Jump to content

Help, do i have a trojan?


Recommended Posts

  • Root Admin

Hello @Danx24 and :welcome:

 

Please run the following steps and post back the logs as an attachment when ready.

STEP 01

  • If you're already running Malwarebytes 3 then open Malwarebytes and check for updates. Then click on the Scan tab and select Threat Scan and click on Start Scan button.
  • If you don't have Malwarebytes 3 installed yet please download it from here and install it.
  • Once installed then open Malwarebytes and check for updates. Then click on the Scan tab and select Threat Scan and click on Start Scan button.
  • Once the scan is completed click on the Export Summary button and save the file as a Text file to your desktop or other location you can find, and attach that log on your next reply.
  • If Malwarebytes won't run then please skip to the next step and let me know on your next reply.

STEP 02

Please download AdwCleaner by Malwarebytes and save the file to your Desktop.

  • Right-click on the program and select RunAsAdmin.jpg Run as Administrator to start the tool.
  • Accept the Terms of use.
  • Wait until the database is updated.
  • Click Scan Now.
  • When finished, please click Clean & Repair.
  • Your PC should reboot now if any items were found.
  • After reboot, a log file will be opened. Copy its content into your next reply.

 

RESTART THE COMPUTER Before running Step 3

STEP 03
Please download the Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system. You can check here if you're not sure if your computer is 32-bit or 64-bit

  • Double-click to run it. When the tool opens, click Yes to disclaimer.
  • Press the Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
  • The first time the tool is run, it also makes another log (Addition.txt). If you've, run the tool before you need to place a check mark here.
  • Please attach the Additions.txt log to your reply as well.

 

Thanks

Ron

 

Link to post
Share on other sites

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 6/25/19
Scan Time: 10:02 AM
Log File: f08ccc0a-9751-11e9-872e-4ccc6a9314e6.json

-Software Information-
Version: 3.7.1.2839
Components Version: 1.0.586
Update Package Version: 1.0.11240
License: Trial

-System Information-
OS: Windows 10 (Build 18362.175)
CPU: x64
File System: NTFS
User: System

-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Scheduler
Result: Completed
Objects Scanned: 312804
Threats Detected: 0
Threats Quarantined: 0
Time Elapsed: 1 min, 57 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registry Key: 0
(No malicious items detected)

Registry Value: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 0
(No malicious items detected)

File: 0
(No malicious items detected)

Physical Sector: 0
(No malicious items detected)

WMI: 0
(No malicious items detected)


(end)

 

 


# -------------------------------
# Malwarebytes AdwCleaner 7.3.0.0
# -------------------------------
# Build:    04-04-2019
# Database: 2019-06-25.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    06-25-2019
# Duration: 00:00:00
# OS:       Windows 10 Home
# Cleaned:  0
# Failed:   0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1815 octets] - [24/06/2019 11:29:43]
AdwCleaner[C00].txt - [1889 octets] - [24/06/2019 11:30:54]
AdwCleaner[S01].txt - [1372 octets] - [25/06/2019 10:08:41]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-06-2019
Ran by DanY (administrator) on DESKTOP-290V7QL (MSI MS-7998) (25-06-2019 10:16:19)
Running from D:\dowloads
Loaded Profiles: DanY (Available Profiles: DanY & Princess Cat)
Platform: Windows 10 Home Version 1903 18362.175 (X64) Language: English (United States)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19053.13.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler64.exe
(Intel(R) Corporation -> Intel Corporation) C:\Program Files\Intel\IntelSGXPSW\bin\x64\Release\aesm_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel(R) Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Wireless Connectivity Solutions -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(McAfee, Inc. -> McAfee LLC.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\3.1.233.0\McCSPServiceHost.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\McAfee\VSCore_19_3\mcapexe.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(ProtonVPN AG -> ) C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(SUPERAntiSpyware.com -> SUPERAntiSpyware.com) D:\SASCORE64.EXE

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235944 2017-08-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1794716352-2122543093-1743302899-1003\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22691064 2019-06-04] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1794716352-2122543093-1743302899-1003\...\Run: [DAEMON Tools Pro Agent] => "C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTAgent.exe" -autorun
HKU\S-1-5-21-1794716352-2122543093-1743302899-1003\...\MountPoints2: {4fd193cc-9561-11e9-b25a-4ccc6a9314e6} - "H:\Startup.exe"
HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com)
HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.100\Installer\chrmstp.exe [2019-06-18] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1491D6D6-435B-4A2B-BC1E-9F3CC14E2FED} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2D942D01-0ED8-4113-B80E-376AB7518BA0} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {327AE4B4-81C2-4888-A234-1741BC15DB25} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2314008 2019-06-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {37F079A7-2B68-4447-B1A9-1304F13CE602} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-06-08] (Google Inc -> Google LLC)
Task: {3BC5C664-4B38-43B0-99CC-536B9048B768} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [899056 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3C6185BE-AEE9-4AFA-98C3-CA403B3C176D} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4113114F-DDA3-4E27-B996-EC11AC05026C} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5A54A14D-0205-43DB-9E12-FDD531762C14} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5C78B311-53C8-41F8-BBF6-223C5F8DC852} - System32\Tasks\McAfee\McAfee DAT Built in test => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\1.0.7.382\mcdatrep.exe [1752728 2019-06-15] (McAfee, Inc. -> McAfee, LLC.)
Task: {5DFA1AC8-7099-4C7D-8BAA-7E971AD6D9A0} - System32\Tasks\McAfee\McAfee Idle Detection Task => {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [1026752 2019-03-29] (McAfee, Inc. -> McAfee, Inc.)
Task: {70DEEB75-99AC-4083-A27E-F869E3D702E6} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7545DC0C-EA93-45D4-B677-B7A0097008DE} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-06-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {76B23B44-5B77-4B1E-B0F7-9BED6E5FD1A1} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [1026752 2019-03-29] (McAfee, Inc. -> McAfee, Inc.)
Task: {76EF8460-A16B-4B30-8E08-5229347C987F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2281944 2019-06-20] (AVAST Software s.r.o. -> AVAST Software)
Task: {7B357020-A773-453A-B42F-E7FF78965899} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [668464 2017-02-24] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {83C32BFE-4598-4466-8A27-0D60AD642EA9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-06-08] (Google Inc -> Google LLC)
Task: {95E96C61-3F38-46D1-9630-0069F1393B39} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\1.1.222\DADUpdater.exe [4178840 2019-06-15] (McAfee, Inc. -> McAfee, Inc.)
Task: {AA144464-0DAA-4E30-8B1B-BB5244268300} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16664352 2019-06-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {B3B16576-88CC-406C-AA8C-1BC0DFF36701} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3787304 2019-05-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CF7D59DE-29A4-46E3-844C-19FAF028B4C1} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4469000 2019-01-31] (McAfee, Inc. -> McAfee, Inc.)
Task: {DDA6949D-A362-4EF3-AC3E-F5265B92A56C} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [899056 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EEAFCABB-9C99-4B91-A898-D578E5F4A77A} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130296 2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EFD05CFF-8962-492B-8A9D-A787FC7989BD} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [756672 2018-11-13] (McAfee, Inc. -> McAfee, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 24.200.241.37 24.202.72.13
Tcpip\..\Interfaces\{4c1a6591-e570-4c4b-8ca4-9fdfa88beacc}: [DhcpNameServer] 10.0.1.1 10.0.1.3
Tcpip\..\Interfaces\{c2ba9a4e-01f0-4d77-aeed-64481e82e5ac}: [DhcpNameServer] 192.168.0.1 24.200.241.37 24.202.72.13
Tcpip\..\Interfaces\{da2b565c-fda1-4e52-bcfa-a83c97656207}: [DhcpNameServer] 8.8.8.8 8.8.4.4

Internet Explorer:
==================
HKU\S-1-5-21-1794716352-2122543093-1743302899-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://oem17win10.msn.com/?pc=NMTE
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-06-22] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-06-22] (McAfee, LLC -> McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll [2019-04-18] (McAfee, Inc. -> McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2019-04-18] (McAfee, Inc. -> McAfee, Inc.)

FireFox:
========
FF DefaultProfile: ob7v7htd.default
FF ProfilePath: C:\Users\DanY\AppData\Roaming\Mozilla\Firefox\Profiles\ob7v7htd.default [2019-06-20]
FF ProfilePath: C:\Users\DanY\AppData\Roaming\Mozilla\Firefox\Profiles\z1nyphja.default-release [2019-06-25]
FF Homepage: Mozilla\Firefox\Profiles\z1nyphja.default-release -> hxxps://www.google.com/
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\DanY\AppData\Roaming\Mozilla\Firefox\Profiles\z1nyphja.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-06-23]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-06-22]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Plugin: @mcafee.com/MSC,version=10 -> C:\Program Files\McAfee\MSC\npMcSnFFPl64.dll [2019-04-18] (McAfee, Inc. -> )
FF Plugin-x32: @mcafee.com/MSC,version=10 -> C:\Program Files (x86)\McAfee\MSC\npMcSnFFPl.dll [2019-04-18] (McAfee, Inc. -> )
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-06-08] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-06-08] (Google Inc -> Google LLC)

