Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21.01.2018
- Ran by drpmc (administrator) on DESKTOP-0OC5VGU (21-01-2018 10:23:48)
- Running from C:\Users\drpmc\Downloads
- Loaded Profiles: drpmc (Available Profiles: drpmc)
- Platform: Windows 10 Home Version 1709 16299.192 (X64) Language: English (United States)
- Internet Explorer Version 11 (Default browser: Edge)
- Boot Mode: Normal
- Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- (Intel Corporation) C:\Windows\System32\igfxCUIService.exe
- (Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe
- (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
- (Intel Corporation) C:\Windows\System32\igfxEM.exe
- (Intel Corporation) C:\Windows\System32\igfxHK.exe
- () C:\Windows\System32\igfxTray.exe
- (Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
- () C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
- (Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
- (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
- () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
- (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
- (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
- (Symantec Corporation) C:\Program Files\Norton Internet Security\Engine\22.11.2.7\NIS.exe
- () C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe
- (Symantec Corporation) C:\Program Files\Norton Internet Security\Engine\22.11.2.7\NIS.exe
- (McAfee, Inc.) C:\Windows\System32\mfevtps.exe
- (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
- () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.274.0_x64__kzf8qxf38zg5c\SkypeHost.exe
- (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
- (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
- (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALSvc.exe
- (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe
- (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
- (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe
- (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAgent.exe
- (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe
- (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
- () C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
- (Microsoft Corporation) C:\Windows\System32\cmd.exe
- (Symantec Corporation) C:\Program Files\Norton Internet Security\Engine\22.11.2.7\coNatHst.exe
- (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
- (Intel Corporation) C:\Windows\System32\igfxext.exe
- (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Acer Incorporate) C:\Program Files (x86)\Acer\Acer Audio Invert Utility\AudioInvertAgent.exe
- () C:\OEM\Preload\FubTracking\FubTracking.exe
- (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
- (AVAST Software) C:\Program Files\AVAST Software\SecureLine\secureline.exe
- (Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe
- (Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
- (Dashlane SAS) C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe
- (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
- (McAfee, Inc.) C:\Windows\System32\mfevtps.exe
- (McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
- (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- () C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
- (acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
- (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.16299.15_none_2c4b8d3b386eed8e\TiWorker.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (TODO: <Company name>) C:\Program Files\Acer\User Experience Improvement Program\Plugin\AppMonitor\AppMonitorPlugIn.exe
- (Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- (Microsoft Corporation) C:\Windows\System32\dllhost.exe
- ==================== Registry (Whitelisted) ===========================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
- HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16407296 2015-10-06] (Realtek Semiconductor)
- HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1407744 2015-10-06] (Realtek Semiconductor)
- HKLM\...\Run: [DAX2_APP] => C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe [628736 2015-09-22] ()
- HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-07-27] (Intel Corporation)
- HKLM-x32\...\Run: [mcpltui_exe] => "C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe" /platui
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
- Tcpip\..\Interfaces\{41b253f2-a1d0-48ef-a07f-9c37eaad9bb6}: [DhcpNameServer] 192.168.184.1
- Tcpip\..\Interfaces\{ebf99745-6ae8-4a3a-b6ec-d90ede0c9601}: [DhcpNameServer] 75.75.75.75 75.75.76.76
- Internet Explorer:
- ==================
- HKU\S-1-5-21-3915525094-1709956081-2424968823-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
- HKU\S-1-5-21-3915525094-1709956081-2424968823-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer15.msn.com/?pc=ACTE
- SearchScopes: HKLM -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://us.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
- SearchScopes: HKLM-x32 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://us.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
- SearchScopes: HKU\S-1-5-21-3915525094-1709956081-2424968823-1001 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://us.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
- BHO: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Internet Security\Engine\22.11.2.7\coIEPlg.dll [2017-11-10] (Symantec Corporation)
- BHO-x32: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Internet Security\Engine32\22.11.2.7\coIEPlg.dll [2017-11-10] (Symantec Corporation)
- Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\22.11.2.7\coIEPlg.dll [2017-11-10] (Symantec Corporation)
- Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine32\22.11.2.7\coIEPlg.dll [2017-11-10] (Symantec Corporation)
- FireFox:
- ========
- FF Extension: (Amazon 1Button App for Firefox) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\abb@amazon.com [2018-01-20] [Legacy] [not signed]
- FF Extension: (No Name) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-de@firefox.mozilla.org [2018-01-20] [not signed]
- FF Extension: (Greek (GR) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-el@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (English (US) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-en-US@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Español (España) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-es-ES@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Estonian Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-et@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Finnish Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-fi@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Français Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-fr@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Hebrew (IL) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-he@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Magyar (HU) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-hu@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Italiano (IT) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-it@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Japanese Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-ja@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Korean (KR) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-ko@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Lietuvių Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-lt@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Norsk bokmål (NO) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-nb-NO@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Nederlands (NL) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-nl@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Polski Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-pl@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Português Brasileiro Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-pt-BR@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Português Portugal Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-pt-PT@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Russian (RU) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-ru@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Slovak (SK) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-sk@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Slovenski jezik Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-sl@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (српски (sr) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-sr@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Svenska (SE) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-sv-SE@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Thai Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-th@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Türkçe (TR) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-tr@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Ukrainian (UA) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-uk@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Chinese Simplified (zh-CN) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-zh-CN@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Extension: (Traditional Chinese (zh-TW) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-zh-TW@firefox.mozilla.org [2018-01-20] [Legacy] [not signed]
- FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation)
- FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation)
- FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation)
- FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-20] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-20] (Google Inc.)
- FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2014-11-14] ()
- Chrome:
- =======
- CHR Profile: C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default [2018-01-21]
- CHR Extension: (Docs) - C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-01-20]
- CHR Extension: (Google Drive) - C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-01-20]
- CHR Extension: (YouTube) - C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-01-20]
- CHR Extension: (Norton Security Toolbar) - C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2018-01-20]
- CHR Extension: (Sheets) - C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-01-20]
- CHR Extension: (Google Docs Offline) - C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-01-20]
- CHR Extension: (Norton Identity Safe) - C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2018-01-20]
- CHR Extension: (Chrome Web Store Payments) - C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-01-20]
- CHR Extension: (Gmail) - C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-01-20]
- CHR Extension: (Chrome Media Router) - C:\Users\drpmc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-01-20]
- CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Internet Security\Engine\22.11.2.7\Exts\Chrome.crx <not found>
- CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Internet Security\Engine\22.11.2.7\Exts\Chrome.crx <not found>
- CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
- ==================== Services (Whitelisted) ====================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2278616 2017-03-19] (Acer Incorporated)
- S3 cplspcon; C:\WINDOWS\system32\IntelCpHDCPSvc.exe [630752 2016-05-19] (Intel Corporation)
- R2 Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [75056 2015-06-24] (Dashlane SAS)
- R2 DAX2API; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [176640 2015-09-22] () [File not signed]
- R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573568 2015-05-14] (Acer Incorporated)
- R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [373312 2015-04-14] (WildTangent)
- R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
- R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-07-27] (Intel Corporation)
- R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [382424 2016-05-19] (Intel Corporation)
- S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
- S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
- R2 IntelSSTSvc; C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe [25928 2015-09-22] (Intel Corporation)
- R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
- R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [207648 2015-08-07] (Intel Corporation)
- R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
- S4 McOobeSv2; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
- S3 mcpltsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
- S3 McProxy; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
- S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-06-29] (McAfee, Inc.)
- R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [373704 2015-07-30] (McAfee, Inc.)
- R3 mfevtp; C:\Windows\system32\mfevtps.exe [254792 2015-06-29] (McAfee, Inc.)
