Jump to content

Recommended Posts

My computer appears to have been affected by a horrible case of fileless malware, enabling RDP services which may have installed a Clover Bootloader, android emulation Hyper driver, as well as phpmailer. Those are just what I saw from the browsing history. I cannot enable IPV4 DNS to communicate directly with the router. Each time I install any kind of software it spawns more processes and embeds itself further into the OS. I believe there a reverse proxy that’s routing it somewhere, I just can’t figure out what rules are causing it.

The issue is very persistent, and whatever malicious toolset was used was used on two previous PCs and rendered them inoperable. The PC being used now is three or so weeks old, and is on its second Windows install. Recovery will not work and resetting does not work. The good news, if there is any, is that the file dates on this is the same as the initial set from last year so whatever is going on has not been updated since then.
 

There are a lot of powershell manifest files on the C drive, various installed programs without installation files, and the /fixboot operation does not work. The Dism.exe seems to exacerbate the problem, as well as SFC. I’ve tried to update the drivers from the manufacturer’s site, but they do t seem to be able to coexist with whatever (software or hardware emulation?) is already installed and operating on the PC. It also appears to be grabbing other devices locally close by that aren’t on the LAN like the phone, TV, MacBook, etc. Accounts created and logged into the past few weeks have had settings changed, so there’s a keylogger as well. It looks like it started with a DLL hijack/proxy, then privilege escalation. 

The easy answer is obviously to wipe the machine, but I’ve tried that with a Windows USB. It doesn’t remove everything completely. It still uses the drivers and many of the programs from the previous version. It also maintains the Registry, which is likely the root cause. 
 

It’s pretty overwhelming, and I’m not sure where to start. Malwarebytes antivirus kicks up the CPU usage to 100%, especially when scanning the registry. It never finds anything, though. 
 

Thanks in advance for the assistance! 
 

 

Link to post
Share on other sites
Hello Myaccount and welcome to Malwarebytes,

Continue with the following:

If you do not have Malwarebytes installed do the following:

Download Malwarebytes version 4 from the following link:

https://www.malwarebytes.com/mwb-download/thankyou/

Double click on the installer and follow the prompts.

When the install completes or Malwarebytes is already installed do the following:

Open Malwarebytes, select > "settings" > "protection tab"

Scroll down to "Scan Options" ensure Scan for Rootkits and Scan within Archives are both on....

Go back to "DashBoard" select the Blue "Scan Now" tab......

When the scan completes quarantine any found entries...

To get the log from Malwarebytes do the following:
 
  • Click on the Detection History tab > from main interface.
  • Then click on "History" that will open to a historical list
  • Double click on the Scan log which shows the Date and time of the scan just performed.
  • Click Export > From export you have two options:
    Copy to Clipboard - if seleted right click to your reply and select "Paste" log will be pasted to your reply
    Text file (*.txt) - if selected you will have to name the file and save to a place of choice, recommend "Desktop" then attach to reply

     
  • Please use "Copy to Clipboard, then Right click to your reply > select "Paste" that will copy the log to your reply…


Next,

Download AdwCleaner by Malwarebytes onto your Desktop.

Or from this Mirror
 
  • Right-click on AdwCleaner.exe and select http://i.imgur.com/Spcusrh.pngRun as Administrator (for Windows Vista, 7, 8, 8.1 and 10 users)
  • Accept the EULA (I accept), then click on Scan
  • Let the scan complete. Once it's done, make sure that every item listed in the different tabs is checked and click on the Quarantine button. This will kill all the active processes
  • Once the cleaning process is complete, AdwCleaner will ask to restart your computer, do it
  • After the restart, a log will open when logging in. Please copy/paste the content of that log in your next reply


Next,

Download Farbar Recovery Scan Tool and save it to your desktop.

Alternative download option: http://www.techspot.com/downloads/6731-farbar-recovery-scan-tool.html

Note: You need to run the version compatible with your system (32 bit or 64 bit). If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

If your security alerts to FRST either, accept the alert or turn your security off to allow FRST to run. It is not malicious or infected in any way...

Be aware FRST must be run from an account with Administrator status...
 
  • Double-click to run it. When the tool opens click Yes to disclaimer.(Windows 8/10 users will be prompted about Windows SmartScreen protection - click More information and Run.)
  • Make sure Addition.txt is checkmarked under "Optional scans"
    user posted image
     
  • Press Scan button to run the tool....
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The tool will also make a log named (Addition.txt) Please attach that log to your reply.


Let me see those logs in your reply...

Thank you,

Kevin....
Link to post
Share on other sites

Malwarebytes didn't save any logs from the scan. It did, however, produce a log file called - 

AppCrash_mbamtray.exe_b3fba37671ccf40c0497de8785f77afa1b79f_98ea7fc5_a5da6989-6e5f-4d10-b90d-5124dd6fac44. Unfortunately it has privileges set that I cannot overwrite, and I cannot access the folder to read its contents. 

 

ADWCleaner didn't open a log file when I restarted. However, in the C:\AdwCleaner\Logs folder it saved this file - 

# -------------------------------
# Malwarebytes AdwCleaner 8.0.8.0
# -------------------------------
# Build:    10-08-2020
# Database: 2020-09-29.1 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    11-14-2020
# Duration: 00:00:00
# OS:       Windows 10 Home
# Cleaned:  2
# Failed:   0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

Deleted       Preinstalled.HPTouchpointAnalyticsClient   Folder   C:\ProgramData\HP\HP TOUCHPOINT ANALYTICS CLIENT
Deleted       Preinstalled.HPTouchpointAnalyticsClient   Registry   HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1628 octets] - [14/11/2020 15:49:01]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
 

Running FRST in a minute. I'll post the logs soon. 

Link to post
Share on other sites

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11-11-2020
Ran by Lindsay (administrator) on DESKTOP-A4GIAUI (HP HP Laptop 15-dy1xxx) (14-11-2020 16:00:10)
Running from C:\Users\Lindsay\Desktop
Loaded Profiles: Lindsay
Platform: Windows 10 Home Version 1909 18363.1198 (X64) Language: English (United States)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe
(ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.32\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.32\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <8>
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_3b1a7f8fd6029daa\x64\TouchpointAnalyticsClientService.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\AppHelperCap.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\NetworkCap.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\SysInfoCap.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4a3ae74cfa6c37d6\esif_uf.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_3ef70b9d5cc0699f\LMS.exe
(Intel(R) pGFX 2020 -> ) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_dc7a0fe3ada1cbf5\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_dc2a57d591329a30\igfxCUIServiceN.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_dc2a57d591329a30\igfxEMN.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_ada2367baaae74c0\IntelCpHDCPSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_6ca78a08b838e305\RstMwService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11811.1001.18.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [973304 2019-10-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\86.0.4240.193\Installer\chrmstp.exe [2020-11-11] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {10F9930D-0C92-4279-9A32-0431FAA4CEC3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-09] (Google LLC -> Google LLC)
Task: {9448F1EE-049F-4A6C-906B-F76BA1A9F738} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-09] (Google LLC -> Google LLC)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{316a9bd1-57cd-4b59-a404-47bf4d41adb5}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{72c41009-b1bb-4e5a-bc4c-744372877419}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{72c41009-b1bb-4e5a-bc4c-744372877419}: [DhcpNameServer] 75.75.75.75 75.75.76.76