Chrome:
=======
CHR Profile: C:\Users\DanY\AppData\Local\Google\Chrome\User Data\Default [2019-06-25]
CHR Extension: (Slides) - C:\Users\DanY\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-06-09]
CHR Extension: (YouTube) - C:\Users\DanY\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-06-09]
CHR Extension: (Sheets) - C:\Users\DanY\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-06-09]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\DanY\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2019-06-15]
CHR Extension: (Google Docs Offline) - C:\Users\DanY\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-06-12]
CHR Extension: (AVG SafePrice | Comparison, deals, coupons) - C:\Users\DanY\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2019-06-22]
CHR Extension: (Chrome Web Store Payments) - C:\Users\DanY\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-06-09]
CHR Extension: (Chrome Media Router) - C:\Users\DanY\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-09]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; D:\SASCORE64.EXE [173472 2019-06-23] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com)
R2 AESMService; C:\Program Files\Intel\IntelSGXPSW\bin\x64\Release\aesm_service.exe [3772120 2017-02-26] (Intel(R) Corporation -> Intel Corporation)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-06-08] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-06-21] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [791112 2019-06-12] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7170632 2019-06-12] (GOG Sp. z o.o. -> GOG.com)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [732448 2017-02-24] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\iCLS Client\TPMProvisioningService.exe [548648 2017-02-24] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [197264 2017-07-12] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [899264 2019-06-22] (McAfee, LLC -> McAfee, Inc.)
R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_19_3\McApExe.exe [745880 2019-04-23] (McAfee, Inc. -> McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\3.1.233.0\\McCSPServiceHost.exe [2225104 2019-03-28] (McAfee, Inc. -> McAfee, Inc.)
S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [374400 2019-03-06] (McAfee, Inc. -> McAfee, LLC)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [608896 2019-03-06] (McAfee, Inc. -> McAfee, LLC)
R3 mfevtp; C:\WINDOWS\system32\mfevtps.exe [526224 2019-03-06] (McAfee, Inc. -> McAfee, LLC)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1698768 2019-04-01] (McAfee, Inc. -> McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [269480 2017-07-03] (Intel(R) Wireless Connectivity Solutions -> )
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-02-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2303792 2019-06-09] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3175728 2019-06-09] (Electronic Arts, Inc. -> Electronic Arts)
R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [1360384 2019-02-22] (McAfee, Inc. -> McAfee, Inc.)
R2 ProtonVPN Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe [88888 2019-04-24] (ProtonVPN AG -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\NisSrv.exe [2433136 2019-06-08] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MsMpEng.exe [109896 2019-06-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3755176 2017-07-03] (Intel(R) Wireless Connectivity Solutions -> Intel® Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [77360 2019-04-23] (McAfee, Inc. -> McAfee, LLC)
R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [283200 2019-06-23] (DT Soft Ltd -> DT Soft Ltd)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153328 2019-01-08] (Malwarebytes Corporation -> Malwarebytes)
S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [226992 2019-04-18] (McAfee, Inc. -> McAfee, Inc.)
S3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [55232 2019-06-24] (SurfRight B.V. -> )
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [199768 2019-06-21] (Malwarebytes Corporation -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-02-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [127136 2019-06-25] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [73912 2019-06-25] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [275232 2019-06-25] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [117344 2019-06-25] (Malwarebytes Corporation -> Malwarebytes)
R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [514608 2019-04-23] (McAfee, Inc. -> McAfee, LLC)
R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [377392 2019-04-23] (McAfee, Inc. -> McAfee, LLC)
S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [86144 2019-04-23] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC)
R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [518192 2019-04-23] (McAfee, Inc. -> McAfee, LLC)
R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [985648 2019-04-23] (McAfee, Inc. -> McAfee, LLC)
R3 mfencbdc; C:\WINDOWS\system32\DRIVERS\mfencbdc.sys [565288 2019-04-23] (McAfee, Inc. -> McAfee LLC.)
S3 mfencrk; C:\WINDOWS\system32\DRIVERS\mfencrk.sys [109096 2019-04-23] (McAfee, Inc. -> McAfee LLC.)
R3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [117808 2019-04-23] (McAfee, Inc. -> McAfee, LLC)
R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [254000 2019-04-23] (McAfee, Inc. -> McAfee, LLC)
R3 Netwtw04; C:\WINDOWS\System32\drivers\Netwtw04.sys [7708160 2019-03-19] (Microsoft Windows -> Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b49751b9038af669\nvlddmkm.sys [21836032 2019-05-23] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-05-10] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
S3 ProtonVPNSplitTunnelCalloutDriver; C:\Program Files (x86)\Proton Technologies\ProtonVPN\Resources\64-bit\win10\ProtonVPNSplitTunnelCalloutDriver.Sys [48664 2019-04-03] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 SASDIFSV; D:\\SASDIFSV64.SYS [14928 2019-06-23] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; D:\\SASKUTIL64.SYS [12368 2019-06-23] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2019-06-23] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [44976 2018-09-07] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [47496 2019-06-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [337632 2019-06-08] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-06-08] (Microsoft Windows -> Microsoft Corporation)
U3 aswbdisk; no ImagePath
U3 aswblog; no ImagePath
U3 avgbdisk; no ImagePath
U3 avgblog; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-06-25 10:14 - 2019-06-25 10:14 - 002418688 _____ (Farbar) C:\Users\DanY\Downloads\FRST64.exe
2019-06-25 10:13 - 2019-06-25 10:13 - 000275232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-06-25 10:13 - 2019-06-25 10:13 - 000127136 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2019-06-25 10:13 - 2019-06-25 10:13 - 000117344 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2019-06-25 10:13 - 2019-06-25 10:13 - 000073912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2019-06-25 10:10 - 2019-06-25 10:12 - 000002799 _____ C:\Users\DanY\Documents\bvbv.txt
2019-06-25 10:09 - 2019-06-25 10:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2019-06-24 13:53 - 2019-06-24 13:53 - 000000330 _____ C:\WINDOWS\system32\.crusader
2019-06-24 13:41 - 2019-06-24 13:54 - 000055232 _____ C:\WINDOWS\system32\Drivers\hitmanpro37.sys
2019-06-24 13:41 - 2019-06-24 13:53 - 000000000 ____D C:\ProgramData\HitmanPro
2019-06-24 13:41 - 2019-06-24 13:41 - 011539456 _____ (SurfRight B.V.) C:\Users\DanY\Downloads\HitmanPro_x64.exe
2019-06-24 13:39 - 2019-06-24 13:39 - 000645729 _____ (WDS Team) C:\Users\DanY\Downloads\windirstat1_1_2_setup.exe
2019-06-24 13:19 - 2019-06-24 13:25 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2019-06-24 13:19 - 2019-06-24 13:19 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\76374278.sys
2019-06-24 13:17 - 2019-06-24 13:18 - 000186092 _____ C:\TDSSKiller.3.1.0.28_24.06.2019_13.17.46_log.txt
2019-06-24 12:00 - 2019-06-24 12:01 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2019-06-24 11:37 - 2019-06-25 10:16 - 000000000 ____D C:\FRST
2019-06-24 11:29 - 2019-06-24 11:30 - 000000000 ____D C:\AdwCleaner
2019-06-24 10:24 - 2019-06-24 10:24 - 000000000 ___HD C:\$SysReset
2019-06-23 22:25 - 2019-06-23 22:26 - 000000000 ____D C:\ProgramData\ProtonVPN
2019-06-23 22:25 - 2019-06-23 22:25 - 000001230 _____ C:\Users\Public\Desktop\ProtonVPN.lnk
2019-06-23 22:25 - 2019-06-23 22:25 - 000000000 ____D C:\Users\DanY\AppData\Local\ProtonVPN
2019-06-23 22:25 - 2019-06-23 22:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProtonVPN
2019-06-23 22:24 - 2019-06-23 22:25 - 000000000 ____D C:\Program Files (x86)\Proton Technologies
2019-06-23 21:48 - 2019-06-23 21:48 - 000027136 _____ (The OpenVPN Project) C:\WINDOWS\system32\Drivers\tap0901.sys
2019-06-23 01:18 - 2017-01-30 19:47 - 000173472 _____ (SUPERAntiSpyware.com) C:\Users\DanY\Downloads\SASCore64.exe
2019-06-23 01:18 - 2014-06-06 14:40 - 000220952 _____ (SUPERAntiSpyware.com) C:\Users\DanY\Downloads\SASCTXMN64.DLL
2019-06-23 01:18 - 2011-07-22 12:26 - 000014928 _____ (SUPERAdBlocker.com and SUPERAntiSpyware.com) C:\Users\DanY\Downloads\sasdifsv64.sys
2019-06-23 01:18 - 2011-07-12 17:55 - 000012368 _____ (SUPERAdBlocker.com and SUPERAntiSpyware.com) C:\Users\DanY\Downloads\saskutil64.sys
2019-06-23 00:46 - 2019-06-23 00:46 - 000283200 _____ (DT Soft Ltd) C:\WINDOWS\system32\Drivers\dtsoftbus01.sys
2019-06-23 00:45 - 2019-06-24 11:00 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro Advanced
2019-06-23 00:37 - 2019-06-23 00:37 - 000000000 ____D C:\Program Files (x86)\Elaborate Bytes
2019-06-23 00:28 - 2019-06-23 00:28 - 000000000 ____D C:\Users\Public\Documents\Daemon Tools Images
2019-06-23 00:28 - 2019-06-23 00:28 - 000000000 ____D C:\Users\DanY\AppData\Local\Disc_Soft_Ltd
2019-06-23 00:27 - 2019-06-23 00:27 - 000059360 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtliteusbbus.sys
2019-06-23 00:27 - 2019-06-23 00:27 - 000042256 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtlitescsibus.sys
2019-06-23 00:27 - 2019-06-23 00:27 - 000000000 ____D C:\Users\Public\Documents\Catch!
2019-06-23 00:26 - 2019-06-23 00:43 - 000000000 ____D C:\ProgramData\DAEMON Tools Lite
2019-06-22 23:48 - 2019-06-22 23:48 - 000000000 ____D C:\Users\DanY\AppData\Roaming\WinRAR
2019-06-22 23:48 - 2019-06-22 23:48 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-22 23:48 - 2019-06-22 23:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-22 23:48 - 2019-06-22 23:48 - 000000000 ____D C:\Program Files (x86)\WinRAR
2019-06-21 23:47 - 2019-06-21 23:47 - 000000000 ____D C:\Users\DanY\AppData\Local\Insurgency
2019-06-21 21:44 - 2019-06-24 13:20 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-06-21 21:44 - 2019-06-21 21:44 - 000199768 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2019-06-21 21:44 - 2019-06-21 21:44 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-06-21 21:44 - 2019-06-21 21:44 - 000000000 ____D C:\Users\DanY\AppData\Local\mbamtray
2019-06-21 21:44 - 2019-06-21 21:44 - 000000000 ____D C:\Users\DanY\AppData\Local\mbam
2019-06-21 21:44 - 2019-06-21 21:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-06-21 21:44 - 2019-06-21 21:44 - 000000000 ____D C:\Program Files\Malwarebytes
2019-06-21 21:44 - 2019-02-01 12:20 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2019-06-21 21:44 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-06-20 23:08 - 2019-06-20 23:08 - 000000000 ____D C:\Users\DanY\Documents\Eek
2019-06-20 23:07 - 2019-06-20 23:07 - 000000000 ____D C:\Users\DanY\AppData\LocalLow\Eek
2019-06-20 22:29 - 2019-06-20 22:29 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVG
2019-06-20 22:29 - 2019-06-20 22:29 - 000000000 ____D C:\Users\DanY\AppData\Local\Avg
2019-06-20 22:28 - 2019-06-24 11:34 - 000000000 ____D C:\Users\DanY\Documents\Vuze Downloads
2019-06-20 22:28 - 2019-06-20 22:28 - 000001867 _____ C:\Users\Public\Desktop\Vuze.lnk
2019-06-20 22:28 - 2019-06-20 22:28 - 000001867 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vuze.lnk
2019-06-20 22:28 - 2019-06-20 22:28 - 000000000 ____D C:\Users\DanY\.swt
2019-06-20 22:28 - 2019-06-20 22:28 - 000000000 ____D C:\ProgramData\AVG
2019-06-20 22:28 - 2019-06-20 22:28 - 000000000 ____D C:\Program Files\Vuze
2019-06-20 22:28 - 2019-06-20 22:28 - 000000000 ____D C:\Program Files\Common Files\AVG
2019-06-20 22:27 - 2019-06-25 10:07 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Azureus
2019-06-20 22:27 - 2019-06-20 22:27 - 000000000 ____D C:\ProgramData\Oracle
2019-06-20 22:24 - 2019-06-20 22:24 - 000003936 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2019-06-20 22:24 - 2019-06-20 22:24 - 000002886 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2019-06-20 22:24 - 2019-06-20 22:24 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-06-20 22:24 - 2019-06-20 22:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2019-06-20 22:24 - 2019-06-20 22:24 - 000000000 ____D C:\Program Files\CCleaner
2019-06-20 22:14 - 2019-06-20 22:17 - 000000000 ____D C:\Users\DanY\AppData\LocalLow\uTorrent
2019-06-20 22:14 - 2019-06-20 22:15 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Opera Software
2019-06-20 22:14 - 2019-06-20 22:15 - 000000000 ____D C:\Users\DanY\AppData\Local\Opera Software
2019-06-20 22:14 - 2019-06-20 22:14 - 000000000 ____D C:\Users\DanY\AppData\Local\BitTorrentHelper
2019-06-20 22:10 - 2019-06-20 22:10 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software
2019-06-20 22:10 - 2019-06-20 22:10 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2019-06-20 22:09 - 2019-06-20 22:16 - 000000000 ____D C:\ProgramData\AVAST Software
2019-06-20 22:08 - 2019-06-20 22:08 - 000001860 _____ C:\Users\DanY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
2019-06-20 22:05 - 2019-06-20 22:16 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-06-18 22:14 - 2019-06-18 22:14 - 000000861 _____ C:\Users\Public\Desktop\The Sims 4.lnk
2019-06-17 17:49 - 2019-06-17 17:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quake III Gold [GOG.com]
2019-06-17 17:48 - 2007-03-15 16:57 - 000506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2019-06-17 17:48 - 2007-03-15 16:57 - 000443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2019-06-17 17:48 - 2007-03-12 16:42 - 001400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2019-06-17 17:48 - 2007-03-12 16:42 - 001123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2019-06-17 17:48 - 2006-03-31 12:41 - 003927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2019-06-17 17:48 - 2006-03-31 12:40 - 002388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2019-06-17 17:48 - 2006-03-31 12:40 - 000352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2019-06-17 17:48 - 2006-03-31 12:39 - 000229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2019-06-17 17:48 - 2006-03-31 12:39 - 000083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2019-06-17 17:48 - 2006-03-31 12:39 - 000062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2019-06-17 17:48 - 2005-03-18 17:19 - 003823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2019-06-17 17:48 - 2005-03-18 17:19 - 002337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2019-06-16 16:29 - 2019-06-16 16:29 - 000000000 ____D C:\ProgramData\Blizzard Entertainment
2019-06-16 16:25 - 2019-06-24 02:02 - 000000000 ____D C:\Users\DanY\AppData\Local\Battle.net
2019-06-16 16:25 - 2019-06-16 17:22 - 000000000 ____D C:\Users\DanY\AppData\Local\Bethesda.net Launcher
2019-06-16 16:25 - 2019-06-16 16:29 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Battle.net
2019-06-16 16:25 - 2019-06-16 16:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2019-06-16 16:24 - 2019-06-16 16:25 - 000000000 ____D C:\Users\DanY\AppData\Local\Blizzard Entertainment
2019-06-16 16:24 - 2019-06-16 16:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda.net Launcher
2019-06-16 16:24 - 2019-06-16 16:24 - 000000000 ____D C:\ProgramData\Battle.net
2019-06-16 16:23 - 2019-06-16 16:23 - 008797576 _____ (Bethesda Softworks ) C:\Users\DanY\Downloads\BethesdaNetLauncher_Setup.exe
2019-06-16 16:23 - 2019-06-16 16:23 - 004902896 _____ (Blizzard Entertainment) C:\Users\DanY\Downloads\Battle.net-Setup.exe
2019-06-16 16:19 - 2019-06-17 17:48 - 000000000 ____D C:\Program Files (x86)\GOG Galaxy
2019-06-16 16:19 - 2019-06-16 16:19 - 000000000 ____D C:\Users\DanY\AppData\Local\GOG.com