- R2 NIS; C:\Program Files\Norton Internet Security\Engine\22.11.2.7\NIS.exe [326144 2017-11-10] (Symantec Corporation)
- R3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [401248 2015-09-04] (Acer Incorporated)
- R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [453984 2015-09-04] (Acer Incorporated)
- R2 SecureLine; C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe [592392 2018-01-20] ()
- R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [247040 2015-05-26] (acer)
- S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation)
- S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation)
- ===================== Drivers (Whitelisted) ======================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R1 BHDrvx64; C:\Program Files\Norton Internet Security\NortonData\22.11.2.7\Definitions\BASHDefs\20180117.007\BHDrvx64.sys [1872024 2018-01-17] (Symantec Corporation)
- R1 ccSet_NIS; C:\WINDOWS\system32\drivers\NISx64\160B020.007\ccSetx64.sys [187544 2017-11-10] (Symantec Corporation)
- S3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [77536 2015-07-02] (McAfee, Inc.)
- S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
- R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [507984 2017-12-27] (Symantec Corporation)
- R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [152656 2017-12-27] (Symantec Corporation)
- R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [77432 2017-11-29] ()
- S3 iaLPSS2_GPIO2; C:\WINDOWS\System32\drivers\iaLPSS2_GPIO2.sys [84264 2015-06-16] (Intel Corporation)
- R1 IDSVia64; C:\Program Files\Norton Internet Security\NortonData\22.11.2.7\Definitions\IPSDefs\20180119.001\IDSvia64.sys [1056920 2018-01-19] (Symantec Corporation)
- R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21344 2015-09-04] (Acer Incorporated)
- R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [193968 2018-01-20] (Malwarebytes)
- R3 MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt.sys [110016 2018-01-21] (Malwarebytes)
- R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [46008 2018-01-21] (Malwarebytes)
- R0 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253880 2018-01-20] (Malwarebytes)
- R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [94144 2018-01-21] (Malwarebytes)
- R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [412440 2015-07-02] (McAfee, Inc.)
- R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [347800 2015-07-02] (McAfee, Inc.)
- S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [80920 2015-07-02] (McAfee, Inc.)
- R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [496888 2015-07-02] (McAfee, Inc.)
- R3 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [875928 2015-07-02] (McAfee, Inc.)
- R3 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [344704 2015-07-02] (McAfee, Inc.)
- S3 pelmouse; C:\WINDOWS\System32\drivers\pelmouse.sys [26880 2016-07-11] (TPMX Electronics Ltd.)
- S3 pelusblf; C:\WINDOWS\System32\drivers\pelusblf.sys [33048 2016-07-11] ()
- S3 pelvendr; C:\WINDOWS\System32\drivers\pelvendr.sys [15032 2016-07-11] (TPMX Electronics Ltd.)
- S3 phidmice; C:\WINDOWS\System32\drivers\phidmice.sys [33048 2016-07-11] ()
- S3 pmouself; C:\WINDOWS\System32\drivers\pmouself.sys [26880 2016-07-11] (TPMX Electronics Ltd.)
- S3 pvendrlf; C:\WINDOWS\System32\drivers\pvendrlf.sys [15032 2016-07-11] (TPMX Electronics Ltd.)
- R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14688 2015-09-04] (Acer Incorporated)
- R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [433912 2016-08-03] (Realsil Semiconductor Corporation)
- R3 SRTSP; C:\WINDOWS\system32\drivers\NISx64\160B020.007\SRTSP64.SYS [812696 2017-11-10] (Symantec Corporation)
- R1 SRTSPX; C:\WINDOWS\system32\drivers\NISx64\160B020.007\SRTSPX64.SYS [49304 2017-11-10] (Symantec Corporation)
- S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64640 2016-09-05] (QUALCOMM Incorporated)
- R0 SymEFASI; C:\WINDOWS\System32\drivers\NISx64\160B020.007\SYMEFASI64.SYS [1938584 2017-11-10] (Symantec Corporation)
- S0 SymELAM; C:\WINDOWS\System32\drivers\NISx64\160B020.007\SymELAM.sys [24608 2017-11-10] (Symantec Corporation)
- R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS [102600 2018-01-20] (Symantec Corporation)
- R1 SymIRON; C:\WINDOWS\system32\drivers\NISx64\160B020.007\Ironx64.SYS [309984 2017-11-10] (Symantec Corporation)
- R1 SymNetS; C:\WINDOWS\system32\drivers\NISx64\160B020.007\SYMNETS.SYS [566936 2017-11-10] (Symantec Corporation)
- R3 VirtualButtons; C:\WINDOWS\System32\drivers\VirtualButtons.sys [41992 2017-03-31] (Intel Corporation)
- S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation)
- S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation)
- S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation)
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One Month Created files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2018-01-21 10:23 - 2018-01-21 10:24 - 000026155 _____ C:\Users\drpmc\Downloads\FRST.txt
- 2018-01-21 10:23 - 2018-01-21 10:23 - 000000000 ____D C:\Users\drpmc\Downloads\FRST-OlderVersion
- 2018-01-21 10:21 - 2018-01-21 10:23 - 000000000 ____D C:\WINDOWS\system32\MRT
- 2018-01-21 10:21 - 2018-01-21 10:21 - 129365736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
- 2018-01-21 10:21 - 2018-01-21 10:21 - 129365736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2018-01-21 10:12 - 2018-01-21 10:12 - 000001246 _____ C:\Users\drpmc\Documents\MBAMScan.txt
- 2018-01-21 09:18 - 2018-01-21 09:18 - 000000000 ____D C:\WINDOWS\System32\Tasks\Remediation
- 2018-01-20 21:45 - 2018-01-21 10:23 - 000000000 ____D C:\FRST
- 2018-01-20 21:41 - 2018-01-20 21:41 - 000001245 _____ C:\Users\drpmc\Documents\MalwarebytesScan.txt
- 2018-01-20 21:24 - 2018-01-20 21:24 - 008206624 _____ (Malwarebytes) C:\Users\drpmc\Desktop\adwcleaner_7.0.7.0.exe
- 2018-01-20 21:20 - 2018-01-20 21:20 - 000000000 ____D C:\5907b1c31bb62e88d950
- 2018-01-20 21:19 - 2018-01-20 21:19 - 000000000 ____D C:\Users\drpmc\AppData\Roaming\AVAST Software
- 2018-01-20 21:13 - 2018-01-20 21:13 - 000000000 ____D C:\Program Files\Common Files\AV
- 2018-01-20 20:48 - 2018-01-21 10:20 - 000000000 ____D C:\WINDOWS\System32\Tasks\Norton Internet Security
- 2018-01-20 20:47 - 2018-01-20 20:47 - 000102600 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS
- 2018-01-20 20:47 - 2018-01-20 20:47 - 000008471 _____ C:\WINDOWS\system32\Drivers\SYMEVENT64x86.CAT
- 2018-01-20 20:47 - 2018-01-20 20:47 - 000003392 _____ C:\WINDOWS\System32\Tasks\Norton WSC Integration
- 2018-01-20 20:47 - 2018-01-20 20:47 - 000002325 _____ C:\Users\Public\Desktop\Norton Internet Security.lnk
- 2018-01-20 20:47 - 2018-01-20 20:47 - 000000000 ____D C:\Program Files\Common Files\Symantec Shared
- 2018-01-20 20:46 - 2018-01-21 10:23 - 002393088 _____ (Farbar) C:\Users\drpmc\Downloads\FRST64.exe
- 2018-01-20 20:46 - 2018-01-21 10:15 - 000110016 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
- 2018-01-20 20:46 - 2018-01-21 10:15 - 000094144 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
- 2018-01-20 20:46 - 2018-01-20 20:47 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security
- 2018-01-20 20:46 - 2018-01-20 20:46 - 000193968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
- 2018-01-20 20:46 - 2018-01-20 20:46 - 000000000 ____D C:\WINDOWS\system32\Drivers\NISx64
- 2018-01-20 20:46 - 2018-01-20 20:46 - 000000000 ____D C:\ProgramData\NortonInstaller
- 2018-01-20 20:46 - 2018-01-20 20:46 - 000000000 ____D C:\Program Files\Norton Internet Security
- 2018-01-20 20:46 - 2018-01-20 20:46 - 000000000 ____D C:\Program Files (x86)\NortonInstaller
- 2018-01-20 20:45 - 2018-01-21 10:15 - 000046008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
- 2018-01-20 20:45 - 2018-01-21 10:14 - 000000000 ____D C:\AdwCleaner
- 2018-01-20 20:45 - 2018-01-21 10:04 - 000000000 ____D C:\Users\drpmc\AppData\Local\Comms
- 2018-01-20 20:45 - 2018-01-20 21:17 - 000253880 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
- 2018-01-20 20:45 - 2018-01-20 21:15 - 000000000 ____D C:\ProgramData\Norton
- 2018-01-20 20:45 - 2018-01-20 20:45 - 001120240 _____ (Symantec Corporation) C:\Users\drpmc\Downloads\NortonNISDownloader.exe
- 2018-01-20 20:45 - 2018-01-20 20:45 - 000001916 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
- 2018-01-20 20:45 - 2018-01-20 20:45 - 000001345 _____ C:\Users\drpmc\Desktop\Norton Installation Files.lnk
- 2018-01-20 20:45 - 2018-01-20 20:45 - 000000000 ____D C:\Users\Public\Downloads\Norton
- 2018-01-20 20:45 - 2018-01-20 20:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
- 2018-01-20 20:45 - 2018-01-20 20:45 - 000000000 ____D C:\ProgramData\Malwarebytes
- 2018-01-20 20:45 - 2018-01-20 20:45 - 000000000 ____D C:\Program Files\Malwarebytes
- 2018-01-20 20:45 - 2017-11-29 09:11 - 000077432 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
- 2018-01-20 20:44 - 2018-01-20 20:45 - 000000000 ____D C:\Users\drpmc\AppData\Local\PackageStaging
- 2018-01-20 20:44 - 2018-01-20 20:44 - 000002352 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2018-01-20 20:44 - 2018-01-20 20:44 - 000002340 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2018-01-20 20:43 - 2018-01-21 09:11 - 000000000 ____D C:\Users\drpmc\AppData\Local\Google
- 2018-01-20 20:43 - 2018-01-20 20:43 - 000003416 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
- 2018-01-20 20:43 - 2018-01-20 20:43 - 000003292 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