Chrome: 
=======
CHR Profile: C:\Users\Lindsay\AppData\Local\Google\Chrome\User Data\Default [2020-11-14]
CHR Extension: (Slides) - C:\Users\Lindsay\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-11-14]
CHR Extension: (Docs) - C:\Users\Lindsay\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-11-14]
CHR Extension: (Google Drive) - C:\Users\Lindsay\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-14]
CHR Extension: (YouTube) - C:\Users\Lindsay\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-11-14]
CHR Extension: (Sheets) - C:\Users\Lindsay\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-11-14]
CHR Extension: (Google Docs Offline) - C:\Users\Lindsay\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Lindsay\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-11-14]
CHR Extension: (Gmail) - C:\Users\Lindsay\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-14]
CHR Extension: (Chrome Media Router) - C:\Users\Lindsay\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-11-14]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\AppHelperCap.exe [601368 2020-10-19] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\NetworkCap.exe [599832 2020-10-19] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\SysInfoCap.exe [600344 2020-10-19] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_3b1a7f8fd6029daa\x64\TouchpointAnalyticsClientService.exe [465168 2020-11-02] (HP Inc. -> HP Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7269976 2020-11-09] (Malwarebytes Inc -> Malwarebytes)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe [2467088 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe [128376 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2020-11-09] (Malwarebytes Corporation -> Malwarebytes)
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [23960 2018-07-06] (HP Inc. -> HP Inc.)
R3 iaLPSS2_I2C_ICL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_icl.inf_amd64_e0e88582ca2b3459\iaLPSS2_I2C_ICL.sys [198656 2019-12-26] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [217600 2020-11-14] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-11-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [197792 2020-11-14] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [74936 2020-11-14] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-11-13] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [134304 2020-11-14] (Malwarebytes Inc -> Malwarebytes)
S3 MEMSWEEP2; C:\WINDOWS\system32\9935.tmp [6144 2010-05-26] (Sophos Plc) [File not signed]
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2020-11-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [429288 2020-11-06] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2020-11-06] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2020-06-08] (HP Inc. -> HP)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-11-14 16:00 - 2020-11-14 16:00 - 000010974 _____ C:\Users\Lindsay\Desktop\FRST.txt
2020-11-14 15:58 - 2020-11-14 15:58 - 002298368 _____ (Farbar) C:\Users\Lindsay\Desktop\FRST64.exe
2020-11-14 15:51 - 2020-11-14 15:51 - 000197792 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2020-11-14 15:51 - 2020-11-14 15:51 - 000134304 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2020-11-14 15:51 - 2020-11-14 15:51 - 000074936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2020-11-14 15:48 - 2020-11-14 15:51 - 000000000 ____D C:\AdwCleaner
2020-11-14 15:48 - 2020-11-14 15:48 - 008447152 _____ (Malwarebytes) C:\Users\user\Desktop\adwcleaner_8.0.8.exe
2020-11-14 15:32 - 2020-11-14 15:32 - 002077648 _____ (Malwarebytes) C:\Users\user\Desktop\MBSetup.exe
2020-11-14 10:49 - 2020-11-14 10:49 - 000121928 _____ (Microsoft Corporation) C:\Users\user\Desktop\Windows-KB841290-x86-ENU.exe
2020-11-14 10:46 - 2020-11-14 10:46 - 000212797 _____ C:\Users\user\Desktop\EmoCheck-1.0.0.zip
2020-11-14 10:46 - 2020-11-14 10:46 - 000000000 ____D C:\Users\user\Desktop\EmoCheck-1.0.0
2020-11-14 10:45 - 2020-11-14 10:45 - 000000144 _____ C:\Users\user\Desktop\DESKTOP-A4GIAUI_20201114104538_emocheck.txt
2020-11-14 10:44 - 2020-11-14 10:44 - 000974192 _____ C:\Users\user\Desktop\emocheck_v1.0_x64.exe
2020-11-14 10:28 - 2020-11-14 10:28 - 000217600 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2020-11-13 21:52 - 2020-11-13 21:52 - 000000000 ____D C:\Users\Lindsay\AppData\Local\CrashDumps
2020-11-13 21:08 - 2020-11-13 22:02 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2020-11-13 16:03 - 2020-11-13 15:47 - 001118208 _____ C:\Users\Lindsay\Desktop\Microsoft-Windows-Store.evtx
2020-11-13 16:03 - 2020-11-13 15:47 - 000107022 _____ C:\Users\Lindsay\Desktop\ClipDiagReport.xml
2020-11-13 15:59 - 2020-11-13 16:02 - 000000000 ____D C:\Users\Lindsay\Desktop\New folder (2)
2020-11-13 15:59 - 2020-11-13 15:59 - 000000000 ____D C:\Users\Lindsay\Desktop\New folder (3)
2020-11-13 15:58 - 2020-11-13 15:47 - 001118208 _____ C:\Users\Lindsay\Desktop\Client-Licensing.evtx
2020-11-13 15:58 - 2020-11-13 15:47 - 000004912 _____ C:\Users\Lindsay\Desktop\WPAKeys.reg.txt
2020-11-13 15:58 - 2020-11-13 15:47 - 000001522 _____ C:\Users\Lindsay\Desktop\dsregcmd.txt
2020-11-13 15:58 - 2020-11-13 15:47 - 000000143 _____ C:\Users\Lindsay\Desktop\nslookup-kms-srv.txt
2020-11-12 20:55 - 2020-11-12 20:55 - 000000000 ____D C:\SWSetup
2020-11-12 20:55 - 2020-11-12 20:55 - 000000000 ____D C:\Program Files (x86)\Realtek
2020-11-12 19:31 - 2020-11-12 19:31 - 000007624 _____ C:\Users\Lindsay\AppData\Local\Resmon.ResmonCfg
2020-11-12 05:13 - 2020-11-12 05:13 - 000000000 ____H C:\Users\user\Documents\Default.rdp
2020-11-12 04:45 - 2020-11-12 04:45 - 000000000 ____D C:\Users\user\Desktop\New folder
2020-11-12 04:44 - 2020-11-12 04:44 - 001010596 _____ C:\WINDOWS\Minidump\111220-5312-01.dmp
2020-11-12 04:37 - 2020-11-12 04:44 - 993266923 _____ C:\WINDOWS\MEMORY.DMP
2020-11-12 04:37 - 2020-11-12 04:37 - 001221804 _____ C:\WINDOWS\Minidump\111220-5468-01.dmp
2020-11-12 04:36 - 2020-11-12 20:40 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2020-11-12 04:36 - 2020-11-12 04:44 - 000000000 ____D C:\Users\Lindsay\Desktop\mbar
2020-11-11 17:11 - 2010-05-26 10:39 - 000006144 ____N (Sophos Plc) C:\WINDOWS\system32\9935.tmp
2020-11-11 17:10 - 2010-05-26 10:39 - 000006144 ____N (Sophos Plc) C:\WINDOWS\system32\78FE.tmp
2020-11-11 12:21 - 2020-11-11 12:21 - 000037670 _____ C:\Users\user\Downloads\Whole Group Service Time.pdf
2020-11-11 10:44 - 2020-11-11 10:44 - 000039467 _____ C:\Users\user\Downloads\Christian Attendance.pdf
2020-11-11 10:43 - 2020-11-11 10:43 - 000047537 _____ C:\Users\user\Downloads\Alejandro Attendance.pdf
2020-11-11 10:42 - 2020-11-11 10:42 - 000054339 _____ C:\Users\user\Downloads\Reem Attendance.pdf
2020-11-11 10:42 - 2020-11-11 10:42 - 000052873 _____ C:\Users\user\Downloads\Max Attendance.pdf
2020-11-11 09:20 - 2020-11-11 09:20 - 000053062 _____ C:\Users\user\Downloads\Perfection Attendance.pdf
2020-11-11 09:18 - 2020-11-11 09:18 - 000049367 _____ C:\Users\user\Downloads\James Attendance.pdf
2020-11-11 09:04 - 2020-11-11 09:04 - 032928928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 031599448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 025903104 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 025445888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 022651392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 019852288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 019812352 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 018038784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 014818304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 011630080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 009728512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 008011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 007823912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 007761408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 007292928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 007008256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 006710272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 006527992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 006311424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 006071392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005946368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005906944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005848848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005770336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005507072 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005195432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005112320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005099384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005041152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005008896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 005003824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 004855808 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 004608000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 004547072 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 004538368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 004348928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 004310016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 004150272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 004032776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 003820032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 003761664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 003741520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 003694392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 003635712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 003506688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 003398656 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 003243080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002950264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002948920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002875904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002831872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 002799616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 002777712 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-11-11 09:04 - 2020-11-11 09:04 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-11-11 09:04 - 2020-11-11 09:04 - 002740736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002737664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002737152 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002588688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 002585032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002576896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002564608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002495264 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002491032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 002399232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002315984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002307584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002306048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002281472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002263296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002259192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 002230240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002227512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002204160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002147328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002138264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 002133312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002096128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002073176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 002022400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001996800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001991608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001975808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001958072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001957528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001916752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001869696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001859072 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001845912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001842368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001835520 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001803776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 001789752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001783984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001704448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001698816 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001693696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001673568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001668312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001665192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001653800 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001637376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001617088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001615360 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001593344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001581568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001565504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001564160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001559040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pla.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001556200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001550336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001539072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 001525760 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001523712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001512960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001507328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001506112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001491160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001484384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001477120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001463808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001459712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001436032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvbvm60.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001421392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001419328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001410048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 001408512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001397568 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 001393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001382400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001371136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001369088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001357824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001346048 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001344512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001344512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMNetMgr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001336320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001335608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001327616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001314304 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001307448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001307136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001298752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001290192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001285120 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001282872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-11-11 09:04 - 2020-11-11 09:04 - 001272160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001271808 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001265152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001265152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001249792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 001247744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 001246208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001223168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001218424 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 001218048 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 001214464 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001214264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001213440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001190912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001184256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001182744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001154952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001141048 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001139200 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001124864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMNetMgr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001108376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001101312 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001101312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001099608 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001098728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001088000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001077056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001068544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdosys.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 001053120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001048992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001039872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 001034752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001031680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001022264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001020032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001015296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001009664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001009200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001004872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000995840 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000992256 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2fs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000983040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi3.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000980832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000975360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000967680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000951296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000945176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000935040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000911872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000910336 _____ (Microsoft Corporation) C:\WINDOWS\system32\autofmt.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000907072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000897648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000894016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000892928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000892928 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000892728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000889408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000878592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autochk.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000871936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsperformancerecordercontrol.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000868352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2fs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000864768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000862208 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000860160 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2020-11-11 09:04 - 2020-11-11 09:04 - 000855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000852992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000851768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi3.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000848384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000837120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000834560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autofmt.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000833336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000832512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdosys.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000807936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000801832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000800576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000793320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000787456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000784000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000779080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000778872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000777216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000776704 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000775480 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000774144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000767984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000757632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000748384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000744240 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000743936 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000741696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000740352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000738072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000734720 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000724992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000718336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000711168 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000696832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000696832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000695208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000694160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000692224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000692224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000692224 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkObjCore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000682752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000682736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000676072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000675024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000673088 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000672256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000671560 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000667312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000666288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000655360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000653824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000634880 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000628416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000628032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000619008 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000602224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000600064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000599864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000594992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\psisdecd.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000593416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000592936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfh264enc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000582056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000575488 _____ (Microsoft® Windows® Operating System) C:\WINDOWS\system32\wvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfh264enc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msTextPrediction.