2019-06-16 16:19 - 2019-06-16 16:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2019-06-16 16:19 - 2019-06-16 16:19 - 000000000 ____D C:\ProgramData\GOG.com
2019-06-15 21:28 - 2019-06-15 21:28 - 000000000 ____D C:\Users\DanY\Documents\Electronic Arts
2019-06-15 21:22 - 2019-06-15 21:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4
2019-06-15 21:22 - 2019-06-15 21:22 - 000000000 ____D C:\ProgramData\Electronic Arts
2019-06-15 21:22 - 2014-09-16 18:45 - 000447752 _____ (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll
2019-06-15 21:10 - 2019-06-24 14:00 - 001768054 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-06-15 21:00 - 2019-06-15 21:00 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-06-15 20:59 - 2019-06-15 20:59 - 000000020 ___SH C:\Users\DanY\ntuser.ini
2019-06-15 20:58 - 2019-06-25 10:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-06-15 20:58 - 2019-06-24 10:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\McAfee
2019-06-15 20:58 - 2019-06-15 20:58 - 000011433 _____ C:\WINDOWS\diagwrn.xml
2019-06-15 20:58 - 2019-06-15 20:58 - 000011433 _____ C:\WINDOWS\diagerr.xml
2019-06-15 20:58 - 2019-06-15 20:58 - 000003398 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-15 20:58 - 2019-06-15 20:58 - 000003346 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2019-06-15 20:58 - 2019-06-15 20:58 - 000003196 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-15 20:58 - 2019-06-15 20:58 - 000003152 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-15 20:58 - 2019-06-15 20:58 - 000003122 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2019-06-15 20:58 - 2019-06-15 20:58 - 000003118 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification
2019-06-15 20:58 - 2019-06-15 20:58 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-15 20:58 - 2019-06-15 20:58 - 000002948 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-15 20:58 - 2019-06-15 20:58 - 000002948 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-15 20:58 - 2019-06-15 20:58 - 000002948 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-15 20:58 - 2019-06-15 20:58 - 000002948 _____ C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-15 20:58 - 2019-06-15 20:58 - 000002914 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-15 20:58 - 2019-06-15 20:58 - 000002862 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1794716352-2122543093-1743302899-1004
2019-06-15 20:58 - 2019-06-15 20:58 - 000002862 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1794716352-2122543093-1743302899-1003
2019-06-15 20:58 - 2019-06-15 20:58 - 000002856 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1794716352-2122543093-1743302899-500
2019-06-15 20:58 - 2019-06-15 20:58 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-06-15 20:58 - 2019-06-15 20:58 - 000002676 _____ C:\WINDOWS\System32\Tasks\McAfeeLogon
2019-06-15 20:58 - 2019-06-15 20:58 - 000002650 _____ C:\WINDOWS\System32\Tasks\McAfee Remediation (Prepare)
2019-06-15 20:57 - 2019-06-15 20:57 - 000000000 ____D C:\ProgramData\USOShared
2019-06-15 20:57 - 2019-06-15 20:43 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-06-15 20:52 - 2019-06-24 12:52 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-06-15 20:52 - 2019-06-20 22:16 - 000267376 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-06-15 20:52 - 2019-06-15 20:52 - 000066064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WinSetupBoot.sys
2019-06-15 20:47 - 2019-06-20 22:28 - 000000000 ____D C:\Users\DanY
2019-06-15 20:47 - 2019-06-15 20:52 - 000000000 ____D C:\Users\Princess Cat
2019-06-15 20:47 - 2019-06-15 20:47 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-06-15 20:47 - 2019-03-19 00:46 - 000001105 _____ C:\Users\Princess Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-06-15 20:47 - 2019-03-19 00:46 - 000001105 _____ C:\Users\DanY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-06-15 20:46 - 2019-06-15 20:47 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-06-15 20:43 - 2019-06-15 20:43 - 025902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 025445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 022610944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 018006528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 017786368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 009917992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 008010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 007887656 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 007831368 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 007802224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 007757312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 007636848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 007275008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 007241800 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 007103488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 007006720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 006536976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 006381568 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 006225832 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 006141440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 006068328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 006036480 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 005939712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 005919744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 005745504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 005499904 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 005083352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 005071360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 005014016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 004867584 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 004577280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 004553616 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 004537344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 004470784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 004306944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 004128904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 004034048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 004008960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 004008448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 003915752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 003837440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 003734456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 003725824 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 003684864 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 003635200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 003590672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 003550720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 003525080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 003486208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 003373256 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 003094528 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002990392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 002799616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 002769976 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002763312 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-06-15 20:43 - 2019-06-15 20:43 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-06-15 20:43 - 2019-06-15 20:43 - 002724352 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 002698552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 002694144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002587328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002584576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002550584 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002449456 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002443776 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002398208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002321408 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002314440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002281472 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002256592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002178048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaclient.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002117168 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 002081464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001999440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001954952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001944064 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001893888 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001884672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001853440 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001830416 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001784832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001762304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001754024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-06-15 20:43 - 2019-06-15 20:43 - 001745408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001721344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001688576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001647584 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001635328 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001633648 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001608704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001603584 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001562640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaserver.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 001537024 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001515008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaclient.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001510960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001509728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 001505808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001493944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001478656 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001458176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001437184 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 001422848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001395600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001392144 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 001366344 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-06-15 20:43 - 2019-06-15 20:43 - 001363456 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001356800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001333248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001283384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-06-15 20:43 - 2019-06-15 20:43 - 001282560 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001271808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001258496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001248256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 001246000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 001244728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001213456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001192088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 001159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001149200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 001105776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001079296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001072168 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 001068856 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001065984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaserver.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001042944 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 001039872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 001010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001007160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001007104 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000950272 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000939504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000911360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000909736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000888936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000888056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000879576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 000876856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000864768 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000861696 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000811192 _____ C:\WINDOWS\SysWOW64\locale.nls
2019-06-15 20:43 - 2019-06-15 20:43 - 000811192 _____ C:\WINDOWS\system32\locale.nls
2019-06-15 20:43 - 2019-06-15 20:43 - 000804880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000797112 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000782120 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000773944 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000773168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000751256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000744248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 000737552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000726328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000722072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000682744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 000680760 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000679368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000674792 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000673320 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000667272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000666280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000628616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000621568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000613904 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000612352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_9.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_9.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000568120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000551824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2019-06-15 20:43 - 2019-06-15 20:43 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000537088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000537088 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000529072 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000477712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-06-15 20:43 - 2019-06-15 20:43 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 000466624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000462352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000457016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000451896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000441352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000420360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000420152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2019-06-15 20:43 - 2019-06-15 20:43 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000401416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000386832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000381240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000379192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000358944 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000338800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 000300392 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000284536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000279624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000274128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000267728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000261016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityUxHost.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-06-15 20:43 - 2019-06-15 20:43 - 000223248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000205112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winquic.