- 2018-01-20 20:43 - 2018-01-20 20:43 - 000000000 ____D C:\Program Files (x86)\Google
- 2018-01-20 20:31 - 2018-01-20 20:31 - 000003508 _____ C:\WINDOWS\System32\Tasks\BacKGroundAgent
- 2018-01-20 20:31 - 2018-01-20 20:31 - 000000000 ____D C:\Users\drpmc\AppData\Roaming\Macromedia
- 2018-01-20 20:31 - 2018-01-20 20:31 - 000000000 ____D C:\Users\drpmc\AppData\Local\CareCenter
- 2018-01-20 20:31 - 2018-01-20 20:31 - 000000000 ____D C:\ProgramData\Apple
- 2018-01-20 20:31 - 2018-01-20 20:31 - 000000000 ____D C:\Program Files\Bonjour
- 2018-01-20 20:31 - 2018-01-20 20:31 - 000000000 ____D C:\Program Files (x86)\Bonjour
- 2018-01-20 20:30 - 2018-01-20 20:30 - 000003378 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3915525094-1709956081-2424968823-1001
- 2018-01-20 20:30 - 2018-01-20 20:30 - 000002371 _____ C:\Users\drpmc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2018-01-20 20:30 - 2018-01-20 20:30 - 000000000 ___RD C:\Users\drpmc\OneDrive
- 2018-01-20 20:30 - 2018-01-20 20:30 - 000000000 ____D C:\Users\drpmc\AppData\Roaming\Intel Corporation
- 2018-01-20 20:29 - 2018-01-20 21:25 - 000000000 ____D C:\Users\drpmc\AppData\Local\clear.fi
- 2018-01-20 20:29 - 2018-01-20 20:29 - 000001337 _____ C:\Users\drpmc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio Manager.lnk
- 2018-01-20 20:29 - 2018-01-20 20:29 - 000000000 ____D C:\Users\drpmc\PicStream
- 2018-01-20 20:28 - 2018-01-20 20:29 - 000000000 ____D C:\Users\drpmc\AppData\Local\AOP SDK
- 2018-01-20 20:28 - 2018-01-20 20:28 - 000002174 _____ C:\Users\drpmc\Desktop\Dashlane Password Manager.lnk
- 2018-01-20 20:28 - 2018-01-20 20:28 - 000001790 _____ C:\Users\Public\Desktop\Acer Store.lnk
- 2018-01-20 20:28 - 2018-01-20 20:28 - 000000000 ___HD C:\Users\drpmc\MicrosoftEdgeBackups
- 2018-01-20 20:28 - 2018-01-20 20:28 - 000000000 ____D C:\Users\drpmc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dashlane
- 2018-01-20 20:28 - 2018-01-20 20:28 - 000000000 ____D C:\Users\drpmc\AppData\Local\Publishers
- 2018-01-20 20:28 - 2018-01-20 20:28 - 000000000 ____D C:\Users\drpmc\AppData\Local\MicrosoftEdge
- 2018-01-20 20:28 - 2018-01-20 20:28 - 000000000 ____D C:\Users\drpmc\AppData\Local\DBG
- 2018-01-20 20:28 - 2018-01-20 20:28 - 000000000 ____D C:\ProgramData\OEM_YAHOO
- 2018-01-20 20:28 - 2018-01-20 20:28 - 000000000 ____D C:\Program Files\Accessory Store
- 2018-01-20 20:28 - 2018-01-20 20:28 - 000000000 ____D C:\Program Files (x86)\OEM
- 2018-01-20 20:27 - 2018-01-21 10:15 - 000000000 __SHD C:\Users\drpmc\IntelGraphicsProfiles
- 2018-01-20 20:27 - 2018-01-20 21:08 - 000000000 ____D C:\Users\drpmc\AppData\Local\Packages
- 2018-01-20 20:27 - 2018-01-20 20:29 - 000000000 ____D C:\Users\drpmc\AppData\Local\ConnectedDevicesPlatform
- 2018-01-20 20:27 - 2018-01-20 20:27 - 000000000 ___RD C:\Users\drpmc\3D Objects
- 2018-01-20 20:27 - 2018-01-20 20:27 - 000000000 ____D C:\Users\drpmc\AppData\Roaming\Adobe
- 2018-01-20 20:27 - 2018-01-20 20:27 - 000000000 ____D C:\Users\drpmc\AppData\Local\VirtualStore
- 2018-01-20 20:26 - 2018-01-20 21:20 - 000000000 ____D C:\Users\drpmc
- 2018-01-20 20:26 - 2018-01-20 20:26 - 000000020 ___SH C:\Users\drpmc\ntuser.ini
- 2018-01-20 20:15 - 2018-01-20 20:15 - 000000000 ____D C:\ProgramData\Dashlane
- 2018-01-20 20:14 - 2018-01-20 20:14 - 000000000 _SHDL C:\Users\Default User
- 2018-01-20 20:14 - 2018-01-20 20:14 - 000000000 _SHDL C:\Users\All Users
- 2018-01-20 20:14 - 2018-01-20 20:14 - 000000000 ____D C:\WINDOWS\oem
- 2018-01-20 20:13 - 2018-01-21 10:15 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2018-01-20 20:13 - 2018-01-20 21:28 - 000003388 _____ C:\WINDOWS\System32\Tasks\AcerCloud
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000022744 _____ C:\WINDOWS\system32\emptyregdb.dat
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000004302 _____ C:\WINDOWS\System32\Tasks\Software Update Application
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000003852 _____ C:\WINDOWS\System32\Tasks\ACCAgent
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000002926 _____ C:\WINDOWS\System32\Tasks\avast! SL Update
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000002888 _____ C:\WINDOWS\System32\Tasks\ACC
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000002780 _____ C:\WINDOWS\System32\Tasks\WindowsStoreGiftCardPromoBackgroundTaskX86
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000002706 _____ C:\WINDOWS\System32\Tasks\UbtFrameworkService
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000002654 _____ C:\WINDOWS\System32\Tasks\Avast SecureLine
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000002328 _____ C:\WINDOWS\System32\Tasks\ACCBackgroundApplication
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000002238 _____ C:\WINDOWS\System32\Tasks\Audio Invert Utility
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000002222 _____ C:\WINDOWS\System32\Tasks\Power Management
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000002180 _____ C:\WINDOWS\System32\Tasks\Quick Access
- 2018-01-20 20:13 - 2018-01-20 20:13 - 000002074 _____ C:\WINDOWS\System32\Tasks\FUBTrackingByPLD
- 2018-01-20 20:13 - 2017-09-29 05:41 - 002241024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
- 2018-01-20 20:12 - 2018-01-20 20:12 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
- 2018-01-20 20:10 - 2018-01-20 20:10 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
- 2018-01-20 20:08 - 2018-01-21 10:15 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
- 2018-01-20 20:08 - 2018-01-21 10:04 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
- 2018-01-20 20:08 - 2018-01-20 20:12 - 000222608 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2018-01-20 20:08 - 2018-01-20 20:11 - 000000000 ____D C:\Program Files (x86)\Realtek
- 2018-01-20 20:08 - 2018-01-20 20:10 - 000000000 ____D C:\Program Files\Intel
- 2018-01-20 20:08 - 2018-01-20 20:10 - 000000000 ____D C:\Intel
- 2018-01-20 20:08 - 2018-01-20 20:08 - 001151965 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000102 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.64.bc
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 ____H C:\ProgramData\DP45977C.lfl
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 ____D C:\WINDOWS\system32\IntelSSTAPO
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 ____D C:\WINDOWS\system32\DAX2
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 ____D C:\WINDOWS\ServiceProfiles
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 ____D C:\ProgramData\rtkSSTSetting
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 ____D C:\ProgramData\Dolby
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 ____D C:\Program Files\Realtek
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 ____D C:\Program Files\Dolby
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 ____D C:\Program Files\Common Files\Atheros
- 2018-01-20 20:08 - 2018-01-20 20:08 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
- 2018-01-20 20:08 - 2016-05-19 20:37 - 000112648 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
- 2018-01-20 20:08 - 2016-05-19 20:37 - 000108560 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
- 2018-01-20 20:08 - 2015-10-06 11:24 - 003154607 _____ C:\WINDOWS\system32\Drivers\rtkSSTSetting.zip
- 2018-01-20 19:47 - 2018-01-20 19:48 - 000000000 ____D C:\Windows.old
- 2018-01-20 19:47 - 2018-01-20 19:47 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
- 2018-01-20 19:47 - 2018-01-20 19:47 - 000000000 ____D C:\WINDOWS\InfusedApps
- 2018-01-20 19:46 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
- 2018-01-20 19:46 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\Setup
- 2018-01-20 19:46 - 2018-01-20 19:46 - 000000000 ____D C:\Program Files\Lenovo
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\zu-ZA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\yo-NG
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\xh-ZA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\wo-SN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\vi-VN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ur-PK
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ug-CN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\tt-RU
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\tn-ZA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\tk-TM
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ti-ET
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\te-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ta-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\sw-KE
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\sq-AL
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\si-LK
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\rw-RW
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\quz-PE
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\prs-AF
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\pa-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\or-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\nso-ZA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\nn-NO
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ne-NP
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\mt-MT
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\mr-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\mn-MN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ml-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\mk-MK