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000573952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000572200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000571904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000568128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2020-11-11 09:04 - 2020-11-11 09:04 - 000565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000564496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000555520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdial32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2020-11-11 09:04 - 2020-11-11 09:04 - 000553664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000551624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000551624 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000549376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000542288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000540200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000538680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000531472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000528896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000522752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000522240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000516536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000515584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000513848 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000508720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000508216 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000506368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.PredictionUnit.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOMEX.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000502784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000501760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000501000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2020-11-11 09:04 - 2020-11-11 09:04 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2020-11-11 09:04 - 2020-11-11 09:04 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroles.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmdial32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000488568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000487784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000486400 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000484864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psisdecd.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000478296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000478208 _____ (Microsoft® Windows® Operating System) C:\WINDOWS\SysWOW64\wvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000474432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000473584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassdo.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2020-11-11 09:04 - 2020-11-11 09:04 - 000456072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000453944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000451864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000442096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\termmgr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000423424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000423424 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswmdm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000422000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2020-11-11 09:04 - 2020-11-11 09:04 - 000420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000420168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-11-11 09:04 - 2020-11-11 09:04 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000410112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.Phone.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000407864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizeng.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000406992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000406992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000405928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000398336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000398336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\umrdp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000387584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000384512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000381440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000379704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000375504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000366184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\termmgr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassdo.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000359496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP4SDECD.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Magnify.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AccountsRt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswmdm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000345568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000343408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP4SDECD.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Feedback.Analog.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HrtfApo.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000326656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000325432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpviewerax.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000311440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapisrv.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\RASMM.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000301064 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpendp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000300704 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000299072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TaskApis.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000294728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnclient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RADCUI.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcomapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000285568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000284504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000280888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000273744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000273744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbroker.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstext40.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerPlatform.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000271360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpviewerax.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFMCP.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000268552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000267776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000266552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000262848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpendp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000260328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000260096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wavemsp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2020-11-11 09:04 - 2020-11-11 09:04 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapisrv.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000251512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\FileHistory.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000246584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchangeHost.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000245336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacEncoder.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shdocvw.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasrad.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.SystemManagement.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkEd.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasplap.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wavemsp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-11-11 09:04 - 2020-11-11 09:04 - 000224568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000224064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmon.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2020-11-11 09:04 - 2020-11-11 09:04 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000213784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2020-11-11 09:04 - 2020-11-11 09:04 - 000204104 _____ (Microsoft Corporation) C:\WINDOWS\system32\unattend.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000204008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityCenterBroker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasplap.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000199992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\accessibilitycpl.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmidx.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000197432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000196096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psr.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\recdisc.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000194048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000193600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000193536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000190056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000188216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifsutil.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000188208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionQueue.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasrad.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-11-11 09:04 - 2020-11-11 09:04 - 000186880 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdigest.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000185952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasrecst.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netprofm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinput.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\net1.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowService.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsentUxClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000176952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskpart.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrahc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000172352 _____ (Microsoft Corporation) C:\WINDOWS\system32\PktMon.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeHelper.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpdxm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaatext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000165296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000165176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cic.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000150328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000149304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ulib.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasnap.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmidx.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000146640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spopk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\net1.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Winlangdb.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000141632 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowService.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000139952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityRuntime.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000136328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Compression.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Haptics.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\raserver.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000133944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnscmmc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000133256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47mrm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasrecst.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000132712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000130112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000130112 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbrokerAx.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupcln.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAMM.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000124512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnscmmc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWSDAHost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaatext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbnetlib.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapistub.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapi32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000120560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvEmulation.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000117208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadWamExtension.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\logman.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoipRT.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000111536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbnetlib.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\socialapis.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\provmigrate.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raserver.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasnap.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000105840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MixedRealityRuntime.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfrgui.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000102760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000099712 _____ (Microsoft Corporation) C:\WINDOWS\system32\FsIso.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000099104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkspbrokerAx.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmjpegdec.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logman.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compstui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000097088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PktMon.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000093512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000093448 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000093112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000090944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000090936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vid.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dfrgui.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000089336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.Preview.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PeopleAPIs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasacct.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcXtrnal.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000086272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwanRadioManager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2020-11-11 09:04 - 2020-11-11 09:04 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000083600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmjpegdec.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2020-11-11 09:04 - 2020-11-11 09:04 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Print.Workflow.Source.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRBroker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhuxgraphics.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasads.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSSessionUX.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DiagnosticInvoker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\djoin.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000072824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2020-11-11 09:04 - 2020-11-11 09:04 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpkinstall.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiverExt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000068608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbussdapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000068416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceReactivation.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2020-11-11 09:04 - 2020-11-11 09:04 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Printers.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasacct.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AtBroker.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemUWPLauncher.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coloradapterclient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConfigureExpandedStorage.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msobjs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmRes.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Print.Workflow.Source.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpnotify.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\PnPUnattend.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\reg.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\amsi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000059221 _____ C:\WINDOWS\system32\srms.dat
2020-11-11 09:04 - 2020-11-11 09:04 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncobjapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiverExt.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrTasks.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasads.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiscap.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000054720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtutils.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\relog.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000052152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ResourcePolicyClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000051632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel.appcore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ffbroker.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\tar.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NAPCRYPT.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000050560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\iaspolcy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edpnotify.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\typeperf.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddrawex.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfctrs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSa.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\relog.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguageProfileCallback.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NAPCRYPT.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tar.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000042336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\typeperf.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000041864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityCenterBrokerPS.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfctrs.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddrawex.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfdisk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfos.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iaspolcy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSa.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfproc.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcicda.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfdisk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acwow64.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wslapi.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmtask.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Websocket.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfos.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000035840 _____ C:\WINDOWS\system32\deploymentcsphelper.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\posetup.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnscacheugc.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ias.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\delegatorprovider.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpupdate.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxstrace.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaProxy.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2020-11-11 09:04 - 2020-11-11 09:04 - 000028368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SecurityCenterBrokerPS.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfnet.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi_passthru.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowProxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbtugc.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSaProxy.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpupdate.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskperf.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciwave.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\delegatorprovider.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciseq.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfnet.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\npmproxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ias.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemEventsBrokerClient.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskperf.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000021320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidtel.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi_passthru.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\EsdSip.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000019768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msauserext.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsregtask.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmproxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wksprtPS.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowProxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.Native.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fixmapi.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.ps.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDJPN.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcXtrnal.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmsprep.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedssync.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDKOR.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.Native.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\plasrv.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtprio.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106n.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd101.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106n.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd101.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shimeng.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx
2020-11-11 09:04 - 2020-11-11 09:04 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe
2020-11-11 09:04 - 2020-11-11 09:04 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2020-11-11 09:04 - 2020-11-11 09:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3r.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3r.dll