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000201256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000199688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000199184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000199184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000194176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winquic.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schtasks.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-06-15 20:43 - 2019-06-15 20:43 - 000180536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000178192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000161848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaproxystub.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000146744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000146416 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000139472 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000136720 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000134760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameChatTranscription.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000120352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapistub.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000116184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpoext.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapistub.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapi32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameChatTranscription.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2019-06-15 20:43 - 2019-06-15 20:43 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompMgmtLauncher.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000084520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000066360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaproxystub.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000056008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000055608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000037888 _____ C:\WINDOWS\system32\usocoreps.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2019-06-15 20:43 - 2019-06-15 20:43 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2019-06-15 20:43 - 2019-06-15 20:43 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000021512 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\fixmapi.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fixmapi.exe
2019-06-15 20:43 - 2019-06-15 20:43 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-06-15 20:43 - 2019-06-15 20:43 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3r.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-06-15 20:43 - 2019-06-15 20:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3r.dll
2019-06-15 20:40 - 2019-06-24 14:00 - 000788512 _____ C:\WINDOWS\system32\perfh00C.dat
2019-06-15 20:40 - 2019-06-24 14:00 - 000147526 _____ C:\WINDOWS\system32\perfc00C.dat
2019-06-15 20:40 - 2019-06-15 20:40 - 000351124 _____ C:\WINDOWS\system32\perfi00C.dat
2019-06-15 20:40 - 2019-06-15 20:40 - 000040694 _____ C:\WINDOWS\system32\perfd00C.dat
2019-06-15 20:40 - 2019-06-15 20:40 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2019-06-15 20:40 - 2019-06-15 20:40 - 000000000 ____D C:\WINDOWS\SysWOW64\fr
2019-06-15 20:40 - 2019-06-15 20:40 - 000000000 ____D C:\WINDOWS\system32\fr
2019-06-15 20:38 - 2019-06-15 20:38 - 006238208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons000c.dll
2019-06-15 20:38 - 2019-06-15 20:38 - 002355200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000c.dll
2019-06-15 20:38 - 2019-06-15 20:38 - 002280448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000c.dll
2019-06-15 20:38 - 2019-06-15 20:38 - 001166488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-06-15 20:38 - 2019-06-15 20:38 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-06-15 20:38 - 2019-06-15 20:38 - 000124568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-06-15 20:38 - 2019-06-15 20:38 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-06-15 20:38 - 2019-06-15 20:38 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-06-15 20:38 - 2019-06-15 20:38 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-06-15 20:38 - 2019-06-15 20:38 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-06-15 20:38 - 2019-06-15 20:38 - 000000000 ____D C:\Program Files\MSBuild
2019-06-15 20:38 - 2019-06-15 20:38 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2019-06-15 20:38 - 2019-06-15 20:38 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-06-15 20:21 - 2019-06-15 20:21 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-06-15 19:56 - 2019-06-20 22:24 - 000000000 ___DC C:\WINDOWS\Panther
2019-06-15 19:27 - 2019-04-18 18:11 - 000226992 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\HipShieldK.sys
2019-06-15 19:25 - 2019-06-15 21:02 - 000000000 ____D C:\ProgramData\McAfee
2019-06-15 19:25 - 2019-06-15 19:29 - 000000000 ____D C:\ProgramData\McInstTemp0231011560641156
2019-06-15 19:25 - 2019-06-15 19:27 - 000000000 ____D C:\Program Files\McAfee
2019-06-15 19:25 - 2019-06-15 19:27 - 000000000 ____D C:\Program Files\Common Files\McAfee
2019-06-15 19:25 - 2019-06-15 19:27 - 000000000 ____D C:\Program Files (x86)\McAfee
2019-06-15 19:25 - 2019-06-15 19:26 - 000000000 ____D C:\Program Files\McAfee.com
2019-06-15 19:25 - 2019-06-15 19:25 - 000000000 ____D C:\Program Files\Common Files\AV
2019-06-15 19:25 - 2019-03-06 17:11 - 000526224 _____ (McAfee, LLC) C:\WINDOWS\system32\mfevtps.exe
2019-06-15 19:24 - 2019-06-15 19:24 - 042049512 _____ (McAfee, Inc.) C:\Users\DanY\Downloads\McAfee_Installer_serial_A2n4CC-Q4s0DjBInQ0YlRA2_key_affid_1286_akey.exe
2019-06-14 21:25 - 2019-06-14 21:25 - 000000000 ____D C:\Users\DanY\Documents\My Games
2019-06-14 21:25 - 2019-06-14 21:25 - 000000000 ____D C:\Users\DanY\AppData\Local\BattlEye
2019-06-14 21:24 - 2010-02-04 10:01 - 000530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2019-06-14 21:24 - 2010-02-04 10:01 - 000528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2019-06-14 21:24 - 2010-02-04 10:01 - 000238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2019-06-14 21:24 - 2010-02-04 10:01 - 000176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2019-06-14 21:24 - 2010-02-04 10:01 - 000078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2019-06-14 21:24 - 2010-02-04 10:01 - 000074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2019-06-14 21:24 - 2009-09-04 17:44 - 000517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2019-06-14 21:24 - 2009-09-04 17:44 - 000515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2019-06-14 21:24 - 2009-09-04 17:44 - 000238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2019-06-14 21:24 - 2009-09-04 17:44 - 000176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2019-06-14 21:24 - 2009-09-04 17:44 - 000073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2019-06-14 21:24 - 2009-09-04 17:44 - 000069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2019-06-14 21:24 - 2009-09-04 17:29 - 005554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2019-06-14 21:24 - 2009-09-04 17:29 - 005501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2019-06-14 21:24 - 2009-09-04 17:29 - 002582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2019-06-14 21:24 - 2009-09-04 17:29 - 002475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2019-06-14 21:24 - 2009-09-04 17:29 - 001974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2019-06-14 21:24 - 2009-09-04 17:29 - 001892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2019-06-14 21:24 - 2009-09-04 17:29 - 000523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2019-06-14 21:24 - 2009-09-04 17:29 - 000453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2019-06-14 21:24 - 2009-09-04 17:29 - 000285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2019-06-14 21:24 - 2009-09-04 17:29 - 000235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2019-06-14 21:24 - 2009-03-16 14:18 - 000521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2019-06-14 21:24 - 2009-03-16 14:18 - 000517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2019-06-14 21:24 - 2009-03-16 14:18 - 000235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2019-06-14 21:24 - 2009-03-16 14:18 - 000174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2019-06-14 21:24 - 2009-03-16 14:18 - 000024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2019-06-14 21:24 - 2009-03-16 14:18 - 000022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2019-06-14 21:24 - 2009-03-09 15:27 - 005425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2019-06-14 21:24 - 2009-03-09 15:27 - 004178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2019-06-14 21:24 - 2009-03-09 15:27 - 002430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2019-06-14 21:24 - 2009-03-09 15:27 - 001846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2019-06-14 21:24 - 2009-03-09 15:27 - 000520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2019-06-14 21:24 - 2009-03-09 15:27 - 000453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2019-06-14 21:24 - 2008-10-27 10:04 - 000518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2019-06-14 21:24 - 2008-10-27 10:04 - 000514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2019-06-14 21:24 - 2008-10-27 10:04 - 000235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2019-06-14 21:24 - 2008-10-27 10:04 - 000175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2019-06-14 21:24 - 2008-10-27 10:04 - 000074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2019-06-14 21:24 - 2008-10-27 10:04 - 000070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2019-06-14 21:24 - 2008-10-27 10:04 - 000025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2019-06-14 21:24 - 2008-10-27 10:04 - 000023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2019-06-14 21:24 - 2008-10-15 06:22 - 005631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2019-06-14 21:24 - 2008-10-15 06:22 - 004379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2019-06-14 21:24 - 2008-10-15 06:22 - 002605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2019-06-14 21:24 - 2008-10-15 06:22 - 002036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2019-06-14 21:24 - 2008-10-15 06:22 - 000519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2019-06-14 21:24 - 2008-10-15 06:22 - 000452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2019-06-14 21:24 - 2008-07-31 10:41 - 000238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2019-06-14 21:24 - 2008-07-31 10:41 - 000177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2019-06-14 21:24 - 2008-07-31 10:41 - 000072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2019-06-14 21:24 - 2008-07-31 10:41 - 000068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2019-06-14 21:24 - 2008-07-31 10:40 - 000513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2019-06-14 21:24 - 2008-07-31 10:40 - 000509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2019-06-14 21:24 - 2008-07-10 11:01 - 000467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2019-06-14 21:24 - 2008-07-10 11:00 - 004992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2019-06-14 21:24 - 2008-07-10 11:00 - 003851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2019-06-14 21:24 - 2008-07-10 11:00 - 001942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2019-06-14 21:24 - 2008-07-10 11:00 - 001493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2019-06-14 21:24 - 2008-07-10 11:00 - 000540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2019-06-14 21:24 - 2008-05-30 14:19 - 000511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2019-06-14 21:24 - 2008-05-30 14:19 - 000507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2019-06-14 21:24 - 2008-05-30 14:18 - 000238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2019-06-14 21:24 - 2008-05-30 14:18 - 000177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2019-06-14 21:24 - 2008-05-30 14:17 - 000068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2019-06-14 21:24 - 2008-05-30 14:17 - 000065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2019-06-14 21:24 - 2008-05-30 14:17 - 000025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2019-06-14 21:24 - 2008-05-30 14:16 - 000028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2019-06-14 21:24 - 2008-05-30 14:11 - 004991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2019-06-14 21:24 - 2008-05-30 14:11 - 003850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2019-06-14 21:24 - 2008-05-30 14:11 - 001941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2019-06-14 21:24 - 2008-05-30 14:11 - 001491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2019-06-14 21:24 - 2008-05-30 14:11 - 000540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2019-06-14 21:24 - 2008-05-30 14:11 - 000467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2019-06-14 21:24 - 2008-03-05 16:04 - 000489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2019-06-14 21:24 - 2008-03-05 16:03 - 000479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2019-06-14 21:24 - 2008-03-05 16:03 - 000238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2019-06-14 21:24 - 2008-03-05 16:03 - 000177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2019-06-14 21:24 - 2008-03-05 16:00 - 000028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2019-06-14 21:24 - 2008-03-05 16:00 - 000025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2019-06-14 21:24 - 2008-03-05 15:56 - 004910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2019-06-14 21:24 - 2008-03-05 15:56 - 003786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2019-06-14 21:24 - 2008-03-05 15:56 - 001860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2019-06-14 21:24 - 2008-03-05 15:56 - 001420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2019-06-14 21:24 - 2008-02-05 23:07 - 000529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2019-06-14 21:24 - 2008-02-05 23:07 - 000462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2019-06-14 21:24 - 2007-10-22 03:40 - 000411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2019-06-14 21:24 - 2007-10-22 03:39 - 000267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2019-06-14 21:24 - 2007-10-22 03:37 - 000021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2019-06-14 21:24 - 2007-10-22 03:37 - 000017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2019-06-14 21:24 - 2007-10-12 15:14 - 005081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2019-06-14 21:24 - 2007-10-12 15:14 - 003734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2019-06-14 21:24 - 2007-10-12 15:14 - 002006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2019-06-14 21:24 - 2007-10-12 15:14 - 001374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2019-06-14 21:24 - 2007-10-02 09:56 - 000508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2019-06-14 21:24 - 2007-10-02 09:56 - 000444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2019-06-14 21:24 - 2007-07-20 00:57 - 000411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2019-06-14 21:24 - 2007-07-20 00:57 - 000267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2019-06-14 21:24 - 2007-07-19 18:14 - 005073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2019-06-14 21:24 - 2007-07-19 18:14 - 003727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2019-06-14 21:24 - 2007-07-19 18:14 - 001985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2019-06-14 21:24 - 2007-07-19 18:14 - 001358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2019-06-14 21:24 - 2007-07-19 18:14 - 000508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2019-06-14 21:24 - 2007-07-19 18:14 - 000444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2019-06-14 21:24 - 2007-06-20 20:49 - 000409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2019-06-14 21:24 - 2007-06-20 20:46 - 000266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2019-06-14 21:24 - 2007-05-16 16:45 - 004496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2019-06-14 21:24 - 2007-05-16 16:45 - 003497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2019-06-14 21:24 - 2007-05-16 16:45 - 001401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2019-06-14 21:24 - 2007-05-16 16:45 - 