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\lo-LA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\lb-LU
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ky-KG
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\kok-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\kn-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\km-KH
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ka-GE
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\is-IS
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ig-NG
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\id-ID
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\hy-AM
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\gu-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\gd-GB
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ga-IE
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\fil-PH
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\fa-IR
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\cy-GB
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\bn-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\bn-BD
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\be-BY
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\as-IN
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\am-ET
- 2018-01-20 19:44 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\af-ZA
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\0409
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\winrm
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\WCN
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\slmgr
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\hi-IN
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\gl-ES
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\eu-ES
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\ca-ES
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\0409
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\OCR
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\DigitalLocker
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\Program Files\Reference Assemblies
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\Program Files\MSBuild
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
- 2018-01-20 19:44 - 2018-01-20 19:44 - 000000000 ____D C:\Program Files (x86)\MSBuild
- 2018-01-20 19:43 - 2017-12-22 05:45 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
- 2018-01-20 19:43 - 2017-12-22 05:45 - 000177648 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
- 2018-01-20 19:42 - 2018-01-20 19:40 - 000215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
- 2018-01-20 19:42 - 2018-01-20 19:40 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
- 2018-01-20 19:42 - 2018-01-20 19:40 - 000000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
- 2018-01-20 19:41 - 2018-01-21 10:21 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
- 2018-01-20 19:41 - 2018-01-21 09:04 - 000000000 ____D C:\WINDOWS\appcompat
- 2018-01-20 19:41 - 2018-01-20 21:54 - 000000000 ___RD C:\Program Files (x86)
- 2018-01-20 19:41 - 2018-01-20 21:28 - 000000000 ____D C:\WINDOWS\AppReadiness
- 2018-01-20 19:41 - 2018-01-20 21:10 - 000000000 ___HD C:\Program Files\WindowsApps
- 2018-01-20 19:41 - 2018-01-20 21:01 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile
- 2018-01-20 19:41 - 2018-01-20 20:47 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
- 2018-01-20 19:41 - 2018-01-20 20:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
- 2018-01-20 19:41 - 2018-01-20 20:13 - 000000000 __RHD C:\Users\Public\Libraries
- 2018-01-20 19:41 - 2018-01-20 20:13 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
- 2018-01-20 19:41 - 2018-01-20 20:13 - 000000000 ____D C:\WINDOWS\Registration
- 2018-01-20 19:41 - 2018-01-20 20:11 - 000000000 ____D C:\WINDOWS\system32\spool
- 2018-01-20 19:41 - 2018-01-20 20:11 - 000000000 ____D C:\ProgramData\USOPrivate
- 2018-01-20 19:41 - 2018-01-20 20:11 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2018-01-20 19:41 - 2018-01-20 20:10 - 000000000 ____D C:\WINDOWS\system32\Sysprep
- 2018-01-20 19:41 - 2018-01-20 20:10 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
- 2018-01-20 19:41 - 2018-01-20 20:09 - 000000000 ___RD C:\WINDOWS\PrintDialog
- 2018-01-20 19:41 - 2018-01-20 20:09 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
- 2018-01-20 19:41 - 2018-01-20 19:47 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
- 2018-01-20 19:41 - 2018-01-20 19:47 - 000000000 ____D C:\WINDOWS\system32\oobe
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ___SD C:\WINDOWS\system32\F12
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\TextInput
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\migwiz
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\Dism
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\ShellExperiences
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\WINDOWS\Provisioning
- 2018-01-20 19:41 - 2018-01-20 19:46 - 000000000 ____D C:\Program Files\Windows Defender
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ___SD C:\WINDOWS\system32\dsc
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\SysWOW64\com
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\setup
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\MUI
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\system32\com
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\IME
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\Help
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\Program Files\Common Files\system
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
- 2018-01-20 19:41 - 2018-01-20 19:44 - 000000000 ____D C:\Program Files (x86)\Windows Defender
- 2018-01-20 19:41 - 2018-01-20 19:42 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui
- 2018-01-20 19:41 - 2018-01-20 19:42 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
- 2018-01-20 19:41 - 2018-01-20 19:42 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml
- 2018-01-20 19:41 - 2018-01-20 19:42 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel
- 2018-01-20 19:41 - 2018-01-20 19:42 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops
- 2018-01-20 19:41 - 2018-01-20 19:42 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 __SHD C:\Program Files\Windows Sidebar
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 __RSD C:\WINDOWS\media
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ___SD C:\WINDOWS\system32\UNP
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ___SD C:\WINDOWS\system32\Nui
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ___SD C:\WINDOWS\system32\Configuration
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ___RD C:\WINDOWS\Offline Web Pages
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\Web
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\Vss
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\tracing
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\TAPI
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ras
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SystemResources
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SystemApps
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\winevt
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\ras
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\ProximityToast
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\PointOfService
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\NDF
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\MsDtc
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\Macromed
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\Ipmi
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\InputMethod
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\inetsrv
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\IME
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\icsxml
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\ias
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\hydrogen
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\downlevel
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\DDFs
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\config\TxR
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\config\RegBack
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\config\Journal
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\Bthprops
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\AppLocker
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\System
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SKB
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\security
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\schemas
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\SchCache
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\Resources
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\rescache
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\PLA
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\Performance
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\ModemLogs
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\LiveKernelReports
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\L2Schemas
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\InputMethod
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\Globalization