2020-11-11 09:04 - 2020-11-11 09:04 - 000000357 _____ C:\WINDOWS\system32\DrtmAuthKeyDelegate_From_20190529_To_20200303.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000357 _____ C:\WINDOWS\system32\DrtmAuth1KeyDelegate.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-11-11 09:04 - 2020-11-11 09:04 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-11-11 09:03 - 2020-11-11 09:03 - 017790976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 009925944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 009339392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 007913776 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 007846632 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 007582768 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 007297536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 007274304 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 006438400 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 006233088 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 006196736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 006066808 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 005890048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 005284328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 004685120 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 004565248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 004471296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2020-11-11 09:03 - 2020-11-11 09:03 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 004050944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 004014592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 004005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003806208 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003732480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003728384 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 003656192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003581240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 003545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003387904 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003371168 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003327776 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003265024 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003260928 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003232064 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 003187200 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003143168 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003136512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002993976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 002985472 _____ (Microsoft Corporation) C:\WINDOWS\system32\FluencyDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002854400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002808832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002775688 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002760704 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 002712064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 002695992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 002656768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002556224 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002523136 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002505496 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002485248 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002466296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002455928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002357248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002296832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002285056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002264064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002261848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002161664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002157056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002136064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002125392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002114560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002092328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002073088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002060288 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 002007360 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001998936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001972536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 001967104 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001947688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001942016 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001930752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001877504 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001841152 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001834296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001827328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001824768 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001816528 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001784832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001766400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001764336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001756592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-11-11 09:03 - 2020-11-11 09:03 - 001751552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001746240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001723392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001683968 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001669120 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001656904 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001640448 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001632256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001618704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001606144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001536512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001512840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 001505592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001499136 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001488384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 001487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001485824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001480512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 001447424 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 001413712 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001399216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001393968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001392128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001385704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001378528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001375744 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001366136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-11-11 09:03 - 2020-11-11 09:03 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001346048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001338368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001335296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001330952 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001300280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 001285448 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001285120 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001274128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001271296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrSvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001263856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001259720 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001218560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001187840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001183232 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001182248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 001170960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001159168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001153024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsperformancerecordercontrol.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001151304 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001150256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 001132544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001127936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001123344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001096704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001092608 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001086784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001086776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001083696 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001081344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001077248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001075200 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskbarcpl.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001071184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001059328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001055232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001051448 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001047040 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2020-11-11 09:03 - 2020-11-11 09:03 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001029952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 001028336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001026800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001024656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001017656 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001014784 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000986936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000982840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000981320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000979264 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000978232 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000974336 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000958608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000944680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000938984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000937984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000932352 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkObjCore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000919880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000916760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000904192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000893616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000891984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2020-11-11 09:03 - 2020-11-11 09:03 - 000875400 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000867840 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000858928 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000852280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000851968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000847168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000835672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000825344 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000824848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000821232 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000817152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000805184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000804168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000802304 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000797456 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000793088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000782656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000777216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000768000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000761672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000760296 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000759808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000752592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000742720 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000737792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000732200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000732160 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000722080 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000716312 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000710656 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000706544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000684872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000680248 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000678720 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000676864 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000675840 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000672064 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000661832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000656696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000642008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000639392 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000637480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000636856 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000634680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2020-11-11 09:03 - 2020-11-11 09:03 - 000630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000618296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000605896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000604992 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000602424 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000602112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000598568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000598336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000589392 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000587064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000586552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000586048 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000564736 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000561464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000555320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000549048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000548984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-11-11 09:03 - 2020-11-11 09:03 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxAPDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000531768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2020-11-11 09:03 - 2020-11-11 09:03 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000524784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000524208 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000522688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000519496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000518464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000516608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000510792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000506368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxHAPDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000502784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRClient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-11-11 09:03 - 2020-11-11 09:03 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000467944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2020-11-11 09:03 - 2020-11-11 09:03 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\HrtfApo.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000463168 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000461112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtCangjieDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000460192 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000458240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000457016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtBopomofoDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtHkStrokeDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChsStrokeDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtQuickDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000441152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000440832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000437568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000435000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000429880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000425056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000422712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.ESim.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000416056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000415816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000411640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskApis.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000399672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000398656 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000389440 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000386320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000381656 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000375096 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerPlatform.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpndecoder.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxDecoder.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000372544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysFxUI.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000369304 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000364856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000363120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxinputrouter.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnclient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000353752 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpr.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000343416 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageOverlayServer.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000340328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Acx01000.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RasMediaManager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000335448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.SystemManagement.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000333128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000323904 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000322504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000318680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtfDecoder.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000306496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000297272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000293176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000291256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpnranker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposerFramework.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smbwmiv2.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiCloudStore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000273208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkEd.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2020-11-11 09:03 - 2020-11-11 09:03 - 000260408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000260288 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000254776 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000250680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000247864 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000246592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000239928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000234992 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000231912 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\psr.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000224072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000222528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000222528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtcModel.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleBand.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000214848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutil.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000213824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000209208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000208712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000205632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SwitcherDataModel.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000204608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000201744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000201544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000201544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000200704 _____ C:\WINDOWS\system32\IHDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Internal.Input.ExpressiveInput.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000200008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Winlangdb.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000193848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskpart.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000192176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Haptics.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000186472 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47mrm.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000183616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000180544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000180232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3mm.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ulib.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Compression.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000178192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000174400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\trie.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.System.UserProfile.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000165840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000164864 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000160064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidpolicyconverter.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFFuzzyDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000152416 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000151352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmbus.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoipRT.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapistub.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000147776 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadWamExtension.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000147696 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdvancedEmojiDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000146712 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000146248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000146232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyServer.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000143160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000142760 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSAssessment.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\socialapis.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000141632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000141520 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\VocabRoamingHandler.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000132408 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000131896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000131896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mup.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CaptureService.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000128312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\DuCsps.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerApi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000120048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxranker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleAPIs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000117056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000113160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetDriverInstall.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000110040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000108856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000107616 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.Preview.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRBroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFSpellcheckDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\HashtagDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000104256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\MuiUnattend.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtAdvancedDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000102720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticInvoker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2020-11-11 09:03 - 2020-11-11 09:03 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFAppServiceDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000098104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrvext.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\atl.