001124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2019-06-14 21:24 - 2007-05-16 16:45 - 000506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2019-06-14 21:24 - 2007-05-16 16:45 - 000443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2019-06-14 21:24 - 2007-04-04 18:55 - 000403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2019-06-14 21:24 - 2007-04-04 18:55 - 000261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2019-06-14 21:24 - 2007-03-12 16:42 - 004494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2019-06-14 21:24 - 2007-03-12 16:42 - 003495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2019-06-14 21:24 - 2007-03-05 12:42 - 000017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2019-06-14 21:24 - 2007-03-05 12:42 - 000015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2019-06-14 21:24 - 2007-01-24 15:27 - 000393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2019-06-14 21:24 - 2007-01-24 15:27 - 000255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2019-06-14 21:24 - 2006-12-08 12:02 - 000251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2019-06-14 21:24 - 2006-12-08 12:00 - 000390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2019-06-14 21:24 - 2006-11-29 13:06 - 004398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2019-06-14 21:24 - 2006-11-29 13:06 - 003426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2019-06-14 21:24 - 2006-11-29 13:06 - 000469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2019-06-14 21:24 - 2006-11-29 13:06 - 000440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2019-06-14 21:24 - 2006-09-28 16:05 - 000237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2019-06-14 21:24 - 2006-09-28 16:04 - 000364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2019-06-14 21:24 - 2006-07-28 09:31 - 000083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2019-06-14 21:24 - 2006-07-28 09:30 - 000363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2019-06-14 21:24 - 2006-07-28 09:30 - 000236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2019-06-14 21:24 - 2006-07-28 09:30 - 000062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2019-06-14 21:24 - 2006-05-31 07:24 - 000230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2019-06-14 21:24 - 2006-05-31 07:22 - 000354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2019-06-14 21:24 - 2006-02-03 08:43 - 003830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2019-06-14 21:24 - 2006-02-03 08:43 - 002332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2019-06-14 21:24 - 2006-02-03 08:42 - 000355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2019-06-14 21:24 - 2006-02-03 08:42 - 000230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2019-06-14 21:24 - 2006-02-03 08:41 - 000016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2019-06-14 21:24 - 2006-02-03 08:41 - 000014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2019-06-14 21:24 - 2005-12-05 18:09 - 003815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2019-06-14 21:24 - 2005-12-05 18:09 - 002323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2019-06-14 21:24 - 2005-07-22 19:59 - 003807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2019-06-14 21:24 - 2005-07-22 19:59 - 002319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2019-06-14 21:24 - 2005-05-26 15:34 - 003767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2019-06-14 21:24 - 2005-05-26 15:34 - 002297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2019-06-14 21:24 - 2005-02-05 19:45 - 003544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2019-06-14 21:24 - 2005-02-05 19:45 - 002222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2019-06-09 00:34 - 2019-06-15 21:12 - 000000000 ____D C:\Program Files (x86)\Origin Games
2019-06-09 00:30 - 2019-06-15 20:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2019-06-09 00:30 - 2019-06-09 00:30 - 000000000 ____D C:\Program Files (x86)\Origin
2019-06-09 00:29 - 2019-06-18 22:26 - 000000000 ____D C:\ProgramData\Origin
2019-06-09 00:29 - 2019-06-18 22:15 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Origin
2019-06-09 00:29 - 2019-06-15 21:28 - 000000000 ____D C:\Users\DanY\AppData\Local\Origin
2019-06-09 00:29 - 2019-06-09 00:29 - 000000000 ____D C:\Users\DanY\.QtWebEngineProcess
2019-06-09 00:29 - 2019-06-09 00:29 - 000000000 ____D C:\Users\DanY\.Origin
2019-06-09 00:23 - 2019-06-14 19:57 - 000000000 ____D C:\Users\DanY\AppData\Local\Google
2019-06-09 00:09 - 2019-06-09 00:09 - 000000000 ____D C:\Users\DanY\Documents\UnrealTournament
2019-06-08 23:30 - 2019-06-08 23:30 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\Comms
2019-06-08 23:16 - 2019-06-18 21:36 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-06-08 23:16 - 2019-06-08 23:16 - 000000000 ____D C:\Program Files (x86)\Google
2019-06-08 23:15 - 2019-06-08 23:36 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\PlaceholderTileLogoFolder
2019-06-08 23:15 - 2019-06-08 23:34 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\Publishers
2019-06-08 23:15 - 2019-06-08 23:23 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\Google
2019-06-08 23:15 - 2019-06-08 23:16 - 000000000 ___RD C:\Users\Princess Cat\OneDrive
2019-06-08 23:15 - 2019-06-08 23:16 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\NVIDIA Corporation
2019-06-08 23:15 - 2019-06-08 23:15 - 000001417 _____ C:\Users\Princess Cat\Desktop\Microsoft Edge.lnk
2019-06-08 23:15 - 2019-06-08 23:15 - 000000000 ___HD C:\Users\Princess Cat\MicrosoftEdgeBackups
2019-06-08 23:15 - 2019-06-08 23:15 - 000000000 ____D C:\Users\Princess Cat\AppData\Roaming\Mozilla
2019-06-08 23:15 - 2019-06-08 23:15 - 000000000 ____D C:\Users\Princess Cat\AppData\LocalLow\Mozilla
2019-06-08 23:15 - 2019-06-08 23:15 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\Mozilla
2019-06-08 23:15 - 2019-06-08 23:15 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\MicrosoftEdge
2019-06-08 23:15 - 2019-06-08 23:15 - 000000000 ____D C:\Users\Princess Cat\ansel
2019-06-08 23:14 - 2019-06-15 20:47 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\Packages
2019-06-08 23:14 - 2019-06-08 23:15 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\ConnectedDevicesPlatform
2019-06-08 23:14 - 2019-06-08 23:14 - 000000000 ___RD C:\Users\Princess Cat\3D Objects
2019-06-08 23:14 - 2019-06-08 23:14 - 000000000 ____D C:\Users\Princess Cat\AppData\Roaming\Intel
2019-06-08 23:14 - 2019-06-08 23:14 - 000000000 ____D C:\Users\Princess Cat\AppData\Roaming\Adobe
2019-06-08 23:14 - 2019-06-08 23:14 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\VirtualStore
2019-06-08 23:14 - 2019-06-08 23:14 - 000000000 ____D C:\Users\Princess Cat\AppData\Local\NVIDIA
2019-06-08 23:10 - 2019-06-08 23:10 - 000000000 ____D C:\Users\DanY\AppData\Local\id Software
2019-06-08 23:01 - 2019-06-08 23:01 - 000000000 __SHD C:\Users\Public\Shared Files
2019-06-08 22:54 - 2019-06-17 17:47 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-06-08 22:54 - 2019-06-08 22:54 - 000000000 ____D C:\Users\DanY\AppData\Local\FortniteGame
2019-06-08 22:53 - 2019-06-08 22:53 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2019-06-08 21:27 - 2019-06-15 20:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2019-06-08 21:27 - 2019-06-08 21:27 - 000000000 ____D C:\Users\DanY\AppData\Roaming\SUPERAntiSpyware.com
2019-06-08 21:27 - 2019-06-08 21:27 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2019-06-08 21:25 - 2019-06-18 22:09 - 000000000 ____D C:\Users\DanY\AppData\Local\Ubisoft Game Launcher
2019-06-08 21:25 - 2019-06-15 20:47 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2019-06-08 21:01 - 2010-02-04 13:01 - 000024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2019-06-08 21:01 - 2010-02-04 13:01 - 000022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2019-06-08 21:01 - 2007-04-04 21:54 - 000107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2019-06-08 21:00 - 2019-06-21 23:47 - 000000000 ____D C:\Users\DanY\AppData\Local\UnrealEngine
2019-06-08 21:00 - 2019-06-08 21:01 - 000000000 ____D C:\ProgramData\Epic
2019-06-08 21:00 - 2019-06-08 21:00 - 000000789 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2019-06-08 21:00 - 2019-06-08 21:00 - 000000000 ____D C:\Users\DanY\AppData\Local\UnrealEngineLauncher
2019-06-08 21:00 - 2019-06-08 21:00 - 000000000 ____D C:\Users\DanY\AppData\Local\EpicGamesLauncher
2019-06-08 21:00 - 2007-04-04 21:53 - 000081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2019-06-08 20:48 - 2019-06-08 20:49 - 000000000 ____D C:\Users\DanY\AppData\Local\Steam
2019-06-08 20:47 - 2019-06-24 02:43 - 000000000 ____D C:\Program Files (x86)\Steam
2019-06-08 20:47 - 2019-06-15 20:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2019-06-08 20:38 - 2019-06-25 10:15 - 000000000 ____D C:\Users\DanY\AppData\LocalLow\Mozilla
2019-06-08 20:38 - 2019-06-20 22:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-06-08 20:38 - 2019-06-20 22:09 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-06-08 20:38 - 2019-06-08 20:38 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Mozilla
2019-06-08 20:38 - 2019-06-08 20:38 - 000000000 ____D C:\Users\DanY\AppData\Local\Mozilla
2019-06-08 20:38 - 2019-06-08 20:38 - 000000000 ____D C:\ProgramData\Mozilla
2019-06-08 20:29 - 2019-06-21 23:47 - 000000000 ____D C:\Users\DanY\ansel
2019-06-08 20:29 - 2019-06-17 17:49 - 000000000 ____D C:\Users\DanY\AppData\Local\NVIDIA
2019-06-08 20:26 - 2019-06-20 23:58 - 000000000 ____D C:\ProgramData\Packages
2019-06-08 20:25 - 2019-05-23 12:25 - 000260512 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-06-08 20:25 - 2019-05-23 12:25 - 000260512 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-06-08 20:25 - 2019-05-23 12:24 - 001007008 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-06-08 20:25 - 2019-05-23 12:24 - 001007008 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-06-08 20:25 - 2019-05-23 12:24 - 000870304 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-06-08 20:25 - 2019-05-23 12:24 - 000870304 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-06-08 20:25 - 2019-05-23 12:24 - 000552352 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-06-08 20:25 - 2019-05-23 12:24 - 000457304 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-06-08 20:25 - 2019-05-23 12:24 - 000286624 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-06-08 20:25 - 2019-05-23 12:24 - 000286624 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-06-08 20:25 - 2019-05-23 12:23 - 011051968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-06-08 20:25 - 2019-05-23 12:23 - 009487240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-06-08 20:25 - 2019-05-23 12:22 - 000821120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2019-06-08 20:25 - 2019-05-23 12:22 - 000675016 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-06-08 20:25 - 2019-05-23 12:22 - 000631224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-06-08 20:25 - 2019-05-23 12:22 - 000541904 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-06-08 20:25 - 2019-05-23 12:22 - 000522120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 005422040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 004759640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 002039768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 001722456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443086.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 001542232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 001470856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 001467864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443086.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 001162200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 001133824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 000912472 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 000808408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-06-08 20:25 - 2019-05-23 12:21 - 000654752 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-06-08 20:25 - 2019-05-23 12:20 - 040412576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-06-08 20:25 - 2019-05-23 12:20 - 035269592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-06-08 20:25 - 2019-05-23 12:20 - 020190808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-06-08 20:25 - 2019-05-23 12:20 - 017467024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-06-08 20:25 - 2019-05-23 12:14 - 005085672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-06-08 20:25 - 2019-05-23 12:14 - 004340480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-06-08 20:25 - 2019-05-23 10:13 - 001682368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2019-06-08 20:25 - 2019-05-23 10:13 - 000228608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2019-06-08 20:25 - 2019-05-23 10:13 - 000046848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2019-06-08 20:25 - 2019-05-22 19:39 - 000052456 _____ C:\WINDOWS\system32\nvinfo.pb
2019-06-08 20:25 - 2019-04-17 03:42 - 000069840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2019-06-08 20:25 - 2019-04-17 00:44 - 000075600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2019-06-08 19:39 - 2019-06-24 11:17 - 000000000 ____D C:\Users\DanY\AppData\Local\D3DSCache
2019-06-08 19:34 - 2019-06-08 19:34 - 000000080 ___SH C:\bootTel.dat
2019-06-08 19:29 - 2019-06-08 19:29 - 000000000 ____D C:\Users\DanY\Downloads\intel_chipse_9_w10
2019-06-08 19:28 - 2019-06-08 19:28 - 000000000 ____D C:\Users\DanY\AppData\Local\OneDrive
2019-06-08 19:25 - 2019-06-08 19:58 - 000000000 _____ C:\Recovery.txt
2019-06-08 18:33 - 2019-06-08 18:33 - 009831480 _____ C:\Users\DanY\Downloads\asmedia_usb31_win7.zip
2019-06-08 18:33 - 2019-06-08 18:33 - 007340032 _____ C:\Users\DanY\Downloads\intel_me_skl.zip.btqntxd.partial
2019-06-08 18:33 - 2019-06-08 18:33 - 006224720 _____ C:\Users\DanY\Downloads\intel_rst_skl_kbl.zip.d12beih.partial
2019-06-08 18:33 - 2019-06-08 18:33 - 005174859 _____ C:\Users\DanY\Downloads\Intel_Network_skl.zip.v4vd92q.partial
2019-06-08 18:33 - 2019-06-08 18:33 - 004094104 _____ C:\Users\DanY\Downloads\realtek_hd_audio.zip.04ea76p.partial
2019-06-08 18:33 - 2019-06-08 18:33 - 003795004 _____ C:\Users\DanY\Downloads\intel_chipse_9_w10.zip
2019-06-08 18:32 - 2019-06-08 18:32 - 007042905 _____ C:\Users\DanY\Downloads\7998v1E.zip
2019-06-08 18:30 - 2019-06-11 13:26 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-06-08 18:30 - 2019-06-11 13:25 - 135349160 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-06-08 18:27 - 2019-06-20 22:24 - 000000000 ____D C:\Users\DanY\AppData\Local\CrashDumps
2019-06-08 18:20 - 2019-06-08 18:20 - 000000000 ____D C:\Users\DanY\AppData\Local\DBG
2019-06-08 18:19 - 2019-06-08 18:19 - 000000000 ____D C:\Program Files\rempl
2019-06-08 18:19 - 2019-06-08 18:19 - 000000000 ____D C:\Program Files\CUAssistant
2019-06-08 18:19 - 2019-06-08 18:10 - 000592616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2019-06-08 18:17 - 2019-06-08 18:19 - 568597544 _____ (NVIDIA Corporation) C:\Users\DanY\Downloads\430.86-desktop-win10-64bit-international-whql.exe
2019-06-08 18:09 - 2019-06-08 18:09 - 000000000 ____D C:\Users\DanY\AppData\Local\CEF
2019-06-08 18:06 - 2019-06-11 13:43 - 000000000 ____D C:\Users\DanY\AppData\Local\PlaceholderTileLogoFolder
2019-06-08 12:39 - 2019-06-13 13:30 - 000000000 ____D C:\Users\DanY\AppData\Local\ElevatedDiagnostics
2019-06-08 09:59 - 2019-06-08 09:59 - 000000000 ____D C:\Users\DanY\AppData\Local\Comms
2019-06-08 09:56 - 2019-06-08 09:56 - 000000000 ___HD C:\Users\DanY\MicrosoftEdgeBackups
2019-06-08 09:44 - 2019-06-08 18:28 - 000000000 ___RD C:\Users\DanY\OneDrive
2019-06-08 09:43 - 2019-06-08 22:54 - 000000000 ____D C:\Users\DanY\AppData\Local\NVIDIA Corporation
2019-06-08 09:43 - 2019-06-08 18:06 - 000000000 ____D C:\Users\DanY\AppData\Local\MicrosoftEdge
2019-06-08 09:42 - 2019-06-15 21:02 - 000000000 ____D C:\Users\DanY\AppData\Local\Packages
2019-06-08 09:42 - 2019-06-15 20:59 - 000000000 ___RD C:\Users\DanY\3D Objects
2019-06-08 09:42 - 2019-06-12 22:08 - 000000000 ____D C:\Users\DanY\AppData\Local\ConnectedDevicesPlatform
2019-06-08 09:42 - 2019-06-08 09:44 - 000000000 ____D C:\Users\DanY\AppData\Local\VirtualStore
2019-06-08 09:42 - 2019-06-08 09:42 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Intel
2019-06-08 09:42 - 2019-06-08 09:42 - 000000000 ____D C:\Users\DanY\AppData\Roaming\Adobe
2019-06-08 09:42 - 2019-06-08 09:42 - 000000000 ____D C:\Users\DanY\AppData\Local\Publishers