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\Cursors
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\Branding
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\bcastdvr
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\addins
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\Program Files\Windows Security
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\Program Files\Windows Portable Devices
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\Program Files\windows nt
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\Program Files\Windows Multimedia Platform
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\Program Files\Common Files\Services
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\Program Files (x86)\windows nt
- 2018-01-20 19:41 - 2018-01-20 19:41 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
- 2018-01-20 19:41 - 2018-01-20 19:40 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
- 2018-01-20 19:41 - 2018-01-20 19:40 - 000215943 _____ C:\WINDOWS\system32\dssec.dat
- 2018-01-20 19:41 - 2018-01-20 19:40 - 000017572 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
- 2018-01-20 19:41 - 2018-01-20 19:40 - 000004096 _____ C:\WINDOWS\system32\config\VSMIDK
- 2018-01-20 19:41 - 2018-01-20 19:40 - 000003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
- 2018-01-20 19:41 - 2018-01-20 19:40 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
- 2018-01-20 19:41 - 2018-01-20 19:40 - 000000741 _____ C:\WINDOWS\system32\NOISE.DAT
- 2018-01-20 19:40 - 2018-01-21 10:21 - 000000000 ____D C:\WINDOWS\INF
- 2018-01-20 19:39 - 2018-01-20 20:39 - 000000000 ____D C:\WINDOWS\CbsTemp
- 2018-01-20 19:38 - 2018-01-21 10:14 - 077594624 _____ C:\WINDOWS\system32\config\SOFTWARE
- 2018-01-20 19:38 - 2018-01-21 10:14 - 019398656 _____ C:\WINDOWS\system32\config\SYSTEM
- 2018-01-20 19:38 - 2018-01-21 10:14 - 000524288 _____ C:\WINDOWS\system32\config\DEFAULT
- 2018-01-20 19:38 - 2018-01-21 10:14 - 000524288 _____ C:\WINDOWS\system32\config\BBI
- 2018-01-20 19:38 - 2018-01-21 10:14 - 000065536 _____ C:\WINDOWS\system32\config\SECURITY
- 2018-01-20 19:38 - 2018-01-20 20:47 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
- 2018-01-20 19:38 - 2018-01-20 20:14 - 000000000 ____D C:\WINDOWS\Panther
- 2018-01-20 19:38 - 2018-01-20 19:44 - 000000000 ____D C:\WINDOWS\servicing
- 2018-01-20 19:38 - 2018-01-20 19:43 - 000131072 _____ C:\WINDOWS\system32\config\SAM
- 2018-01-20 19:38 - 2018-01-20 19:41 - 000000000 ____D C:\WINDOWS\system32\SMI
- 2018-01-20 19:35 - 2018-01-20 19:47 - 000000000 ___HD C:\$SysReset
- 2018-01-08 23:43 - 2018-01-01 04:51 - 001055128 ____N (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
- 2018-01-08 23:43 - 2018-01-01 04:51 - 000059800 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bam.sys
- 2018-01-08 23:43 - 2018-01-01 04:49 - 008605080 ____N (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
- 2018-01-08 23:43 - 2018-01-01 04:48 - 001954048 ____N (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
- 2018-01-08 23:43 - 2018-01-01 04:47 - 000082840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
- 2018-01-08 23:43 - 2018-01-01 04:46 - 002709704 ____N (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
- 2018-01-08 23:43 - 2018-01-01 04:46 - 000471960 ____N (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
- 2018-01-08 23:43 - 2018-01-01 04:45 - 000398744 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
- 2018-01-08 23:43 - 2018-01-01 04:42 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
- 2018-01-08 23:43 - 2018-01-01 04:39 - 000902416 ____N (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
- 2018-01-08 23:43 - 2018-01-01 04:39 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
- 2018-01-08 23:43 - 2018-01-01 04:39 - 000129432 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys
- 2018-01-08 23:43 - 2018-01-01 04:37 - 001426664 ____N (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
- 2018-01-08 23:43 - 2018-01-01 04:36 - 000166296 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
- 2018-01-08 23:43 - 2018-01-01 04:35 - 001170008 ____N (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
- 2018-01-08 23:43 - 2018-01-01 04:34 - 007385088 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
- 2018-01-08 23:43 - 2018-01-01 04:33 - 000603920 ____N (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
- 2018-01-08 23:43 - 2018-01-01 04:26 - 000428952 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
- 2018-01-08 23:43 - 2018-01-01 04:25 - 000147864 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
- 2018-01-08 23:43 - 2018-01-01 03:53 - 001615712 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
- 2018-01-08 23:43 - 2018-01-01 03:45 - 005615968 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
- 2018-01-08 23:43 - 2018-01-01 03:45 - 002192624 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
- 2018-01-08 23:43 - 2018-01-01 03:42 - 006479552 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
- 2018-01-08 23:43 - 2018-01-01 03:42 - 004644912 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
- 2018-01-08 23:43 - 2018-01-01 03:42 - 001246432 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
- 2018-01-08 23:43 - 2018-01-01 03:42 - 000982528 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
- 2018-01-08 23:43 - 2018-01-01 03:34 - 000703568 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
- 2018-01-08 23:43 - 2018-01-01 03:25 - 002905600 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
- 2018-01-08 23:43 - 2018-01-01 03:25 - 000344576 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
- 2018-01-08 23:43 - 2018-01-01 03:24 - 003668480 ____N (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
- 2018-01-08 23:43 - 2018-01-01 03:24 - 000202240 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
- 2018-01-08 23:43 - 2018-01-01 03:23 - 000536576 ____N (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
- 2018-01-08 23:43 - 2018-01-01 03:21 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
- 2018-01-08 23:43 - 2018-01-01 03:20 - 019337216 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
- 2018-01-08 23:43 - 2018-01-01 03:20 - 018917888 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
- 2018-01-08 23:43 - 2018-01-01 03:19 - 000369152 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
- 2018-01-08 23:43 - 2018-01-01 03:19 - 000365568 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
- 2018-01-08 23:43 - 2018-01-01 03:18 - 000374784 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
- 2018-01-08 23:43 - 2018-01-01 03:18 - 000261632 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
- 2018-01-08 23:43 - 2018-01-01 03:17 - 011923968 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
- 2018-01-08 23:43 - 2018-01-01 03:17 - 000708096 ____N (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
- 2018-01-08 23:43 - 2018-01-01 03:17 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
- 2018-01-08 23:43 - 2018-01-01 03:17 - 000542208 ____N (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
- 2018-01-08 23:43 - 2018-01-01 03:16 - 003676672 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
- 2018-01-08 23:43 - 2018-01-01 03:16 - 000815616 ____N (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
- 2018-01-08 23:43 - 2018-01-01 03:16 - 000664576 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
- 2018-01-08 23:43 - 2018-01-01 03:16 - 000594944 ____N (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
- 2018-01-08 23:43 - 2018-01-01 03:16 - 000463360 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
- 2018-01-08 23:43 - 2018-01-01 03:15 - 012687872 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
- 2018-01-08 23:43 - 2018-01-01 03:15 - 006029312 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
- 2018-01-08 23:43 - 2018-01-01 03:15 - 000588800 ____N (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
- 2018-01-08 23:43 - 2018-01-01 03:14 - 002465280 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
- 2018-01-08 23:43 - 2018-01-01 03:13 - 012830208 ____N (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
- 2018-01-08 23:43 - 2018-01-01 03:13 - 002869760 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
- 2018-01-08 23:43 - 2018-01-01 03:12 - 001547776 ____N (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
- 2018-01-08 23:43 - 2018-01-01 03:11 - 008108544 ____N (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
- 2018-01-08 23:43 - 2018-01-01 03:11 - 004748288 ____N (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
- 2018-01-08 23:43 - 2018-01-01 03:11 - 000812032 ____N (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
- 2018-01-08 23:43 - 2018-01-01 03:09 - 001487872 ____N (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
- 2018-01-08 23:43 - 2018-01-01 03:08 - 000685056 ____N (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
- 2018-01-08 23:42 - 2018-01-01 09:15 - 000956416 ____N (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
- 2018-01-08 23:42 - 2018-01-01 04:54 - 000924648 ____N (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
- 2018-01-08 23:42 - 2018-01-01 04:53 - 001090984 ____N (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
- 2018-01-08 23:42 - 2018-01-01 04:52 - 000066712 ____N (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
