x18bc Faulting application start time: 0x01d65d30014dd5a1 Faulting application path: C:\WINDOWS\system32\wbem\wmiprvse.exe Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll Report Id: 80afa407-f068-4255-acf4-b7a29c7f0d99 Faulting package full name: Faulting package-relative application ID: Error: (07/18/2020 08:15:20 PM) (Source: Windows Search Service) (EventID: 7042) (User: ) Description: The Windows Search Service is being stopped because there is a problem with the indexer: Recovery phase failed. Context: Application, SystemIndex Catalog Details: The gatherer is shutting down. (HRESULT : 0x80040d23) (0x80040d23) System errors: ============= Error: (07/20/2020 08:18:53 PM) (Source: Tcpip) (EventID: 4207) (User: ) Description: The IPv4 TCP/IP interface with index 18 failed to bind to its provider. Error: (07/20/2020 08:18:53 PM) (Source: Tcpip) (EventID: 4207) (User: ) Description: The IPv6 TCP/IP interface with index 18 failed to bind to its provider. Error: (07/20/2020 08:18:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The cpuz149 service failed to start due to the following error: The driver was not loaded because it failed its initialization call. Error: (07/20/2020 08:18:03 PM) (Source: Microsoft-Windows-Ntfs) (EventID: 98) (User: NT AUTHORITY) Description: C:\Device\HarddiskVolume43 Error: (07/20/2020 08:18:22 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 19:45:25 on 20/07/2020 was unexpected. Error: (07/20/2020 03:45:57 PM) (Source: Tcpip) (EventID: 4207) (User: ) Description: The IPv4 TCP/IP interface with index 17 failed to bind to its provider. Error: (07/20/2020 03:45:57 PM) (Source: Tcpip) (EventID: 4207) (User: ) Description: The IPv6 TCP/IP interface with index 17 failed to bind to its provider. Error: (07/20/2020 03:45:29 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The cpuz149 service failed to start due to the following error: The driver was not loaded because it failed its initialization call. CodeIntegrity: =================================== Date: 2020-07-21 00:45:19.8930000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume4\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Windows signing level requirements. Date: 2020-07-21 00:45:19.8880000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume4\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Windows signing level requirements. Date: 2020-07-21 00:45:19.8540000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume4\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Windows signing level requirements. Date: 2020-07-20 22:54:30.6670000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Windows signing level requirements. Date: 2020-07-20 20:21:28.8450000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements. Date: 2020-07-20 20:21:28.8350000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements. Date: 2020-07-20 20:21:28.8240000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements. Date: 2020-07-20 20:21:28.8140000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements. ==================== Memory info =========================== BIOS: American Megatrends Inc. ALASKA - 1072009 12/05/2018 Motherboard: ASUSTeK COMPUTER INC. STRIX X99 GAMING Processor: Intel(R) Core(TM) i7-6900K CPU @ 3.20GHz Percentage of memory in use: 51% Total physical RAM: 65446.62 MB Available physical RAM: 31621.69 MB Total Virtual: 75174.62 MB Available Virtual: 32464.01 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:930.88 GB) (Free:86.63 GB) NTFS Drive d: (Volume) (Fixed) (Total:931.5 GB) (Free:334.01 GB) NTFS Drive e: (Storage) (Fixed) (Total:462.88 GB) (Free:58.23 GB) NTFS Drive i: (Storage) (Fixed) (Total:465.76 GB) (Free:74.4 GB) NTFS Drive m: (Media) (Fixed) (Total:1862.89 GB) (Free:667.48 GB) NTFS \\?\Volume{91551d0b-ef98-4475-8429-995a74ccf4da}\ (Recovery) (Fixed) (Total:0.52 GB) (Free:0.1 GB) NTFS \\?\Volume{629458e4-0000-0000-0000-010000000000}\ (PortableBaseLayer) (Fixed) (Total:8 GB) (Free:7.57 GB) NTFS \\?\Volume{d4e145cd-f16c-490f-8aed-213cff487dbc}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Partition Table ==================== ========================================================== Disk: 0 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 1 (Protective MBR) (Size: 232.9 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 2 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 3 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 4 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 5 (MBR Code: Windows 7/8/10) (Size: 8 GB) (Disk ID: 629458E4) Partition 1: (Not Active) - (Size=8 GB) - (Type=07 NTFS) ==================== End of Addition.txt ======================= |