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-06-25 10:15 - 2019-03-19 00:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-06-25 10:15 - 2018-07-21 11:55 - 000000000 ____D C:\ProgramData\NVIDIA
2019-06-25 10:13 - 2019-03-19 00:37 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2019-06-25 10:07 - 2019-03-19 00:50 - 000000000 ____D C:\WINDOWS\INF
2019-06-24 11:22 - 2019-03-19 00:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-06-24 10:20 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-06-24 02:46 - 2019-03-19 00:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-06-24 01:11 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-06-22 23:03 - 2019-03-19 00:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-06-21 23:46 - 2018-05-18 15:09 - 000000000 ____D C:\ProgramData\Package Cache
2019-06-21 21:44 - 2019-03-19 00:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-06-16 11:03 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\appcompat
2019-06-15 21:03 - 2019-03-19 00:56 - 000835688 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2019-06-15 21:03 - 2019-03-19 00:56 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2019-06-15 21:02 - 2019-03-19 00:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-06-15 21:02 - 2019-03-19 00:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-06-15 20:59 - 2018-05-15 12:48 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-06-15 20:58 - 2019-03-19 00:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-06-15 20:55 - 2019-03-19 00:52 - 000000000 __RHD C:\Users\Public\Libraries
2019-06-15 20:55 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-06-15 20:55 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\Registration
2019-06-15 20:55 - 2018-09-15 03:33 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-06-15 20:55 - 2018-07-21 11:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-06-15 20:54 - 2018-07-21 11:53 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-06-15 20:53 - 2019-03-19 00:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-06-15 20:53 - 2018-07-21 11:50 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-06-15 20:53 - 2018-07-21 11:50 - 000000000 ____D C:\WINDOWS\system32\RTCOM
2019-06-15 20:53 - 2018-07-21 11:50 - 000000000 ____D C:\WINDOWS\system32\DAX3
2019-06-15 20:53 - 2018-07-21 11:50 - 000000000 ____D C:\WINDOWS\system32\DAX2
2019-06-15 20:52 - 2019-03-19 00:56 - 000000000 ____D C:\WINDOWS\Setup
2019-06-15 20:52 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\spool
2019-06-15 20:52 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\ServiceState
2019-06-15 20:52 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\Help
2019-06-15 20:52 - 2019-03-19 00:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-06-15 20:52 - 2018-07-21 11:55 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-06-15 20:52 - 2018-07-21 11:47 - 000000000 ____D C:\Program Files\Intel
2019-06-15 20:47 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\Resources
2019-06-15 20:47 - 2018-09-15 03:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2019-06-15 20:47 - 2018-07-21 11:55 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-06-15 20:47 - 2018-07-21 11:50 - 000000000 ____D C:\Program Files\Realtek
2019-06-15 20:47 - 2018-07-21 11:49 - 000000000 ___HD C:\WINDOWS\system32\WLANProfiles
2019-06-15 20:47 - 2018-05-15 12:51 - 000000000 ___HD C:\WINDOWS\OEM
2019-06-15 20:45 - 2019-03-19 00:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-06-15 20:45 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-06-15 20:45 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-06-15 20:45 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-06-15 20:45 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-06-15 20:45 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\ShellComponents
2019-06-15 20:45 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-06-15 20:40 - 2019-03-19 02:20 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2019-06-15 20:40 - 2019-03-19 02:20 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2019-06-15 20:40 - 2019-03-19 02:18 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2019-06-15 20:40 - 2019-03-19 02:18 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2019-06-15 20:40 - 2019-03-19 02:18 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2019-06-15 20:40 - 2019-03-19 02:18 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2019-06-15 20:40 - 2019-03-19 02:18 - 000000000 ____D C:\WINDOWS\system32\winrm
2019-06-15 20:40 - 2019-03-19 02:18 - 000000000 ____D C:\WINDOWS\system32\WCN
2019-06-15 20:40 - 2019-03-19 02:18 - 000000000 ____D C:\WINDOWS\system32\slmgr
2019-06-15 20:40 - 2019-03-19 02:18 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ___SD C:\WINDOWS\system32\F12
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ___SD C:\WINDOWS\system32\dsc
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\MUI
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\system32\Com
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\WINDOWS\IME
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\Program Files\Common Files\System
2019-06-15 20:40 - 2019-03-19 00:52 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2019-06-15 20:40 - 2019-03-19 00:37 - 000000000 ____D C:\WINDOWS\servicing
2019-06-15 20:38 - 2019-03-19 02:19 - 000000000 ____D C:\WINDOWS\OCR
2019-06-13 01:59 - 2018-04-11 19:38 - 000000000 ____D C:\WINDOWS\InfusedApps
2019-06-09 00:23 - 2018-07-21 11:54 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-06-08 20:20 - 2018-05-15 12:47 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\tk-TM
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\te-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\sw-KE
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\prs-AF
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\or-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\mn-MN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\ky-KG
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\km-KH
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\is-IS
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\id-ID
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\bn-BD
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\be-BY
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\as-IN
2019-06-08 20:08 - 2018-04-12 05:19 - 000000000 ____D C:\WINDOWS\system32\af-ZA