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuleBasedDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000094024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpnUserService.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000089928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000089920 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000088360 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000088280 _____ (Microsoft Corporation) C:\WINDOWS\system32\coloradapterclient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbussdapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AtBroker.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSystray.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemUWPLauncher.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardDlg.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetDriverInstall.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcEpMap.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpninputrouter.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000076952 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncobjapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\bfsvc.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000070248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyClient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000069704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000067656 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanRadioManager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxGipRadioManager.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000066872 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000066336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlrmdr.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\watchdog.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msobjs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransliterationRanker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000060432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000059392 _____ C:\WINDOWS\system32\runexehelper.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguageProfileCallback.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel.appcore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000058696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfLdr.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000057888 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000057664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmojiDS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000056640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciidex.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAProfileNotificationHandler.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnosticsTool.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardBi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcicda.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000048256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\devauthe.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Websocket.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scfilter.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\atlthunk.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbGDCoInstaller.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000040248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkPS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcProxyStubs.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000037392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIMgrBroker.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2020-11-11 09:03 - 2020-11-11 09:03 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\TsUsbGD.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000033080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hwpolicy.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSaveTask.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprtPS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciwave.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciseq.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000030016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000029712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerClient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000028344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\flpydisk.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000024792 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregtask.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdiagnostics.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\fixmapi.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000020144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000019768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sfloppy.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000016704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000016144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2020-11-11 09:03 - 2020-11-11 09:03 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsiproxy.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIManagerBrokerps.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscadminui.exe
2020-11-11 09:03 - 2020-11-11 09:03 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUserRes.dll
2020-11-11 09:03 - 2020-11-11 09:03 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2020-11-11 08:59 - 2020-11-11 08:59 - 000083288 _____ (Zoom Video Communications, Inc.) C:\Users\user\Downloads\Zoom_cm_frie4rbZ9vvrZo4_mz2mr2TpaD+zwP7nBDpZ1YKz6uSEJvekCfq-u@8D4K8ZKSb8+gEFFK_k96d9b1670b00dc97_.exe
2020-11-11 08:45 - 2020-10-12 23:15 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-11-11 08:45 - 2020-10-12 23:13 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-11-10 21:16 - 2020-11-10 21:16 - 000000000 _____ C:\Users\user\Desktop\mbar-1.10.3.1001.exe.yrj9bem.partial
2020-11-10 17:14 - 2020-11-10 17:14 - 000000000 ____D C:\Users\Lindsay\AppData\Local\Google
2020-11-09 20:50 - 2020-11-09 20:50 - 000000000 ____D C:\Users\user\AppData\Local\mbam
2020-11-09 20:49 - 2020-11-13 22:10 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2020-11-09 20:49 - 2020-11-09 20:49 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2020-11-09 20:49 - 2020-11-09 20:49 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2020-11-09 20:49 - 2020-11-09 20:49 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2020-11-09 20:49 - 2020-11-09 20:49 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-11-09 20:49 - 2020-11-09 20:49 - 000002021 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2020-11-09 20:20 - 2020-11-13 22:09 - 000988584 _____ C:\WINDOWS\ntbtlog.txt
2020-11-09 11:15 - 2020-11-09 11:15 - 000059161 _____ C:\Users\user\Downloads\Kindergarten Weekly Schedule 2020-2021.pdf
2020-11-09 10:45 - 2020-11-11 14:51 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-11-09 10:45 - 2020-11-11 14:51 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-11-09 10:45 - 2020-11-11 14:51 - 000002206 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-11-09 10:45 - 2020-11-09 10:45 - 000003418 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-11-09 10:45 - 2020-11-09 10:45 - 000003294 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-11-09 10:45 - 2020-11-09 10:45 - 000000000 ____D C:\Program Files\Google
2020-11-09 10:45 - 2020-11-09 10:45 - 000000000 ____D C:\Program Files (x86)\Google
2020-11-09 10:44 - 2020-11-09 10:49 - 000000000 ____D C:\Users\user\AppData\Local\Google
2020-11-09 08:50 - 2020-11-09 08:50 - 000000020 ___SH C:\Users\user\ntuser.ini
2020-11-09 00:16 - 2020-11-08 21:22 - 000000000 ____D C:\Windows.old
2020-11-08 21:24 - 2020-11-14 15:56 - 000795992 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-11-08 21:24 - 2020-11-08 21:24 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2020-11-08 21:22 - 2020-11-14 15:51 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-11-08 21:22 - 2020-11-12 04:44 - 000000000 ____D C:\WINDOWS\minidump
2020-11-08 21:22 - 2020-11-08 21:22 - 000011433 _____ C:\WINDOWS\diagwrn.xml
2020-11-08 21:22 - 2020-11-08 21:22 - 000011433 _____ C:\WINDOWS\diagerr.xml
2020-11-08 21:22 - 2020-11-08 21:22 - 000000020 ___SH C:\Users\Lindsay\ntuser.ini
2020-11-08 21:22 - 2020-11-08 21:22 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-2709640647-3604986842-854445848-1002
2020-11-08 21:22 - 2020-11-08 21:22 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-2709640647-3604986842-854445848-1001
2020-11-08 21:22 - 2020-11-08 21:22 - 000000000 ____D C:\WINDOWS\system32\Tasks\Intel
2020-11-08 21:19 - 2020-11-11 09:03 - 002876928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2020-11-08 21:19 - 2020-11-08 21:22 - 000000000 ____D C:\Users\Lindsay
2020-11-08 21:19 - 2019-03-18 23:46 - 000001105 _____ C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-11-08 21:19 - 2019-03-18 23:46 - 000001105 _____ C:\Users\Lindsay\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-11-08 21:16 - 2020-11-14 15:23 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-11-08 21:16 - 2020-11-11 16:28 - 000257824 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-11-08 21:14 - 2020-11-09 00:16 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2020-11-08 21:13 - 2020-11-08 21:14 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2020-11-08 21:11 - 2020-11-08 21:11 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER
2020-11-08 21:09 - 2020-11-08 21:09 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2020-11-08 21:06 - 2020-11-08 21:22 - 000000000 ___DC C:\WINDOWS\Panther
2020-11-08 20:53 - 2020-11-12 05:57 - 000000000 ____D C:\Users\user\AppData\Local\CrashDumps
2020-11-08 19:32 - 2020-11-08 19:32 - 000001233 _____ C:\Users\Lindsay\Desktop\mbam.txt
2020-11-08 19:20 - 2020-11-12 04:37 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-11-08 19:20 - 2020-11-08 19:20 - 000000000 ____D C:\Users\Lindsay\AppData\Local\mbam
2020-11-08 14:41 - 2010-05-26 10:39 - 000006144 _____ (Sophos Plc) C:\WINDOWS\system32\9AB.tmp
2020-11-08 14:40 - 2010-05-26 10:39 - 000006144 _____ (Sophos Plc) C:\WINDOWS\system32\6FFB.tmp
2020-11-08 14:30 - 2020-11-08 14:30 - 000000000 ____D C:\Program Files\Malwarebytes
2020-11-08 09:28 - 2020-11-08 09:28 - 000000168 _____ C:\Users\user\Desktop\next.txt
2020-11-08 08:54 - 2020-11-08 08:54 - 000070320 _____ C:\ProgramData\agent.uninstall.1604843678.bdinstall.v2.bin
2020-11-08 08:39 - 2020-11-08 08:39 - 000116620 _____ C:\ProgramData\agent.1604842744.bdinstall.v2.bin
2020-11-07 17:06 - 2020-11-07 17:11 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2020-11-06 20:02 - 2020-11-13 22:02 - 000000000 ____D C:\Users\Lindsay\AppData\Local\D3DSCache
2020-11-05 12:31 - 2020-11-05 12:31 - 000208737 _____ C:\Users\user\Documents\Jones Timesheet 11-5-20.pdf
2020-11-05 12:26 - 2020-11-05 12:26 - 000095187 _____ C:\Users\user\Documents\430-70.pdf
2020-11-05 12:17 - 2020-11-05 12:17 - 000291770 _____ C:\Users\user\Documents\430-70 (1).pdf
2020-11-05 12:11 - 2020-11-05 12:11 - 000363785 _____ C:\Users\user\Documents\timesheet 11-5.pdf
2020-11-05 12:09 - 2020-11-05 12:09 - 000200744 _____ C:\Users\user\Desktop\timesheet 11-5.pdf
2020-11-05 09:05 - 2020-11-09 20:34 - 000000000 ____D C:\Program Files\UNP
2020-11-05 08:25 - 2020-11-05 08:25 - 000095187 _____ C:\Users\user\Downloads\430-70.pdf
2020-11-05 08:17 - 2020-11-08 21:20 - 000000000 ____D C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2020-11-05 08:17 - 2020-11-05 08:17 - 000000000 ____D C:\Users\user\AppData\Roaming\Zoom
2020-11-04 15:00 - 2020-11-09 20:52 - 000000000 ____D C:\Users\user\AppData\Local\D3DSCache
2020-11-04 06:47 - 2020-11-04 06:47 - 000000000 ___RD C:\Users\user\OneDrive
2020-11-04 06:47 - 2020-11-04 06:47 - 000000000 ____D C:\Users\user\AppData\Local\Comms
2020-11-04 05:01 - 2020-11-12 04:45 - 000000000 ____D C:\Users\Lindsay\Desktop\New folder
2020-11-04 04:49 - 2020-11-14 16:00 - 000000000 ____D C:\FRST
2020-11-04 04:46 - 2020-11-14 15:57 - 000000000 __SHD C:\Users\Lindsay\IntelGraphicsProfiles
2020-11-04 04:46 - 2020-11-04 19:01 - 000000000 ____D C:\Users\Lindsay\AppData\Local\PlaceholderTileLogoFolder
2020-11-04 04:46 - 2020-11-04 04:47 - 000000000 ____D C:\Users\Lindsay\AppData\Local\Intel
2020-11-04 04:46 - 2020-11-04 04:46 - 000000000 ____D C:\Users\Lindsay\AppData\LocalLow\Intel
2020-11-04 04:18 - 2020-11-09 20:45 - 000000000 ____D C:\Users\Lindsay\AppData\Local\ElevatedDiagnostics
2020-11-04 04:13 - 2020-11-04 04:13 - 000000000 ____D C:\Users\user\AppData\Roaming\HP
2020-11-04 04:12 - 2020-11-14 15:51 - 000000000 ____D C:\ProgramData\HP
2020-11-04 04:12 - 2020-11-08 21:17 - 000000000 ____D C:\WINDOWS\Firmware
2020-11-04 04:12 - 2020-11-04 04:12 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2020-11-04 04:12 - 2020-09-10 21:14 - 000905528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll
2020-11-04 04:12 - 2020-09-10 21:14 - 000436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll
2020-11-04 04:12 - 2019-10-17 06:15 - 001126552 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtCOM64.dll
2020-11-04 04:12 - 2019-10-17 06:15 - 000973304 _____ (Realtek Semiconductor) C:\WINDOWS\system32\RtkAudUService64.exe
2020-11-04 04:12 - 2019-10-17 06:15 - 000833832 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64U.dll
2020-11-04 04:12 - 2019-10-17 06:15 - 000482104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2020-11-04 04:12 - 2019-10-17 06:15 - 000215248 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2020-11-04 04:12 - 2019-07-30 02:51 - 001241024 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCtrl.exe
2020-11-04 04:12 - 2019-07-30 02:51 - 000768960 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETD.sys
2020-11-04 04:12 - 2019-07-30 02:51 - 000643520 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCmds.dll
2020-11-04 04:12 - 2019-07-30 02:51 - 000492480 _____ (ELAN Microelectronic Corp.) C:\WINDOWS\system32\ETDApix.dll
2020-11-04 04:12 - 2019-07-30 02:51 - 000470976 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDFavorite.dll
2020-11-04 04:12 - 2019-07-30 02:51 - 000398784 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCtrlHelper.exe
2020-11-04 04:12 - 2019-07-30 02:51 - 000196032 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDService.exe
2020-11-04 04:12 - 2019-07-30 02:51 - 000029632 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETDHCF.sys
2020-11-04 04:07 - 2020-11-05 12:05 - 000000000 ____D C:\Users\user\AppData\Local\PlaceholderTileLogoFolder
2020-11-04 04:06 - 2020-11-04 04:06 - 000000000 ___HD C:\Users\user\MicrosoftEdgeBackups
2020-11-04 04:04 - 2020-11-11 09:08 - 133736600 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-11-04 04:04 - 2020-11-11 09:08 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-11-04 04:03 - 2019-10-17 06:15 - 005617256 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPOU64.dll
2020-11-04 04:03 - 2019-07-30 02:51 - 000046232 _____ (ELAN Microelectronic Corp.) C:\WINDOWS\system32\Drivers\PTPFilter.sys
2020-11-04 04:01 - 2020-11-14 15:51 - 000000000 __SHD C:\Users\user\IntelGraphicsProfiles
2020-11-04 04:01 - 2020-11-08 21:19 - 000000000 ____D C:\Intel
2020-11-04 04:01 - 2020-11-04 04:02 - 000000000 ____D C:\Users\user\AppData\Local\Intel
2020-11-04 04:01 - 2020-11-04 04:01 - 000000000 ____D C:\Users\user\AppData\LocalLow\Intel
2020-11-04 04:01 - 2020-11-04 04:01 - 000000000 ____D C:\ProgramData\Realtek
2020-11-04 04:00 - 2020-03-10 10:02 - 021460640 _____ (Intel Corporation) C:\WINDOWS\system32\libmfxhw64.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 020356512 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\libmfxhw32.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 003219576 _____ (Intel Corporation) C:\WINDOWS\system32\mfx_mft_h265ve_64.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 003212728 _____ (Intel Corporation) C:\WINDOWS\system32\mfx_mft_vp9ve_64.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 003199128 _____ (Intel Corporation) C:\WINDOWS\system32\mfx_mft_h264ve_64.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 002995864 _____ (Intel Corporation) C:\WINDOWS\system32\mfx_mft_encrypt_64.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 002606000 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfx_mft_h265ve_32.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 002601296 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfx_mft_vp9ve_32.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 002592208 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfx_mft_h264ve_32.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 002435152 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfx_mft_encrypt_32.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 000218512 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll
2020-11-04 04:00 - 2020-03-10 10:02 - 000186000 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll
2020-11-04 04:00 - 2020-03-10 10:01 - 025076752 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll
2020-11-04 04:00 - 2020-03-10 10:01 - 011920400 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll
2020-11-04 04:00 - 2020-03-10 10:01 - 003013672 _____ (Intel Corporation) C:\WINDOWS\system32\mfx_mft_mjpgvd_64.dll
2020-11-04 04:00 - 2020-03-10 10:01 - 002439184 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfx_mft_mjpgvd_32.dll
2020-11-04 04:00 - 2020-03-10 10:01 - 001785920 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-11-04 04:00 - 2020-03-10 10:01 - 001785920 _____ C:\WINDOWS\system32\vulkaninfo.exe
2020-11-04 04:00 - 2020-03-10 10:01 - 001376312 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-11-04 04:00 - 2020-03-10 10:01 - 001376312 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2020-11-04 04:00 - 2020-03-10 10:01 - 001079824 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-11-04 04:00 - 2020-03-10 10:01 - 001079824 _____ C:\WINDOWS\system32\vulkan-1.dll
2020-11-04 04:00 - 2020-03-10 10:01 - 000939528 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2020-11-04 04:00 - 2020-03-10 10:01 - 000939528 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2020-11-04 04:00 - 2020-03-10 10:01 - 000126480 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2020-11-04 04:00 - 2020-03-10 10:01 - 000111632 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2020-11-04 04:00 - 2020-03-10 06:42 - 001376256 _____ C:\WINDOWS\system32\c_64.cpa
2020-11-04 04:00 - 2020-03-10 06:42 - 001361159 _____ C:\WINDOWS\SysWOW64\c_32.cpa
2020-11-04 04:00 - 2020-03-10 06:42 - 000072305 _____ C:\WINDOWS\SysWOW64\h265e_32.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000071888 _____ C:\WINDOWS\SysWOW64\vp9e_32.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000070721 _____ C:\WINDOWS\SysWOW64\he_32.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000066153 _____ C:\WINDOWS\SysWOW64\mj_32.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000057143 _____ C:\WINDOWS\SysWOW64\dev_32.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000056359 _____ C:\WINDOWS\system32\dev_64.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000014145 _____ C:\WINDOWS\system32\h265e_64.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000013996 _____ C:\WINDOWS\system32\vp9e_64.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000013589 _____ C:\WINDOWS\system32\he_64.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000013309 _____ C:\WINDOWS\system32\mj_64.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000001125 _____ C:\WINDOWS\SysWOW64\cpa_32.vp
2020-11-04 04:00 - 2020-03-10 06:42 - 000001125 _____ C:\WINDOWS\system32\cpa_64.vp
2020-11-04 03:57 - 2019-10-17 09:25 - 007026472 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2020-11-04 03:57 - 2019-10-17 05:16 - 036100804 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2020-11-04 03:57 - 2019-05-07 05:52 - 000022542 _____ C:\WINDOWS\system32\Drivers\Gen3pKey.dat
2020-11-04 03:55 - 2020-11-04 03:55 - 000795000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2020-11-03 23:26 - 2020-11-03 23:26 - 000000000 ____D C:\Users\Lindsay\AppData\Local\Microsoft_Corporation
2020-11-03 22:59 - 2020-11-03 22:59 - 000000000 ___HD C:\Users\Lindsay\MicrosoftEdgeBackups
2020-11-03 22:36 - 2020-11-04 04:06 - 000000000 ____D C:\Users\user\AppData\Local\MicrosoftEdge
2020-11-03 22:36 - 2020-11-03 22:36 - 000001450 _____ C:\Users\user\Desktop\Microsoft Edge.lnk
2020-11-03 22:35 - 2020-11-11 16:29 - 000000000 ___RD C:\Users\user\3D Objects
2020-11-03 22:35 - 2020-11-11 12:28 - 000000000 ____D C:\Users\user\AppData\Local\Packages
2020-11-03 22:35 - 2020-11-04 04:03 - 000000000 ____D C:\Users\user\AppData\Local\Publishers
2020-11-03 22:35 - 2020-11-03 22:35 - 000000000 ____D C:\Users\user\AppData\Roaming\Adobe
2020-11-03 22:35 - 2020-11-03 22:35 - 000000000 ____D C:\Users\user\AppData\Local\VirtualStore
2020-11-03 22:35 - 2020-11-03 22:35 - 000000000 ____D C:\Users\user\AppData\Local\ConnectedDevicesPlatform
2020-11-03 21:33 - 2020-11-03 21:33 - 000000000 ____D C:\Users\Lindsay\AppData\Local\Comms
2020-11-03 21:32 - 2020-11-04 19:01 - 000000000 ____D C:\ProgramData\Packages
2020-11-03 21:19 - 2020-11-03 22:33 - 000000000 ___RD C:\Users\Lindsay\OneDrive
2020-11-03 21:17 - 2020-11-04 04:46 - 000000000 ____D C:\Users\Lindsay\AppData\Local\MicrosoftEdge
2020-11-03 21:17 - 2020-11-03 21:17 - 000001450 _____ C:\Users\Lindsay\Desktop\Microsoft Edge.lnk
2020-11-03 21:16 - 2020-11-12 20:26 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-11-03 21:16 - 2020-11-12 20:26 - 000000000 ___RD C:\Users\Lindsay\3D Objects
2020-11-03 21:16 - 2020-11-08 21:19 - 000000000 ____D C:\Users\Lindsay\AppData\Local\Packages
2020-11-03 21:16 - 2020-11-04 04:46 - 000000000 ____D C:\Users\Lindsay\AppData\Local\Publishers
2020-11-03 21:16 - 2020-11-03 21:16 - 000000000 ____D C:\Users\Lindsay\AppData\Roaming\Adobe
2020-11-03 21:16 - 2020-11-03 21:16 - 000000000 ____D C:\Users\Lindsay\AppData\Local\VirtualStore
2020-11-03 21:16 - 2020-11-03 21:16 - 000000000 ____D C:\Users\Lindsay\AppData\Local\ConnectedDevicesPlatform
2020-11-03 21:03 - 2020-11-03 21:03 - 000000000 _SHDL C:\Documents and Settings
2020-11-03 21:02 - 2020-11-06 19:55 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-11-03 21:02 - 2020-11-03 21:02 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-11-14 15:57 - 2019-03-18 23:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-11-14 15:56 - 2019-03-18 23:50 - 000000000 ____D C:\WINDOWS\INF
2020-11-14 15:51 - 2019-03-18 23:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-11-14 15:24 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\appcompat
2020-11-14 10:35 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-11-12 20:26 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-11-11 17:07 - 2019-03-18 23:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2020-11-11 15:22 - 2019-03-19 01:20 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2020-11-11 15:22 - 2019-03-19 01:20 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ___SD C:\WINDOWS\system32\UNP
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ___SD C:\WINDOWS\system32\F12
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\TextInput
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\setup
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\es-MX
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\Com
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\ShellComponents
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\Provisioning
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\DiagTrack
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\Program Files\Windows Defender
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\Program Files\Common Files\System
2020-11-11 15:22 - 2019-03-18 23:52 - 000000000 ____D C:\PerfLogs
2020-11-11 15:22 - 2019-03-18 23:37 - 000000000 ____D C:\WINDOWS\servicing
2020-11-11 12:28 - 2019-03-18 23:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-11-11 09:09 - 2019-03-18 23:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-11-09 20:49 - 2019-03-18 23:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-11-09 08:53 - 2019-03-18 23:52 - 000000000 ____D C:\ProgramData\USOPrivate
2020-11-09 00:16 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2020-11-09 00:16 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2020-11-09 00:16 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\spool
2020-11-09 00:16 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2020-11-09 00:16 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
2020-11-09 00:16 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\ServiceState
2020-11-09 00:16 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-11-09 00:16 - 2019-03-18 23:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2020-11-08 21:21 - 2019-03-18 23:52 - 000000000 __RSD C:\WINDOWS\Media
2020-11-08 21:16 - 2019-03-18 23:56 - 000000000 ____D C:\WINDOWS\Setup
2020-11-08 21:13 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2020-11-08 21:13 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2020-11-08 21:13 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2020-11-08 21:13 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2020-11-08 21:13 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2020-11-08 21:13 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2020-11-08 21:13 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\et-EE