- 2018-01-08 23:42 - 2018-01-01 04:51 - 001414784 ____N (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
- 2018-01-08 23:42 - 2018-01-01 04:51 - 001209240 ____N (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
- 2018-01-08 23:42 - 2018-01-01 04:51 - 000191816 ____N (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
- 2018-01-08 23:42 - 2018-01-01 04:50 - 005905752 ____N (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
- 2018-01-08 23:42 - 2018-01-01 04:50 - 000780464 ____N (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
- 2018-01-08 23:42 - 2018-01-01 04:50 - 000479912 ____N (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
- 2018-01-08 23:42 - 2018-01-01 04:50 - 000077208 ____N (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
- 2018-01-08 23:42 - 2018-01-01 04:49 - 000599448 ____N (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
- 2018-01-08 23:42 - 2018-01-01 04:49 - 000319352 ____N (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
- 2018-01-08 23:42 - 2018-01-01 04:49 - 000292376 ____N (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
- 2018-01-08 23:42 - 2018-01-01 04:48 - 007831760 ____N (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
- 2018-01-08 23:42 - 2018-01-01 04:48 - 000382360 ____N (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
- 2018-01-08 23:42 - 2018-01-01 04:47 - 000649304 ____N (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
- 2018-01-08 23:42 - 2018-01-01 04:46 - 000898216 ____N (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
- 2018-01-08 23:42 - 2018-01-01 04:46 - 000733592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
- 2018-01-08 23:42 - 2018-01-01 04:45 - 002395032 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
- 2018-01-08 23:42 - 2018-01-01 04:45 - 001277848 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
- 2018-01-08 23:42 - 2018-01-01 04:43 - 001173576 ____N (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
- 2018-01-08 23:42 - 2018-01-01 04:43 - 000367336 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
- 2018-01-08 23:42 - 2018-01-01 04:43 - 000062872 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fsdepends.sys
- 2018-01-08 23:42 - 2018-01-01 04:42 - 001029016 ____N (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
- 2018-01-08 23:42 - 2018-01-01 04:42 - 000494488 ____N (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
- 2018-01-08 23:42 - 2018-01-01 04:42 - 000184984 ____N (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
- 2018-01-08 23:42 - 2018-01-01 04:42 - 000109976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
- 2018-01-08 23:42 - 2018-01-01 04:41 - 007676296 ____N (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
- 2018-01-08 23:42 - 2018-01-01 04:41 - 000559512 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
- 2018-01-08 23:42 - 2018-01-01 04:41 - 000549552 ____N (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
- 2018-01-08 23:42 - 2018-01-01 04:40 - 001206680 ____N (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
- 2018-01-08 23:42 - 2018-01-01 04:39 - 000677784 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
- 2018-01-08 23:42 - 2018-01-01 04:39 - 000508264 ____N (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
- 2018-01-08 23:42 - 2018-01-01 04:38 - 003904808 ____N (Microsoft Corporation) C:\WINDOWS\explorer.exe
- 2018-01-08 23:42 - 2018-01-01 04:38 - 000727448 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
- 2018-01-08 23:42 - 2018-01-01 04:38 - 000519152 ____N (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
- 2018-01-08 23:42 - 2018-01-01 04:38 - 000103320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
- 2018-01-08 23:42 - 2018-01-01 04:38 - 000038808 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Diskdump.sys
- 2018-01-08 23:42 - 2018-01-01 04:37 - 000461720 ____N (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
- 2018-01-08 23:42 - 2018-01-01 04:36 - 000413888 ____N (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
- 2018-01-08 23:42 - 2018-01-01 04:36 - 000374032 ____N (Microsoft Corporation) C:\WINDOWS\system32\vac.exe
- 2018-01-08 23:42 - 2018-01-01 04:36 - 000113560 ____N (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
- 2018-01-08 23:42 - 2018-01-01 04:36 - 000057752 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbios.sys
- 2018-01-08 23:42 - 2018-01-01 04:35 - 000075160 ____N (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
- 2018-01-08 23:42 - 2018-01-01 04:34 - 001336344 ____N (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
- 2018-01-08 23:42 - 2018-01-01 04:34 - 000260896 ____N (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
- 2018-01-08 23:42 - 2018-01-01 04:34 - 000087384 ____N (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
- 2018-01-08 23:42 - 2018-01-01 04:33 - 002773400 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
- 2018-01-08 23:42 - 2018-01-01 04:32 - 004481240 ____N (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
- 2018-01-08 23:42 - 2018-01-01 04:32 - 000617304 ____N (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
- 2018-01-08 23:42 - 2018-01-01 04:27 - 000713624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
- 2018-01-08 23:42 - 2018-01-01 04:27 - 000163736 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
- 2018-01-08 23:42 - 2018-01-01 04:26 - 000081304 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
- 2018-01-08 23:42 - 2018-01-01 04:25 - 000615768 ____N (Microsoft Corporation) C:\WINDOWS\system32\services.exe
- 2018-01-08 23:42 - 2018-01-01 04:23 - 021352144 ____N (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
- 2018-01-08 23:42 - 2018-01-01 04:21 - 001103768 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
- 2018-01-08 23:42 - 2018-01-01 04:21 - 000614296 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
- 2018-01-08 23:42 - 2018-01-01 04:06 - 000311192 ____N (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
- 2018-01-08 23:42 - 2018-01-01 04:03 - 000777904 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
- 2018-01-08 23:42 - 2018-01-01 04:03 - 000650328 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
- 2018-01-08 23:42 - 2018-01-01 04:03 - 000566664 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
- 2018-01-08 23:42 - 2018-01-01 04:03 - 000123512 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
- 2018-01-08 23:42 - 2018-01-01 03:49 - 000481464 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
- 2018-01-08 23:42 - 2018-01-01 03:49 - 000258808 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
- 2018-01-08 23:42 - 2018-01-01 03:46 - 003485392 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
- 2018-01-08 23:42 - 2018-01-01 03:46 - 000289816 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
- 2018-01-08 23:42 - 2018-01-01 03:45 - 006092152 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
- 2018-01-08 23:42 - 2018-01-01 03:45 - 000450928 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
- 2018-01-08 23:42 - 2018-01-01 03:43 - 020286120 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
- 2018-01-08 23:42 - 2018-01-01 03:42 - 001003152 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
- 2018-01-08 23:42 - 2018-01-01 03:42 - 000386424 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
- 2018-01-08 23:42 - 2018-01-01 03:42 - 000129184 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
- 2018-01-08 23:42 - 2018-01-01 03:42 - 000074992 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
- 2018-01-08 23:42 - 2018-01-01 03:37 - 025247232 ____N (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
- 2018-01-08 23:42 - 2018-01-01 03:25 - 001008640 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
- 2018-01-08 23:42 - 2018-01-01 03:25 - 000475648 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
- 2018-01-08 23:42 - 2018-01-01 03:25 - 000097792 ____N C:\WINDOWS\system32\runexehelper.exe
- 2018-01-08 23:42 - 2018-01-01 03:24 - 000240640 ____N (Microsoft Corporation) C:\WINDOWS\system32\AboutSettingsHandlers.dll
- 2018-01-08 23:42 - 2018-01-01 03:24 - 000096256 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
- 2018-01-08 23:42 - 2018-01-01 03:24 - 000038912 ____N (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
- 2018-01-08 23:42 - 2018-01-01 03:23 - 001313792 ____N (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
- 2018-01-08 23:42 - 2018-01-01 03:23 - 000561152 ____N (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
- 2018-01-08 23:42 - 2018-01-01 03:23 - 000385024 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
- 2018-01-08 23:42 - 2018-01-01 03:23 - 000250368 ____N (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
- 2018-01-08 23:42 - 2018-01-01 03:23 - 000232960 ____N (Microsoft Corporation) C:\WINDOWS\system32\convertvhd.exe
- 2018-01-08 23:42 - 2018-01-01 03:23 - 000121344 ____N (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
- 2018-01-08 23:42 - 2018-01-01 03:23 - 000080384 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmclr.sys
- 2018-01-08 23:42 - 2018-01-01 03:23 - 000047104 ____N (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
- 2018-01-08 23:42 - 2018-01-01 03:22 - 000031744 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
- 2018-01-08 23:42 - 2018-01-01 03:22 - 000025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Dumpstorport.sys