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

 

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-06-2019
Ran by DanY (25-06-2019 10:17:14)
Running from D:\dowloads
Windows 10 Home Version 1903 18362.175 (X64) (2019-06-16 00:59:00)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1794716352-2122543093-1743302899-500 - Administrator - Disabled)
DanY (S-1-5-21-1794716352-2122543093-1743302899-1003 - Administrator - Enabled) => C:\Users\DanY
DefaultAccount (S-1-5-21-1794716352-2122543093-1743302899-503 - Limited - Disabled)
Guest (S-1-5-21-1794716352-2122543093-1743302899-501 - Limited - Disabled)
Princess Cat (S-1-5-21-1794716352-2122543093-1743302899-1004 - Limited - Enabled) => C:\Users\Princess Cat
WDAGUtilityAccount (S-1-5-21-1794716352-2122543093-1743302899-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: McAfee VirusScan (Enabled - Up to date) {8BCDACFA-D264-3528-5EF8-E94FD0BC1FBC}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee VirusScan (Enabled - Up to date) {30AC4D1E-F45E-3AA6-6448-D23DAB3B5501}
FW: McAfee Firewall (Enabled) {B3F62DDF-980B-3470-75A7-407A2E6F58C7}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bethesda.net Launcher (HKLM-x32\...\{3448917E-E4FE-4E30-9502-9FD52EABB6F5}_is1) (Version: 1.47.11 - Bethesda Softworks)
CCleaner (HKLM\...\CCleaner) (Version: 5.58 - Piriform)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 398.36 - NVIDIA Corporation) Hidden
Epic Games Launcher (HKLM-x32\...\{466EA30A-9B38-4AD2-A6B0-18D6E0C1A848}) (Version: 1.1.206.0 - Epic Games, Inc.)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version:  - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 75.0.3770.100 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1037 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000071-0190-1033-84C8-B8D95FA3C8C3}) (Version: 19.71.0 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{ed5cef80-a339-45bd-8c06-514eaf785ca8}) (Version: 19.71.0 - Intel Corporation)
Intel® Software Guard Extensions Platform Software (HKLM-x32\...\ARP_for_prd_SGX_1.7.102.37526) (Version: 1.7.102.37526 - Intel Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Malwarebytes version 3.7.1.2839 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.7.1.2839 - Malwarebytes)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.0.75 - McAfee, Inc.)
McAfee® Total Protection (HKLM-x32\...\MSC) (Version: 16.0 R19 - McAfee, Inc.)
Microsoft OneDrive (HKU\S-1-5-21-1794716352-2122543093-1743302899-1003\...\OneDriveSetup.exe) (Version: 19.086.0502.0006 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox 67.0.4 (x64 en-US) (HKLM\...\Mozilla Firefox 67.0.4 (x64 en-US)) (Version: 67.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 67.0.1 - Mozilla)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.19.0.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.19.0.94 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.38.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.16 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Origin (HKLM-x32\...\Origin) (Version: 10.5.40.26928 - Electronic Arts, Inc.)
ProtonVPN (HKLM-x32\...\{2F7C9F34-7064-4637-8CCA-A7BA72E88257}) (Version: 1.8.1 - ProtonVPN AG) Hidden
ProtonVPN (HKLM-x32\...\ProtonVPN 1.8.1) (Version: 1.8.1 - ProtonVPN AG)
ProtonVPNTap (HKLM-x32\...\{C23BCE3A-FD25-48BA-948E-2CE94576F983}) (Version: 1.0.1 - ProtonVPN AG)
Quake III Gold (HKLM-x32\...\1441704920_is1) (Version: 2.0.0.2 - GOG.com)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.18.526.2017 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8237 - Realtek Semiconductor Corp.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 8.0.1038 - SUPERAntiSpyware.com)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.52.100.1020 - Electronic Arts Inc.)
Tom Clancy's Rainbow Six Siege (HKLM-x32\...\Uplay Install 635) (Version:  - Ubisoft Montreal)
UE4 Prerequisites (x64) (HKLM\...\{F9EC45F9-074A-48BF-92E9-A8CADD56F693}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{4e242cc8-5e3c-4b08-9d55-dbc62ddd1208}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C3ACFCEA-240F-4DCC-A0C3-DD55FEE6C3C2}) (Version: 2.58.0.0 - Microsoft Corporation)
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{2E8B8BDD-03DF-4C1C-8C99-E6A4BCBF43CE}) (Version: 2.51.0.0 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 88.0 - Ubisoft)
Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.7.6.0 - Azureus Software, Inc.)
WinRAR 5.70 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)

Packages:
=========
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2019-06-08] (LinkedIn)
Mail and Calendar -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11629.20174.0_x64__8wekyb3d8bbwe [2019-06-08] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-06-08] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-06-08] (Microsoft Corporation) [MS Ad]
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.11629.20246.0_x86__8wekyb3d8bbwe [2019-06-19] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.11629.20246.0_x86__8wekyb3d8bbwe [2019-06-19] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.11629.20246.0_x86__8wekyb3d8bbwe [2019-06-19] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.6132.0_x64__8wekyb3d8bbwe [2019-06-15] (Microsoft Studios) [MS Ad]
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.11629.20246.0_x86__8wekyb3d8bbwe [2019-06-19] (Microsoft Corporation)
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe [2019-06-08] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ContextMenuHandlers1: [DaemonShellExtImage] -> {40966797-8FFE-46C8-9EF8-7003F33CCF0F} => C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTShl64.dll -> No File
ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2019-04-18] (McAfee, Inc. -> McAfee, Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDrive] -> {A5415364-784A-41A5-B47A-D452909CA8FF} => C:\Program Files (x86)\DAEMON Tools Pro Advanced\DTShl64.dll -> No File
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-05-22] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2019-04-18] (McAfee, Inc. -> McAfee, Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2019-04-08 06:58 - 2019-04-08 06:58 - 000152064 _____ () [File not signed] C:\Program Files (x86)\Proton Technologies\ProtonVPN\Resources\64-bit\SplitTunnel.dll
2019-04-24 03:54 - 2019-04-24 03:54 - 000483328 _____ () [File not signed] C:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\IPFilter.dll
2019-06-09 00:30 - 2019-06-09 00:30 - 001548288 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2019-06-09 00:30 - 2019-06-09 00:30 - 000395776 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2019-06-09 00:30 - 2019-06-09 00:30 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2019-06-09 00:30 - 2019-06-09 00:30 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2019-06-09 00:30 - 2019-06-09 00:30 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2019-06-09 00:30 - 2019-06-09 00:30 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2019-06-09 00:30 - 2019-06-09 00:30 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2019-06-09 00:30 - 2019-06-09 00:30 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [232]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1794716352-2122543093-1743302899-1003\...\localhost -> localhost