==================== Files in the root of some directories ========

2020-11-12 19:31 - 2020-11-12 19:31 - 000007624 _____ () C:\Users\Lindsay\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-11-2020
Ran by Lindsay (14-11-2020 16:00:44)
Running from C:\Users\Lindsay\Desktop
Windows 10 Home Version 1909 18363.1198 (X64) (2020-11-09 02:22:18)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2709640647-3604986842-854445848-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2709640647-3604986842-854445848-503 - Limited - Disabled)
Guest (S-1-5-21-2709640647-3604986842-854445848-501 - Limited - Disabled)
Lindsay (S-1-5-21-2709640647-3604986842-854445848-1001 - Administrator - Enabled) => C:\Users\Lindsay
user (S-1-5-21-2709640647-3604986842-854445848-1002 - Limited - Enabled) => C:\Users\user
WDAGUtilityAccount (S-1-5-21-2709640647-3604986842-854445848-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Google Chrome (HKLM-x32\...\Google Chrome) (Version: 86.0.4240.193 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.31 - Google LLC) Hidden
Malwarebytes version 4.2.3.96 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.2.3.96 - Malwarebytes)
Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation)

Packages:
=========
HP Audio Center -> C:\Program Files\WindowsApps\AD2F1837.HPAudioCenter_1.7.197.0_x64__v10z8vjag6ke6 [2020-11-04] (HP Inc.)
Intel® Graphics Command Center -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2765.0_x64__8j3eq9eme6ctt [2020-11-04] (INTEL CORP) [Startup Task]
Mail and Calendar -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11029.20108.0_x64__8wekyb3d8bbwe [2020-11-08] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-11-08] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.2.11280.0_x86__8wekyb3d8bbwe [2020-11-08] (Microsoft Studios) [MS Ad]
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.25.20211.0_x64__8wekyb3d8bbwe [2020-11-08] (Microsoft Corporation) [MS Ad]
Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.152.0_x64__kzf8qxf38zg5c [2020-11-08] (Skype)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.145.621.0_x86__zpdnekdrzrea0 [2020-11-04] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2709640647-3604986842-854445848-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Lindsay\AppData\Local\Microsoft\OneDrive\19.002.0107.0005\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-2709640647-3604986842-854445848-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Lindsay\AppData\Local\Microsoft\OneDrive\19.002.0107.0005\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-2709640647-3604986842-854445848-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Lindsay\AppData\Local\Microsoft\OneDrive\19.002.0107.0005\amd64\FileSyncShell64.dll => No File
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-11-09] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-11-09] (Malwarebytes Corporation -> Malwarebytes)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = 

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-18 23:49 - 2020-11-08 14:38 - 000000852 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2709640647-3604986842-854445848-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "RtkAudUService"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{7562A339-2DC6-4F93-A461-45848149B276}C:\users\user\appdata\roaming\zoom\bin\zoom.exe] => (Block) C:\users\user\appdata\roaming\zoom\bin\zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [UDP Query User{172FCC3A-B610-47D5-8E15-29D6DB6600DC}C:\users\user\appdata\roaming\zoom\bin\zoom.exe] => (Block) C:\users\user\appdata\roaming\zoom\bin\zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{651001C1-4F5D-48AB-B054-6B75A6EE10E4}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

11-11-2020 08:45:19 Windows Update
12-11-2020 04:42:31 Malwarebytes Anti-Rootkit Restore Point
14-11-2020 15:50:55 AdwCleaner_BeforeCleaning_14/11/2020_15:50:55

==================== Faulty Device Manager Devices ============

Name: Realtek Bluetooth 4.2 Adapter
Description: Realtek Bluetooth 4.2 Adapter
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Realtek Semiconductor Corp.
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: ========================

Application errors:
==================
Error: (11/14/2020 03:51:12 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (11/14/2020 03:51:12 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (11/14/2020 03:51:12 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (11/14/2020 03:51:12 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (11/14/2020 03:51:12 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (11/14/2020 03:51:12 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (11/14/2020 03:51:12 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (11/14/2020 03:51:12 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]


System errors:
=============
Error: (11/14/2020 03:51:49 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (11/14/2020 03:51:27 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error "1068" attempting to start the service netprofm with arguments "Unavailable" in order to run the server:
{A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (11/14/2020 03:51:26 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The jhi_service service depends on the iphlpsvc service which failed to start because of the following error: 
The dependency service or group failed to start.

Error: (11/14/2020 03:51:26 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The iphlpsvc service depends on the WinHttpAutoProxySvc service which failed to start because of the following error: 
The dependency service or group failed to start.

Error: (11/14/2020 03:51:26 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The LanmanWorkstation service depends on the mrxsmb20 service which failed to start because of the following error: 
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.

Error: (11/14/2020 03:51:26 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (11/14/2020 03:51:26 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The WinHttpAutoProxySvc service depends on the Dhcp service which failed to start because of the following error: 
There are no more endpoints available from the endpoint mapper.

Error: (11/14/2020 03:51:25 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The NcbService service terminated with the following error: 
A device attached to the system is not functioning.


Windows Defender:
===================================
Date: 2020-11-13 22:00:45.921
Description: 
Windows Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: On Access
Error Code: 0x8007043c
Error description: This service cannot be started in Safe Mode 
Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.

Date: 2020-11-13 21:18:27.730
Description: 
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.327.733.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.17600.5
Error code: 0x80072742
Error description: A socket operation encountered a dead network. 

Date: 2020-11-13 21:18:27.730
Description: 
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.327.733.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiSpyware
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.17600.5
Error code: 0x80072742
Error description: A socket operation encountered a dead network. 

Date: 2020-11-13 21:18:27.730
Description: 
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.327.733.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.17600.5
Error code: 0x80072742
Error description: A socket operation encountered a dead network. 

Date: 2020-11-13 21:18:27.725
Description: 
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.327.733.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.17600.5
Error code: 0x80072742
Error description: A socket operation encountered a dead network. 

CodeIntegrity:
===================================

Date: 2020-11-14 15:57:53.590
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Windows signing level requirements.

Date: 2020-11-14 15:53:28.171
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Windows signing level requirements.

Date: 2020-11-14 15:51:31.238
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-11-14 15:47:12.228
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Windows signing level requirements.

Date: 2020-11-14 15:35:47.311
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Windows signing level requirements.

Date: 2020-11-14 15:24:55.199
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Windows signing level requirements.

Date: 2020-11-14 11:25:16.676
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Windows signing level requirements.

Date: 2020-11-14 11:25:16.177
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Windows signing level requirements.

==================== Memory info =========================== 

BIOS: AMI F.13 07/15/2020
Motherboard: HP 86C9
Processor: Intel(R) Core(TM) i3-1005G1 CPU @ 1.20GHz
Percentage of memory in use: 48%
Total physical RAM: 7880.95 MB
Available physical RAM: 4062.6 MB
Total Virtual: 9800.95 MB
Available Virtual: 6383.54 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.14 GB) (Free:187.56 GB) NTFS

\\?\Volume{75201591-ae32-4701-bcbb-3508c59798ee}\ () (Fixed) (Total:0.56 GB) (Free:0.08 GB) NTFS
\\?\Volume{51006455-1fc7-43de-be06-76b356d422de}\ (Windows RE tools) (Fixed) (Total:0.5 GB) (Free:0.06 GB) NTFS
\\?\Volume{3f58cb1f-2b61-41b8-901f-6b247e8f1a8d}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.19 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 02DF2389)

Partition: GPT.