21.07.2020, 09:28 | #5 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Schadsoftware von audacity.de runtergeladen und ausgeführtZitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
21.07.2020, 11:19 | #6 |
| Schadsoftware von audacity.de runtergeladen und ausgeführt Hallo cosinus, hierbei handelt es sich um meinen privaten Rechner. Wo Code:
ATTFilter Microsoft Azure Authoring Tools Microsoft SQL Server 2016 LocalDB Active Directory Authentication Library for SQL Server Gitarre spiele ich schon sehr lange und verwende zum Komponieren etc. FL Studio. Mit Maya bin ich quasi auch aufgewachsen weil es bis 2020 v0 während Schule und Studium sehr einfach war eine Edu version zu beantragen. Seit 2020 v1 leider nicht mehr und so schlummert es noch auf dem PC und benutze jetzt Blender. Da ich auch selber in meiner Freizeit programmiere, häufig backend frontend, habe ich auch psql installiert. Ich hoffe das erklärt die von dir erstellte Liste. Edit: Beim herunterfahren heute früh war dieses Setup Fenster doch da. Ich habe es dann mit dem Task Manager geschlossen. Geändert von Huskel (21.07.2020 um 11:33 Uhr) |
21.07.2020, 11:51 | #7 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Schadsoftware von audacity.de runtergeladen und ausgeführt Naja, das Adobe Creative Cloud und Acrobat wird damit nicht wirklich erklärt. Zitat:
Gib Bescheid wenn das weg ist.
__________________ Logfiles bitte immer in CODE-Tags posten |
21.07.2020, 13:00 | #8 |
| Schadsoftware von audacity.de runtergeladen und ausgeführt Achso okay. Als Student bekommt man die Cloud für einen günstigeren Preis. Bevor ich Norton deinstalliere würde ich lieber nochmal genauer schauen. Windows Defender wäre ein Kandidat. Wenn ich mich an den letzten c't Beitrag zu AV's zurückerrinnere, war Norton nicht so schlecht um es jetzt direkt zu löschen. Ich werde es aber in Erwägung ziehen, da es mich selber aufregt, dass Norton in diesem Fall nicht Alarm geschlagen hat. Wärst du trotzdem so nett dir die Sache nochmal anzuschauen? |
21.07.2020, 13:04 | #9 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Schadsoftware von audacity.de runtergeladen und ausgeführt Ich bereinige keine Rechner wo Schrott von Norton, Avira, Kaspersky oder anderes AV-Geraffel drauf ist...
__________________ Logfiles bitte immer in CODE-Tags posten |
21.07.2020, 13:17 | #10 |
| Schadsoftware von audacity.de runtergeladen und ausgeführt Könntest du da bitte nicht ein Auge zu drücken. Ich habe dort auch Regeln in der Firewall drin und würde mich gerne in Ruhe mit einer Alternative außeinander setzen. Ich möchte das nicht überstürzen. |
21.07.2020, 13:31 | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Schadsoftware von audacity.de runtergeladen und ausgeführt Ich versichere dir, dass dieser Krempel absolut unnötig und in so gut wie allen Fällen kontraproduktiv ist. Bei der Analyse stört dieses Zeugs auch einfach nur. Deswegen werde ich keine Rechner mit so einem Müll untersuchen oder bereinigen.
__________________ Logfiles bitte immer in CODE-Tags posten |
25.07.2020, 18:19 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Schadsoftware von audacity.de runtergeladen und ausgeführt Fehlende Rückmeldung Dieser Thread wird wegen fehlender Rückmeldung tonniert.
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Schadsoftware von audacity.de runtergeladen und ausgeführt |
.dll, administrator, adobe, asus, audacity, browser, defender, error, explorer, firefox, frage, geforce, internet, malware / adware / spyware etc, microsoft, mozilla, node.js, nvcontainer, nvcontainer.exe, nvidia, opera, pdf, port, programme, registry, rundll, scan, symantec, temp, windows, windowsapps |