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-11 19:38 - 2018-04-11 19:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1794716352-2122543093-1743302899-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\DanY\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\wp2107915.jpg
DNS Servers: 192.168.0.1 - 24.200.241.37
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E23C4D77-5CE5-4475-8F41-D31AB69E5FC8}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{FEB7590F-73ED-4EE4-8DD9-B4057DB3F61B}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{F6EF4DB4-8219-4D18-A23F-3F5B8F5759F2}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{8166FD9D-8701-4571-9C0F-A04AB698D35A}] => (Allow) D:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{8E9DE1D9-8763-4647-9514-76F0D462635D}] => (Allow) D:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{D956FECD-6EFF-48A3-9C15-DDE2946F5202}] => (Allow) D:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{EF9D3DBD-A60C-4C90-B627-87F87DBE0F43}] => (Allow) D:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{7B26A446-653C-492C-8430-9F8C588FD964}] => (Allow) D:\SteamLibrary\steamapps\common\Quake Live\quakelive_steam.exe (id Software Inc.) [File not signed]
FirewallRules: [{AB4202D4-1BC1-47C3-97EE-6B640CBCDC09}] => (Allow) D:\SteamLibrary\steamapps\common\Quake Live\quakelive_steam.exe (id Software Inc.) [File not signed]
FirewallRules: [{63BDBB30-B47F-4BC9-B57D-9BE9EED664BF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{D6CE8ECC-A45E-4028-8FF3-A5209A21DDA2}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{1E74F667-AAD4-4AEE-B2AE-457DC65A9D16}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel(R) Wireless Connectivity Solutions -> )
FirewallRules: [{60443440-E714-4B11-BE1A-7D76351030E6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{42A81C99-BECD-4094-B362-FC6AE4C4F603}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{47A0F29F-DA43-4207-BB86-D63F0504B978}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{A36B5C47-26F2-4DE0-AD8A-DD100DEFCD3A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{E47AB925-33F7-4220-B6E8-21B453CAF5BD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{2FDA160F-88C6-4B3A-890F-DC44E15EA5D2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F7E48502-F091-4216-9B55-07FEA21C8BB5}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{044E5F7A-552E-4074-A26D-35417760DE07}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{1BAEC272-016E-43B5-90A5-075159696109}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{C2E4EE1C-44AE-4DFA-BB69-C00FB86B35F9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{265391BC-B381-484B-8BB4-EBB7F86987B5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{70BCF6EB-3902-4BA6-9682-5BE6387599C1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{47F2F131-2F30-4C86-831E-6B0E1D78710C}] => (Allow) D:\SteamLibrary\steamapps\common\quakechampions\client\bin\pc\QuakeChampions.exe (id Software) [File not signed]
FirewallRules: [{4F1FB7ED-4B3C-4B33-8F98-18102B82E058}] => (Allow) D:\SteamLibrary\steamapps\common\quakechampions\client\bin\pc\QuakeChampions.exe (id Software) [File not signed]
FirewallRules: [{3999E7B0-5B08-4A83-9FB3-852C62180F91}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{91A3E852-DCEA-4E74-8EA1-8CA19E17CAE6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{19EDE2D0-8ED5-4AF9-8AF7-979E8D786877}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D25B9DDE-CDB7-417D-A520-193A82E574AB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{F46726F2-9E88-41E5-9F88-91AB75C3843F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{561BD196-1E32-4C85-BD02-5B191FE3C69E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{0C99A0FF-0862-4F55-81E3-A9B81CD99C5E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6984A1CC-9244-4877-B04A-1E725CAA6E3B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.108.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{70853681-049E-4DE2-83A0-0E27EF36DE54}D:\epic games\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe] => (Allow) D:\epic games\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{4B49F131-E405-4930-9055-D4E454A7F3A8}D:\epic games\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe] => (Allow) D:\epic games\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{89AD9E67-1399-4A97-8720-864DD6B31579}] => (Block) D:\epic games\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{21DFF837-2F06-469C-A58E-94C09DA57D60}] => (Block) D:\epic games\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{21C789E2-28C5-4E06-85F2-16F80707EF1F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C5CE2EFD-091C-4A30-A558-6BC70A2B4588}] => (Allow) D:\Sims 4\The Sims 4\Game\Bin\TS4.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{614DE416-6692-4F6D-AF89-E5811AABB1AC}] => (Allow) D:\Sims 4\The Sims 4\Game\Bin\TS4.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{00E886D1-3916-40FA-ADA5-AA0FEAAFC04D}] => (Allow) D:\Sims 4\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{242C0903-1662-4ED6-B47B-1294CCA06EB1}] => (Allow) D:\Sims 4\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{4F7C86CE-43B0-4A8E-BDF9-2905828EA0A3}] => (Allow) C:\Users\DanY\AppData\Roaming\uTorrent\uTorrent.exe No File
FirewallRules: [{8F96155E-ED55-4C2B-B1BF-803FED0C1E82}] => (Allow) C:\Users\DanY\AppData\Roaming\uTorrent\uTorrent.exe No File
FirewallRules: [{6F3B40A4-105F-4972-8E2B-CFAB82D69A5D}] => (Allow) C:\Program Files\Vuze\Azureus.exe (Azureus Software, Inc. -> Azureus Software, Inc)
FirewallRules: [{62A10EDE-D40C-4EF6-93BA-B1E8273A9293}] => (Allow) C:\Program Files\Vuze\Azureus.exe (Azureus Software, Inc. -> Azureus Software, Inc)
FirewallRules: [{F6567E5E-A96F-450C-AD0A-9B324AFED653}] => (Allow) D:\SteamLibrary\steamapps\common\House Party\HouseParty.exe () [File not signed]
FirewallRules: [{8BCDCC1B-4531-48F6-B627-BD2C23C9FB8D}] => (Allow) D:\SteamLibrary\steamapps\common\House Party\HouseParty.exe () [File not signed]
FirewallRules: [{7DA0E757-ECE3-433F-B926-447231389DD9}] => (Allow) D:\SteamLibrary\steamapps\common\Ring of Elysium\SLauncher.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{7C3D36A7-2BF2-42DF-BFE8-D83017DB2A8B}] => (Allow) D:\SteamLibrary\steamapps\common\Ring of Elysium\SLauncher.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{230A432F-F725-4E64-9F48-2515B0FDFDFF}] => (Allow) C:\Program Files\Trust.Zone VPN Client\trustzone.exe No File
FirewallRules: [{4DAC3087-55E8-4414-90CD-2C0580755B53}] => (Allow) C:\Program Files\Trust.Zone VPN Client\tzclient.exe No File
FirewallRules: [{BA1694B4-0BE2-475B-A3F0-12FA6FB671BD}] => (Allow) C:\Program Files\Trust.Zone VPN Client\tzclient_x64.exe No File
FirewallRules: [{F3C48257-02D7-4F07-93D4-3434414BB2A7}] => (Allow) C:\Program Files\Trust.Zone VPN Client\trustzone_x64.exe No File
FirewallRules: [{8A9F5B28-FD06-40C3-9A8A-24621E816C53}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.109.383.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4CAC4ECD-D1DE-4E23-9CDC-BBBA05663615}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.109.383.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{801DBF6C-1700-45ED-8B95-11324CA5C1E0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.109.383.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{FFBFE381-F666-48B2-A615-C294EC446F68}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.109.383.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{34E1249D-2AEA-47C3-8685-1FB2CF207F4E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.109.383.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8B91A533-6539-48F5-9B11-720A7B85C2A3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.109.383.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8D500070-6017-44CF-A2AC-683C33075BD9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.109.383.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{32BE9259-711D-417E-8AD9-D622B5C235FD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.109.383.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============

Name: Standard PS/2 Keyboard
Description: Standard PS/2 Keyboard
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard keyboards)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Microsoft PS/2 Mouse
Description: Microsoft PS/2 Mouse
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (06/24/2019 03:48:45 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (360,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 02:47:12 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13820,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 02:41:01 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13608,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 02:04:32 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7396,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 01:43:52 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (11348,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 01:24:14 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9232,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 01:16:21 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2012,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 12:52:54 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4336,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.


System errors:
=============
Error: (06/25/2019 10:10:15 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.

Module Path: C:\WINDOWS\system32\IntelWifiIhv04.dll

Error: (06/25/2019 10:10:15 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.

Module Path: C:\WINDOWS\system32\IntelWifiIhv04.dll

Error: (06/25/2019 10:10:11 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.

Module Path: C:\WINDOWS\system32\IntelWifiIhv04.dll

Error: (06/25/2019 10:10:09 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Origin Web Helper Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (06/25/2019 10:10:09 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The NVIDIA LocalSystem Container service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 6000 milliseconds: Restart the service.

Error: (06/25/2019 10:10:09 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Intel® SGX AESM service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 300000 milliseconds: Restart the service.

Error: (06/25/2019 10:10:09 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The McAfee WebAdvisor service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1 milliseconds: Restart the service.

Error: (06/25/2019 10:10:09 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The NVIDIA Telemetry Container service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1000 milliseconds: Restart the service.


Windows Defender:
===================================
Date: 2019-06-24 02:46:15.455
Description:
Windows Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Behavior Monitoring
Error Code: 0x80508023
Error description: The program could not find the malware and other potentially unwanted software on this device.
Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.

CodeIntegrity:
===================================

Date: 2019-06-25 10:16:11.330
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 10:16:11.314
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 10:16:08.980
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 10:16:08.944
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 10:15:54.580
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 10:15:54.573
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 10:15:54.559
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 10:15:11.142
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: American Megatrends Inc. 1.70 07/27/2016
Motherboard: MSI Z170A SLI PLUS (MS-7998)
Processor: Intel(R) Core(TM) i7-6700K CPU @ 4.00GHz
Percentage of memory in use: 21%
Total physical RAM: 16341.99 MB
Available physical RAM: 12785.06 MB
Total Virtual: 20181.99 MB
Available Virtual: 15240.68 MB

==================== Drives ================================

Drive 😄 () (Fixed) (Total:111.24 GB) (Free:52.99 GB) NTFS
Drive d: (games) (Fixed) (Total:1863.01 GB) (Free:1514.88 GB) NTFS

\\?\Volume{cb353359-3110-48bc-95c7-effbe34f7f41}\ (Recovery) (Fixed) (Total:0.44 GB) (Free:0.05 GB) NTFS
\\?\Volume{8638f7b5-5acb-4833-b9be-878ed3887712}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 111.8 GB) (Disk ID: 3F1A20A4)

Partition: GPT.

========================================================
Disk: 1 (Size: 1863 GB) (Disk ID: 5CC84D1F)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Link to post
Share on other sites

  • Root Admin

Hi Dan,

The logs do not indicate any obvious infection. It does show some errors and there are signs that you've had Avast and/or AVG antivirus on this computer before as it was not fully uninstalled. McAfee also looks to be possibly blocking some valid programs, but further research may be needed with their support.

 

==================== Event log errors: =========================

Application errors:
==================
Error: (06/25/2019 02:08:31 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (8940,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/25/2019 10:35:12 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (10756,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/25/2019 10:23:15 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7804,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 03:48:45 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (360,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 02:47:12 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13820,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 02:41:01 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13608,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 02:04:32 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7396,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (06/24/2019 01:43:52 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (11348,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.


System errors:
=============
Error: (06/25/2019 05:29:38 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.

Module Path: C:\WINDOWS\system32\IntelWifiIhv04.dll

Error: (06/25/2019 05:29:38 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.

Module Path: C:\WINDOWS\system32\IntelWifiIhv04.dll

Error: (06/25/2019 05:29:35 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.

Module Path: C:\WINDOWS\system32\IntelWifiIhv04.dll

Error: (06/25/2019 05:29:33 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Origin Web Helper Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (06/25/2019 05:29:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The McAfee WebAdvisor service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1 milliseconds: Restart the service.

Error: (06/25/2019 05:29:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Intel® SGX AESM service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 300000 milliseconds: Restart the service.

Error: (06/25/2019 05:29:33 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Intel(R) Dynamic Application Loader Host Interface Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (06/25/2019 05:29:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The NVIDIA LocalSystem Container service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 6000 milliseconds: Restart the service.


Windows Defender:
===================================
Date: 2019-06-24 02:46:15.455
Description: 
Windows Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Behavior Monitoring
Error Code: 0x80508023
Error description: The program could not find the malware and other potentially unwanted software on this device. 
Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.

CodeIntegrity:
===================================

Date: 2019-06-25 17:34:27.210
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 17:34:27.170
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 17:34:25.091
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 17:34:25.073
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 17:34:10.484
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 17:34:10.476
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 17:34:10.466
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2019-06-25 17:33:24.874
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Microsoft signing level requirements.

 

Thanks

Ron

 

Link to post
Share on other sites

  • Root Admin

Due to the lack of feedback, this topic is closed to prevent others from posting here.

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this topic with your request.

This applies only to the originator of this topic. Other members who need assistance please start your own topic in a new thread.

Thanks

 

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.