==================== End of Addition.txt =======================

Link to post
Share on other sites

Hiya Myaccount,

Do not see any obvious malware or infection in your logs.. Run the following:

Download Kaspersky Virus Removal Tool (KVRT) from here: https://www.kaspersky.com/downloads/thank-you/free-virus-removal-tool and save to your Desktop.

Select the Windows Key and R Key together, the "Run" box should open.

user posted image

Drag and Drop KVRT.exe into the Run Box.

user posted image

C:\Users\{your user name}\DESKTOP\KVRT.exe will now show in the run box.

user posted image

add -dontcryptsupportinfo Note the space between KVRT.exe and -dontcryptsupportinfo

C:\Users\{your user name}\DESKTOP\KVRT.exe -dontcryptsupportinfo should now show in the Run box.

user posted image

That addendum to the run command is very important, when the scan does eventually complete the resultant report is normally encrypted, with the extra command it is saved as a readable file.

Reports are saved here C:\KVRT_data\Reports and look similar to this report_20200727_103821.klr Right click direct onto that report, select > open with > Notepad. Save that file and attach to your reply.

To start the scan select OK in the "Run" box.

user posted image

The Windows Protected your PC window will open, select "More Info"

user posted image

A new Window will open, select "Run anyway"

user posted image

A EULA window will open, tick both confirmation boxes then select "Accept"

user posted image

In the new window select "Change Parameters"

user posted image

In the new window ensure all selection boxes are ticked, then select "OK" The scan should now start...

user posted image

When complete if entries are found there will be options, if "Cure" is offered leave as is. For any other options change to "Delete" then select "Continue"

user posted image

When complete, or if nothing was found select "Close"

user posted image

Attach the report information as previously instructed....
 
Thank you,
 
Kevin..
Link to post
Share on other sites

I have a thought that I wanted to run by you - since there's definitely been some escalation, could whatever's going on be at the SYSTEM level, and not scanned because I'm scanning at the Admin level?

 

Thanks Kevin. 

 

<Report>
    <Metadata Version="1" PCID="{D49FC70B-3F1B-E04E-89D2-7164EFBB2AA4}" LastModification="2020.11.14 18:14:39.407" />
    <EventBlocks>
        <Block0 Type="Scan" Processed="412758" Found="0" Neutralized="0">
            <Event0 Action="Scan" Time="132498680876667951" Object="" Info="Started" />
            <Event1 Action="Scan" Time="132498692312013406" Object="" Info="Finished" />
        </Block0>
    </EventBlocks>
</Report>
 

 

Link to post
Share on other sites

That level is scanned with KVRT, also would have shown up in FRST logs....

Open the search function on taskbar, type or copy/paste Windows Defender Security Center then select ok to open that option.

In the new window select Virus and Threat Protection then select Scan Options

The scan options window will open, from there select Windows Defender Offline Scan

You will be given the option to save any opened work etc, then select Scan from there when the scan completes Windows will reboot..

To check for found entries:

Select Start , and then select Settings > Update & Security > Windows Security > Virus & threat protection . On the Virus & threat protection screen select Protection history.

If entries are shown as "Found" the time and date will be same as the offline scan just completed.....
Link to post
Share on other sites

Nothing found. However, a few things that might be of interest. I've attached a few logs. First few are from Defender offline scans, and the rest are from installation files. The MBAMservicelog file may be of interest for the MWB team. prior_offline_scan-20201103-180215.txt

Recent_offline_scan-20201103-180215.log mbam.txt MBAMSERVICE.LOG upload_mbsetup.txt

Link to post
Share on other sites

Continue with the following:

Please download the attached fixlist.txt file and save it to the Desktop or location where you ran FRST from.

NOTE. It's important that both files, FRST or FRST64, and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on this particular machine. Running this on another machine may cause damage to your operating system that cannot be undone.

Run FRST or FRST64 and press the Fix button just once and wait.
If the tool needs a restart please make sure you let the system restart normally and let the tool complete its run after restart.
The tool will make a log on the Desktop (Fixlog.txt) or wherever you ran FRST from. Please attach or post it to your next reply.

Note: If the tool warned you about an outdated version please download and run the updated version.

NOTE-1: This fix will run a scan to check that all Microsoft operating system files are valid and not corrupt and attempt to correct any invalid files.

NOTE-2: As part of this fix all temporary files will be removed. If you have any open web pages that have not been bookmarked please make sure you bookmark them now as all open applications will be automatically closed. Also, make sure you know the passwords for all websites as cookies will also be removed.

The following directories are emptied:
 
  • Windows Temp
  • Users Temp folders
  • Edge, IE, FF, Chrome and Opera caches, HTML5 storages, Cookies and History
  • Recently opened files cache
  • Flash Player cache
  • Java cache
  • Steam HTML cache
  • Explorer thumbnail and icon cache
  • BITS transfer queue (qmgr*.dat files)
  • Recycle Bin


Important: items are permanently deleted. They are not moved to quarantine. If you have any questions or concerns please ask before running this fix.

user posted image

The system will be rebooted after the fix has run.

fixlist.txt

Edited by kevinf80
Link to post
Share on other sites

Here you go. 

 

Fix result of Farbar Recovery Scan Tool (x64) Version: 11-11-2020
Ran by Lindsay (14-11-2020 23:40:02) Run:2
Running from C:\Users\Lindsay\Desktop
Loaded Profiles: Lindsay
Boot Mode: Normal
==============================================

fixlist content:
*****************
SystemRestore: On
CreateRestorePoint:
CloseProcesses:
cmd: sfc /scannow
cmd: DISM.exe /Online /Cleanup-image /Restorehealth
cmd: sfc /scannow
cmd: "%WINDIR%\SYSTEM32\lodctr.exe" /R
cmd: "%WINDIR%\SysWOW64\lodctr.exe" /R
cmd: "%WINDIR%\SYSTEM32\lodctr.exe" /R
cmd: "%WINDIR%\SysWOW64\lodctr.exe" /R
CMD: winmgmt /verifyrepository
Hosts:
EmptyTemp:

*****************

SystemRestore: On => completed
Restore point was successfully created.
Processes closed successfully.

========= sfc /scannow =========


Beginning system scan.  This process will take some time.

Beginning verification phase of system scan.
Verification 0% complete. Verification 1% complete. Verification 2% complete. Verification 2% complete. Verification 3% complete. Verification 4% complete. Verification 4% complete. Verification 5% complete. Verification 6% complete. Verification 6% complete. Verification 7% complete. Verification 8% complete. Verification 8% complete. Verification 9% complete. Verification 10% complete. Verification 10% complete. Verification 11% complete. Verification 12% complete. Verification 13% complete. Verification 13% complete. Verification 14% complete. Verification 15% complete. Verification 15% complete. Verification 16% complete. Verification 17% complete. Verification 17% complete. Verification 18% complete. Verification 19% complete. Verification 19% complete. Verification 20% complete. Verification 21% complete. Verification 21% complete. Verification 22% complete. Verification 23% complete. Verification 24% complete. Verification 24% complete. Verification 25% complete. Verification 26% complete. Verification 26% complete. Verification 27% complete. Verification 28% complete. Verification 28% complete. Verification 29% complete. Verification 30% complete. Verification 30% complete. Verification 31% complete. Verification 32% complete. Verification 32% complete. Verification 33% complete. Verification 34% complete. Verification 34% complete. Verification 35% complete. Verification 36% complete. Verification 37% complete. Verification 37% complete. Verification 38% complete. Verification 39% complete. Verification 39% complete. Verification 40% complete. Verification 41% complete. Verification 41% complete. Verification 42% complete. Verification 43% complete. Verification 43% complete. Verification 44% complete. Verification 45% complete. Verification 45% complete. Verification 46% complete. Verification 47% complete. Verification 48% complete. Verification 48% complete. Verification 49% complete. Verification 50% complete. Verification 50% complete. Verification 51% complete. Verification 52% complete. Verification 52% complete. Verification 53% complete. Verification 54% complete. Verification 54% complete. Verification 55% complete. Verification 56% complete. Verification 56% complete. Verification 57% complete. Verification 58% complete. Verification 59% complete. Verification 59% complete. Verification 60% complete. Verification 61% complete. Verification 61% complete. Verification 62% complete. Verification 63% complete. Verification 63% complete. Verification 64% complete. Verification 65% complete. Verification 65% complete. Verification 66% complete. Verification 67% complete. Verification 67% complete. Verification 68% complete. Verification 69% complete. Verification 69% complete. Verification 70% complete. Verification 71% complete. Verification 72% complete. Verification 72% complete. Verification 73% complete. Verification 74% complete. Verification 74% complete. Verification 75% complete. Verification 76% complete. Verification 76% complete. Verification 77% complete. Verification 78% complete. Verification 78% complete. Verification 79% complete. Verification 80% complete. Verification 80% complete. Verification 81% complete. Verification 82% complete. Verification 83% complete. Verification 83% complete. Verification 84% complete. Verification 85% complete. Verification 85% complete. Verification 86% complete. Verification 87% complete. Verification 87% complete. Verification 88% complete. Verification 89% complete. Verification 89% complete. Verification 90% complete. Verification 91% complete. Verification 91% complete. Verification 92% complete. Verification 93% complete. Verification 94% complete. Verification 94% complete. Verification 95% complete. Verification 96% complete. Verification 96% complete. Verification 97% complete. Verification 98% complete. Verification 98% complete. Verification 99% complete. Verification 100% complete.

Windows Resource Protection found corrupt files and successfully repaired them.
For online repairs, details are included in the CBS log file located at
windir\Logs\CBS\CBS.log. For example C:\Windows\Logs\CBS\CBS.log. For offline
repairs, details are included in the log file provided by the /OFFLOGFILE flag.