- 2018-01-08 23:42 - 2018-01-01 03:22 - 000017408 ____N (Microsoft Corporation) C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll
- 2018-01-08 23:42 - 2018-01-01 03:21 - 000268288 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
- 2018-01-08 23:42 - 2018-01-01 03:21 - 000233984 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
- 2018-01-08 23:42 - 2018-01-01 03:21 - 000133632 ____N (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
- 2018-01-08 23:42 - 2018-01-01 03:21 - 000097280 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
- 2018-01-08 23:42 - 2018-01-01 03:21 - 000097280 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\raspptp.sys
- 2018-01-08 23:42 - 2018-01-01 03:21 - 000080896 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
- 2018-01-08 23:42 - 2018-01-01 03:21 - 000062976 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000524288 ____N (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000459776 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000397824 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000225792 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000215552 ____N (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000212992 ____N (Microsoft Corporation) C:\WINDOWS\system32\container.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000204288 ____N (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000186368 ____N (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000175616 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000134656 ____N (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000133632 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000104960 ____N (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000082432 ____N (Microsoft Corporation) C:\WINDOWS\system32\SCardDlg.dll
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RfxVmt.sys
- 2018-01-08 23:42 - 2018-01-01 03:20 - 000035328 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 008014848 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000795136 ____N (Microsoft Corporation) C:\WINDOWS\system32\NaturalAuth.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000675328 ____N (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000461312 ____N (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000450048 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000430080 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000416768 ____N (Microsoft Corporation) C:\WINDOWS\system32\html.iec
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000366080 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000340480 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000334848 ____N (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000316928 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000188416 ____N (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000174592 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2P.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000149504 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000142848 ____N (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000097792 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\msoert2.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000093696 ____N (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000079872 ____N (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000073216 ____N (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000063488 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll
- 2018-01-08 23:42 - 2018-01-01 03:19 - 000043008 ____N (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000748032 ____N (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000699904 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000588800 ____N (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000465920 ____N (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000436224 ____N (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000432640 ____N (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000431616 ____N (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000427008 ____N (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000425984 ____N (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000391168 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000380928 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\EncDec.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000369664 ____N (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000343040 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000336896 ____N (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000276480 ____N (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000259072 ____N (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000210944 ____N (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000144896 ____N (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
- 2018-01-08 23:42 - 2018-01-01 03:18 - 000082944 ____N (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 006564864 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 001485312 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 000791552 ____N (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 000616960 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 000594432 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 000568832 ____N (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 000555520 ____N (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 000456704 ____N (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 000423936 ____N (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 000341504 ____N (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:17 - 000228352 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
- 2018-01-08 23:42 - 2018-01-01 03:17 - 000112640 ____N (Microsoft Corporation) C:\WINDOWS\system32\msoert2.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 005833216 ____N (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 004839424 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000966656 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000956928 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000831488 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000812544 ____N (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000720896 ____N (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000668160 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000624128 ____N (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000401920 ____N (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000235008 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000086528 ____N (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll
- 2018-01-08 23:42 - 2018-01-01 03:16 - 000076288 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll
- 2018-01-08 23:42 - 2018-01-01 03:15 - 002349568 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
- 2018-01-08 23:42 - 2018-01-01 03:15 - 001657856 ____N (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
- 2018-01-08 23:42 - 2018-01-01 03:15 - 001245184 ____N (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
- 2018-01-08 23:42 - 2018-01-01 03:15 - 000970240 ____N (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
- 2018-01-08 23:42 - 2018-01-01 03:15 - 000951808 ____N (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
- 2018-01-08 23:42 - 2018-01-01 03:15 - 000756736 ____N (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
- 2018-01-08 23:42 - 2018-01-01 03:15 - 000434176 ____N (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll
- 2018-01-08 23:42 - 2018-01-01 03:15 - 000366080 ____N (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:15 - 000258560 ____N (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
- 2018-01-08 23:42 - 2018-01-01 03:14 - 023655936 ____N (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
- 2018-01-08 23:42 - 2018-01-01 03:14 - 001495040 ____N (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
- 2018-01-08 23:42 - 2018-01-01 03:14 - 001097728 ____N (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
- 2018-01-08 23:42 - 2018-01-01 03:14 - 001003008 ____N (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
- 2018-01-08 23:42 - 2018-01-01 03:14 - 000985600 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
- 2018-01-08 23:42 - 2018-01-01 03:14 - 000917504 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
- 2018-01-08 23:42 - 2018-01-01 03:14 - 000870912 ____N (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
- 2018-01-08 23:42 - 2018-01-01 03:13 - 013657600 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
- 2018-01-08 23:42 - 2018-01-01 03:13 - 003121664 ____N (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
- 2018-01-08 23:42 - 2018-01-01 03:13 - 002013184 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
- 2018-01-08 23:42 - 2018-01-01 03:13 - 001559552 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
- 2018-01-08 23:42 - 2018-01-01 03:13 - 001474560 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
- 2018-01-08 23:42 - 2018-01-01 03:13 - 000897024 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
- 2018-01-08 23:42 - 2018-01-01 03:12 - 002633216 ____N (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
- 2018-01-08 23:42 - 2018-01-01 03:12 - 002208768 ____N (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
- 2018-01-08 23:42 - 2018-01-01 03:12 - 001573376 ____N (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