========= End of CMD: =========


========= DISM.exe /Online /Cleanup-image /Restorehealth =========


Deployment Image Servicing and Management tool
Version: 10.0.18362.1139

Image Version: 10.0.18363.1198

[==                         3.8%                           ] 
[==                         4.8%                           ] 
[===                        5.7%                           ] 
[===                        6.7%                           ] 
[====                       7.7%                           ] 
[=====                      8.7%                           ] 
[=====                      9.7%                           ] 
[======                     10.6%                          ] 
[======                     11.6%                          ] 
[=======                    12.6%                          ] 
[=======                    13.6%                          ] 
[========                   14.6%                          ] 
[=========                  15.5%                          ] 
[=========                  16.5%                          ] 
[==========                 17.5%                          ] 
[==========                 18.5%                          ] 
[===========                19.5%                          ] 
[===========                20.5%                          ] 
[============               21.2%                          ] 
[============               22.0%                          ] 
[=============              22.7%                          ] 
[=============              23.4%                          ] 
[=============              23.5%                          ] 
[=============              23.5%                          ] 
[==============             24.5%                          ] 
[==============             25.5%                          ] 
[===============            26.5%                          ] 
[===============            27.5%                          ] 
[================           28.5%                          ] 
[=================          29.4%                          ] 
[=================          30.4%                          ] 
[==================         31.4%                          ] 
[==================         32.4%                          ] 
[===================        33.4%                          ] 
[===================        34.3%                          ] 
[====================       35.3%                          ] 
[====================       35.7%                          ] 
[=====================      36.3%                          ] 
[=====================      37.0%                          ] 
[======================     38.0%                          ] 
[======================     38.9%                          ] 
[======================     39.2%                          ] 
[=======================    40.2%                          ] 
[=======================    41.2%                          ] 
[========================   42.2%                          ] 
[========================   43.1%                          ] 
[=========================  44.1%                          ] 
[========================== 44.8%                          ] 
[========================== 45.8%                          ] 
[===========================46.8%                          ] 
[===========================47.8%                          ] 
[===========================48.8%                          ] 
[===========================49.7%                          ] 
[===========================50.7%                          ] 
[===========================51.7%                          ] 
[===========================52.7%                          ] 
[===========================53.7%                          ] 
[===========================54.1%                          ] 
[===========================54.3%                          ] 
[===========================54.5%                          ] 
[===========================54.5%                          ] 
[===========================54.6%                          ] 
[===========================54.6%                          ] 
[===========================54.7%                          ] 
[===========================54.9%                          ] 
[===========================54.9%                          ] 
[===========================55.0%                          ] 
[===========================55.1%                          ] 
[===========================55.2%                          ] 
[===========================55.4%                          ] 
[===========================55.4%                          ] 
[===========================55.5%                          ] 
[===========================55.6%                          ] 
[===========================55.7%                          ] 
[===========================55.8%                          ] 
[===========================55.8%                          ] 
[===========================55.8%                          ] 
[===========================55.9%                          ] 
[===========================55.9%                          ] 
[===========================56.0%                          ] 
[===========================56.1%                          ] 
[===========================56.1%                          ] 
[===========================56.2%                          ] 
[===========================56.4%                          ] 
[===========================56.7%                          ] 
[===========================56.8%                          ] 
[===========================56.9%=                         ] 
[===========================57.0%=                         ] 
[===========================57.2%=                         ] 
[===========================57.4%=                         ] 
[===========================57.4%=                         ] 
[===========================57.9%=                         ] 
[===========================58.9%==                        ] 
[===========================59.8%==                        ] 
[===========================62.3%====                      ] 
[===========================84.9%=================         ] 
[==========================100.0%==========================] 
The restore operation completed successfully.
The operation completed successfully.

========= End of CMD: =========


========= sfc /scannow =========


Beginning system scan.  This process will take some time.

Beginning verification phase of system scan.
Verification 0% complete. Verification 1% complete. Verification 2% complete. Verification 2% complete. Verification 3% complete. Verification 4% complete. Verification 4% complete. Verification 5% complete. Verification 6% complete. Verification 6% complete. Verification 7% complete. Verification 8% complete. Verification 8% complete. Verification 9% complete. Verification 10% complete. Verification 10% complete. Verification 11% complete. Verification 12% complete. Verification 13% complete. Verification 13% complete. Verification 14% complete. Verification 15% complete. Verification 15% complete. Verification 16% complete. Verification 17% complete. Verification 17% complete. Verification 18% complete. Verification 19% complete. Verification 19% complete. Verification 20% complete. Verification 21% complete. Verification 21% complete. Verification 22% complete. Verification 23% complete. Verification 24% complete. Verification 24% complete. Verification 25% complete. Verification 26% complete. Verification 26% complete. Verification 27% complete. Verification 28% complete. Verification 28% complete. Verification 29% complete. Verification 30% complete. Verification 30% complete. Verification 31% complete. Verification 32% complete. Verification 32% complete. Verification 33% complete. Verification 34% complete. Verification 34% complete. Verification 35% complete. Verification 36% complete. Verification 37% complete. Verification 37% complete. Verification 38% complete. Verification 39% complete. Verification 39% complete. Verification 40% complete. Verification 41% complete. Verification 41% complete. Verification 42% complete. Verification 43% complete. Verification 43% complete. Verification 44% complete. Verification 45% complete. Verification 45% complete. Verification 46% complete. Verification 47% complete. Verification 48% complete. Verification 48% complete. Verification 49% complete. Verification 50% complete. Verification 50% complete. Verification 51% complete. Verification 52% complete. Verification 52% complete. Verification 53% complete. Verification 54% complete. Verification 54% complete. Verification 55% complete. Verification 56% complete. Verification 56% complete. Verification 57% complete. Verification 58% complete. Verification 59% complete. Verification 59% complete. Verification 60% complete. Verification 61% complete. Verification 61% complete. Verification 62% complete. Verification 63% complete. Verification 63% complete. Verification 64% complete. Verification 65% complete. Verification 65% complete. Verification 66% complete. Verification 67% complete. Verification 67% complete. Verification 68% complete. Verification 69% complete. Verification 69% complete. Verification 70% complete. Verification 71% complete. Verification 72% complete. Verification 72% complete. Verification 73% complete. Verification 74% complete. Verification 74% complete. Verification 75% complete. Verification 76% complete. Verification 76% complete. Verification 77% complete. Verification 78% complete. Verification 78% complete. Verification 79% complete. Verification 80% complete. Verification 80% complete. Verification 81% complete. Verification 82% complete. Verification 83% complete. Verification 83% complete. Verification 84% complete. Verification 85% complete. Verification 85% complete. Verification 86% complete. Verification 87% complete. Verification 87% complete. Verification 88% complete. Verification 89% complete. Verification 89% complete. Verification 90% complete. Verification 91% complete. Verification 91% complete. Verification 92% complete. Verification 93% complete. Verification 94% complete. Verification 94% complete. Verification 95% complete. Verification 96% complete. Verification 96% complete. Verification 97% complete. Verification 98% complete. Verification 98% complete. Verification 99% complete. Verification 100% complete.

Windows Resource Protection did not find any integrity violations.

========= End of CMD: =========


========= "%WINDIR%\SYSTEM32\lodctr.exe" /R =========


Info: Successfully rebuilt performance counter setting from system backup store
========= End of CMD: =========


========= "%WINDIR%\SysWOW64\lodctr.exe" /R =========


Info: Successfully rebuilt performance counter setting from system backup store
========= End of CMD: =========


========= "%WINDIR%\SYSTEM32\lodctr.exe" /R =========


Info: Successfully rebuilt performance counter setting from system backup store
========= End of CMD: =========


========= "%WINDIR%\SysWOW64\lodctr.exe" /R =========


Info: Successfully rebuilt performance counter setting from system backup store
========= End of CMD: =========


========= winmgmt /verifyrepository =========

WMI repository is consistent

========= End of CMD: =========

C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 7626752 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 16050099 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 1777672 B
Edge => 130950734 B
Chrome => 107851643 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 261662 B
NetworkService => 297418 B
Lindsay => 128691941 B
user => 129116533 B

RecycleBin => 125848437 B
EmptyTemp: => 618.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 23:47:40 ====

Link to post
Share on other sites

Hey Kevin, functionally it works flawlessly. Thanks for the assistance. There are definitely concerns through visual inspection, which may be past what you can assist with - but I'll lay a few out for awareness. The start-up screen, which on an HP is normally blue, is black. I'm not sure why, but I assume it has something to do with the bootloader. 

The registry has various issues, but I'll work through that later.

Files like these are troubling, though. 

C:\Windows\WinSxS\amd64_vmconnect6.3_31bf3856ad364e35_10.0.18362.1_none_78b739d2999f60f7

C:\Windows\WinSxS\amd64_microsoft-hgattest-catrustlet_31bf3856ad364e35_10.0.18362.1_none_300eaafcaf08517a (VMplaformca.exe)

C:\Windows\WinSxS\amd64_hyperv-vmsp_31bf3856ad364e35_10.0.18362.1_none_5641687e39b35e6c

amd64_hyperv-vmtpmregistration_31bf3856ad364e35_10.0.18362.1_none_34bc7f4ae653b6bf.manifest

Microsoft-Hyper-V-Offline-Core-Group-vm-Package~31bf3856ad364e35~amd64~~10.0.18362.1.mum

HyperV-Storage-VirtualDevice-IDE-vm-Package~31bf3856ad364e35~amd64~en-US~10.0.18362.1.cat

x86_microsoft-windows-smbserver-powershell_31bf3856ad364e35_10.0.18362.1049_none_0ea9ac846b9805e6

There are numerous directories that were run to add modules needed to access the machine virtually. Looking at the GUIDs in the .PSD files, they are probably from from Github repos. 

 

Again, thanks so much for your assist, and this is likely past anything on this platform but I do really appreciate your time!

 

Link to post
Share on other sites
  • Solution

Hiya Myaccount,

I`m not seeing much wrong with the files you`ve listed, the contents of the WinSxS folder will expand considerably over time so can look daunting I suppose. Have a read at the following link:

https://www.windowscentral.com/how-reclaim-space-reducing-size-winsxs-folder-windows-10

Cheers,

Kevin

Link to post
Share on other sites

Glad we could help.

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this topic with your request.

This applies only to the originator of this thread. Other members who need assistance please start your own topic in a new thread.

Please review the following for Tips to help protect from infection

Thank you

 

 

Link to post
Share on other sites
Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    No registered users viewing this page.

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.