- 2018-01-08 23:42 - 2018-01-01 03:12 - 001424896 ____N (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:12 - 000760320 ____N (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
- 2018-01-08 23:42 - 2018-01-01 03:12 - 000464384 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
- 2018-01-08 23:42 - 2018-01-01 03:11 - 003334144 ____N (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
- 2018-01-08 23:42 - 2018-01-01 03:11 - 003165696 ____N (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
- 2018-01-08 23:42 - 2018-01-01 03:11 - 002859520 ____N (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
- 2018-01-08 23:42 - 2018-01-01 03:11 - 002082304 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
- 2018-01-08 23:42 - 2018-01-01 03:11 - 001822208 ____N (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
- 2018-01-08 23:42 - 2018-01-01 03:11 - 001816576 ____N (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:11 - 001597952 ____N (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
- 2018-01-08 23:42 - 2018-01-01 03:11 - 001343488 ____N (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
- 2018-01-08 23:42 - 2018-01-01 03:11 - 001231872 ____N (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
- 2018-01-08 23:42 - 2018-01-01 03:11 - 000880640 ____N (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:11 - 000715776 ____N (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
- 2018-01-08 23:42 - 2018-01-01 03:10 - 003126272 ____N (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
- 2018-01-08 23:42 - 2018-01-01 03:10 - 002528256 ____N (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:10 - 000012800 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscproxystub.dll
- 2018-01-08 23:42 - 2018-01-01 03:09 - 000925184 ____N (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
- 2018-01-08 23:42 - 2018-01-01 03:09 - 000666624 ____N (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll
- 2018-01-08 23:42 - 2018-01-01 03:09 - 000599552 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
- 2018-01-08 23:42 - 2018-01-01 03:08 - 000963072 ____N (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
- 2018-01-08 23:42 - 2018-01-01 03:08 - 000726016 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
- 2018-01-08 23:42 - 2018-01-01 03:08 - 000505344 ____N (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
- 2018-01-08 23:42 - 2018-01-01 03:06 - 000018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll
- 2018-01-08 23:42 - 2018-01-01 03:05 - 002510848 ____N (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
- 2018-01-08 23:42 - 2018-01-01 03:05 - 001160704 ____N (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
- 2018-01-08 23:42 - 2018-01-01 03:05 - 000050176 ____N (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
- 2017-12-22 12:02 - 2017-09-28 15:50 - 001166520 ____N (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
- 2017-12-22 12:02 - 2017-09-28 15:50 - 000124624 ____N (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
- 2017-12-22 12:02 - 2017-09-28 15:50 - 000035456 ____N (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
- 2017-12-22 12:02 - 2017-09-22 18:19 - 000778936 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
- 2017-12-22 12:02 - 2017-09-22 18:19 - 000103120 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
- 2017-12-22 12:02 - 2017-09-22 18:19 - 000035456 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
- ==================== One Month Modified files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2018-01-21 10:21 - 2015-09-08 00:49 - 000945440 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2018-01-20 21:42 - 2015-09-08 00:48 - 000000000 ____D C:\ProgramData\Acer
- 2018-01-20 21:30 - 2015-09-08 00:50 - 000000000 ____D C:\ProgramData\McAfee
- 2018-01-20 21:30 - 2015-09-08 00:50 - 000000000 ____D C:\Program Files\Common Files\McAfee
- 2018-01-20 21:28 - 2015-09-08 00:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
- 2018-01-20 21:20 - 2015-11-04 15:50 - 000000000 ____D C:\Program Files (x86)\Amazon
- 2018-01-20 20:31 - 2015-09-08 01:31 - 000000000 ___HD C:\OEM
- 2018-01-20 20:28 - 2015-09-08 00:46 - 000000000 __RHD C:\Users\Public\AccountPictures
- 2018-01-20 20:17 - 2015-09-08 00:48 - 000000000 ____D C:\ProgramData\OEM
- 2018-01-20 20:13 - 2015-07-10 03:04 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
- 2018-01-20 20:11 - 2015-11-04 15:56 - 000000000 ____D C:\Users\Public\Foxit Software
- 2018-01-20 20:11 - 2015-11-04 15:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF
- 2018-01-20 20:11 - 2015-11-04 15:56 - 000000000 ____D C:\Program Files (x86)\Foxit PhantomPDF
- 2018-01-20 20:11 - 2015-11-04 15:52 - 000000000 __HDC C:\ProgramData\{2B89F58C-32F7-46EC-A448-AECDF1F22B7B}
- 2018-01-20 20:11 - 2015-11-04 15:52 - 000000000 ____D C:\Program Files (x86)\Dashlane
- 2018-01-20 20:11 - 2015-11-04 15:49 - 000000000 ____D C:\Program Files (x86)\Windows Store Promo
- 2018-01-20 20:11 - 2015-11-04 15:44 - 000000000 ____D C:\WINDOWS\system32\ihvmanager
- 2018-01-20 20:11 - 2015-11-04 15:44 - 000000000 ____D C:\Program Files (x86)\Qualcomm Atheros
- 2018-01-20 20:11 - 2015-11-04 15:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
- 2018-01-20 20:11 - 2015-11-04 15:39 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
- 2018-01-20 20:11 - 2015-11-04 15:36 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
- 2018-01-20 20:11 - 2015-11-04 15:29 - 000000000 ____D C:\ProgramData\Package Cache
- 2018-01-20 20:11 - 2015-11-04 15:27 - 000000000 ____D C:\Program Files (x86)\Intel
- 2018-01-20 20:11 - 2015-11-04 15:26 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
- 2018-01-20 20:11 - 2015-11-04 15:26 - 000000000 ____D C:\ProgramData\Intel
- 2018-01-20 20:11 - 2015-11-04 15:23 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
- 2018-01-20 20:11 - 2015-11-04 15:02 - 000000000 ____D C:\WINDOWS\NAPP_Dism_Log
- 2018-01-20 20:11 - 2015-09-08 00:49 - 000000000 ____D C:\ProgramData\Mozilla
- 2018-01-20 20:11 - 2015-09-08 00:49 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
- 2018-01-20 20:11 - 2015-09-08 00:49 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
- 2018-01-20 20:11 - 2015-09-08 00:48 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
- 2018-01-20 20:11 - 2015-09-08 00:48 - 000000000 ____D C:\ProgramData\WildTangent
- 2018-01-20 20:11 - 2015-09-08 00:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
- 2018-01-20 20:11 - 2015-09-08 00:48 - 000000000 ____D C:\ProgramData\AVAST Software
- 2018-01-20 20:11 - 2015-09-08 00:48 - 000000000 ____D C:\Program Files (x86)\WildTangent Games
- 2018-01-20 20:11 - 2015-09-08 00:48 - 000000000 ____D C:\Program Files (x86)\WildGames
- 2018-01-20 20:11 - 2015-09-08 00:48 - 000000000 ____D C:\Program Files (x86)\Acer
- 2018-01-20 20:11 - 2015-09-08 00:47 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
- 2018-01-20 20:11 - 2015-07-10 04:22 - 000000000 ____D C:\ProgramData\USOShared
- 2018-01-20 20:11 - 2015-07-10 03:04 - 000000000 ___RD C:\WINDOWS\PurchaseDialog
- 2018-01-20 20:11 - 2015-07-10 03:04 - 000000000 ___RD C:\WINDOWS\DesktopTileResources
- 2018-01-20 20:10 - 2015-11-04 15:46 - 000000000 ____D C:\Program Files\Common Files\QCA_Bluetooth
- 2018-01-20 20:10 - 2015-09-08 00:50 - 000000000 ____D C:\Program Files\Acer
- 2018-01-20 20:10 - 2015-09-08 00:48 - 000000000 ____D C:\Program Files\AVAST Software
- 2018-01-20 20:10 - 2015-07-10 05:14 - 000000000 ____D C:\Program Files\Windows Journal
- 2018-01-13 02:03 - 2017-09-29 05:40 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthmodem.sys
- 2018-01-08 23:45 - 2017-09-29 05:41 - 000403968 ____N (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
- 2018-01-08 23:45 - 2017-09-29 05:41 - 000140800 ____N (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
- 2018-01-08 23:45 - 2017-09-29 05:41 - 000106496 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
- Some files in TEMP:
- ====================
- 2015-04-27 04:26 - 2015-04-27 04:26 - 000119312 _____ (McAfee, Inc.) C:\Users\drpmc\AppData\Local\Temp\McCSPInstall.dll
- 2018-01-20 21:29 - 2015-04-27 04:26 - 000161520 _____ (McAfee Inc.) C:\Users\drpmc\AppData\Local\Temp\mccspuninstall.exe
- ==================== Bamital & volsnap ======================
- (There is no automatic fix for files that do not pass verification.)
- C:\WINDOWS\system32\winlogon.exe => File is digitally signed
- C:\WINDOWS\system32\wininit.exe => File is digitally signed
- C:\WINDOWS\explorer.exe => File is digitally signed
- C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
- C:\WINDOWS\system32\svchost.exe => File is digitally signed
- C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
- C:\WINDOWS\system32\services.exe => File is digitally signed
- C:\WINDOWS\system32\User32.dll => File is digitally signed
- C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
- C:\WINDOWS\system32\userinit.exe => File is digitally signed
- C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
- C:\WINDOWS\system32\rpcss.dll => File is digitally signed
- C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
- C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
- C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
- LastRegBack: 2018-01-20 20:08
- ==================== End of FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement