Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Thema geschlossen
Alt 08.11.2020, 10:19   #1
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



Hallo liebe Community,
seit einigen Tagen findet der AdwCleaner immer wieder die o.g. Bedrohung. Nach Löschung und Neustart ist der Computer nach einem neuen Suchlauf direkt nach dem Neustart sauber.
Nach öffnen anderer Programme (Firefox, Chrome) kann ich einige Minuten nochmal arbeiten, dann schließen sich alle Programme und Fenster automatisch und ich muss sie erneut öffnen, was problemlos geht. Ab diesem Moment wird die Bedrohung auch bei einem Scan durch AdwCleaner wieder erkannt.
Neuinstallation von Firefox, Chrome, aller Erweiterungen hat nichts gebracht.
Auffällig - bei den Firefox Addons erscheint immer wieder auch ein Addon, ich habe jedoch keine installiert aktuell, dieses hat keinen Namen und lässt sich nur deaktivieren, nicht entfernen.

Seit ca. 1 Monat nutze ich nur Windows Defender, Avira Antivir davor. Eben in einem Log noch Spuren davon gesehen.
AdwCleaner und Eset Online Scanner lasse ich reglmäßig laufen.

Habe viel gelesen hier im Forum, danke für die vielen Infos und Hinweise. Sehr hilfreich.
Anbei die ersten Logs. Danke im Voraus und einen schönen Sonntag an alle!

FRST Teil 1
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 06-11-2020
durchgeführt von wobro (Administrator) auf DESKTOP-UG2PJTF (Acer Aspire XC-885) (08-11-2020 09:47:57)
Gestartet von C:\Users\wobro\Desktop
Geladene Profile: wobro
Platform: Windows 10 Home Version 2004 19041.572 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Chrome
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.32\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.32\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <26>
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_8559c34713c70ce4\RstMwService.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Malwarebytes Inc -> Malwarebytes) C:\Users\wobro\Desktop\adwcleaner_8.0.8.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2009.4.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12010.1001.3.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\NisSrv.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>

==================== Registry (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [833824 2019-01-31] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2018-02-13] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Beschränkung <==== ACHTUNG
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon MP270 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9X.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP270 series: C:\WINDOWS\system32\CNMLM9X.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\86.0.4240.183\Installer\chrmstp.exe [2020-11-08] (Google LLC -> Google LLC)
GroupPolicy: Beschränkung - Chrome <==== ACHTUNG
HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG
HKLM\SOFTWARE\Policies\Microsoft\Edge: Beschränkung <==== ACHTUNG

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {13257998-11A9-496A-A11A-1AAF10D8239A} - \EOSv3 Scheduler onTime -> Keine Datei <==== ACHTUNG
Task: {384C3EFA-2EC4-46AE-8AE7-EFA9BCD88089} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-08] (Google LLC -> Google LLC)
Task: {42FF6684-2898-4444-B82C-7C4E6F7FB279} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6276162C-A688-4DD3-95EB-0E2C0509093F} - \EOSv3 Scheduler onLogOn -> Keine Datei <==== ACHTUNG
Task: {68A8BD84-F9E1-477D-BBED-9A1830E889E5} - System32\Tasks\Oem\AcerJumpstartTask => C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe
Task: {6C8520B9-4073-477B-AF0B-D5E6314EE591} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [474368 2018-08-03] (Acer Incorporated -> Acer Incorporated)
Task: {71F21C7A-B7A8-4A97-A4B5-D4423661D5D8} - System32\Tasks\CommonLogRAS-Medientreiber => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) -> C:\WINDOWS\Installer\{493DF0B0-2E91-47FC-8F46-6DB48D8D2B70}\{1F6EBB0B-29ED-4AE6-A0CD-E4D3AC29E54C} <==== ACHTUNG
Task: {784F08BD-CA1B-461F-8D36-75039B4FDDEE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {86262482-804F-414B-AF09-1A66431E500D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {889B71AA-4FF1-4AE9-A79E-B2944AB74D92} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [667856 2020-10-28] (Mozilla Corporation -> Mozilla Foundation)
Task: {9FC75BA6-0196-4B3E-B6E6-D437F406AB38} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-08] (Google LLC -> Google LLC)
Task: {A66AFA32-927A-436C-90B2-7583D7F061CE} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe
Task: {E4CB09E3-172B-401B-9FE3-5B194864BEA9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F4E930AA-BE41-45A9-B642-96D855C78EA0} - System32\Tasks\Lokaler Distributed WAP-Push-Nachrichten => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) -> "C:\ProgramData\Package Cache\{5F2DB4C5-1C3C-4B94-933C-E2E6884FD7C3}\{83B6C039-81E4-448D-A415-BCD718DE5FDE}" <==== ACHTUNG

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)


==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{98c45136-e5d5-43f7-8b10-ea1b25fbe759}: [DhcpNameServer] 192.168.2.1

Edge: 
======
Edge Profile: C:\Users\wobro\AppData\Local\Microsoft\Edge\User Data\Default [2020-11-08]
Edge Extension: ( ) - C:\Users\wobro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dbchccfceccngbeaacpaegllaaoakjni [2020-11-08]

FireFox:
========
FF DefaultProfile: js4pzuw4.default
FF ProfilePath: C:\Users\wobro\AppData\Roaming\Mozilla\Firefox\Profiles\js4pzuw4.default [2020-11-08]
FF ProfilePath: C:\Users\wobro\AppData\Roaming\Mozilla\Firefox\Profiles\63u0l9x2.default-release [2020-11-08]
FF user.js: detected! => C:\Users\wobro\AppData\Roaming\Mozilla\Firefox\Profiles\63u0l9x2.default-release\user.js [2020-11-08]
FF HKLM\...\Firefox\Extensions: [{8D17650F-4B5A-4205-A160-E95609997532}] - C:\WINDOWS\Installer\{3A16BBE0-4FD6-4140-8E12-01B7DC4D76F3}\{8D17650F-4B5A-4205-A160-E95609997532}.xpi
FF Extension: ( ) - C:\WINDOWS\Installer\{3A16BBE0-4FD6-4140-8E12-01B7DC4D76F3}\{8D17650F-4B5A-4205-A160-E95609997532}.xpi [2020-11-08]
FF HKLM-x32\...\Firefox\Extensions: [{8D17650F-4B5A-4205-A160-E95609997532}] - C:\WINDOWS\Installer\{3A16BBE0-4FD6-4140-8E12-01B7DC4D76F3}\{8D17650F-4B5A-4205-A160-E95609997532}.xpi
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)

Chrome: 
=======
CHR Profile: C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default [2020-11-08]
CHR Notifications: Default -> hxxps://book.lufthansa.com
CHR Extension: (Präsentationen) - C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-01-04]
CHR Extension: (Docs) - C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-01-04]
CHR Extension: (Google Drive) - C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-22]
CHR Extension: (YouTube) - C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-01-04]
CHR Extension: (Tabellen) - C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-01-04]
CHR Extension: (Google Docs Offline) - C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-10-21]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: ( ) - C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default\Extensions\onchgaknjnokefolmphpgoilbbmgfpgl [2020-11-08]
CHR Extension: (Google Mail) - C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-22]
CHR Extension: (Chrome Media Router) - C:\Users\wobro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-11-08]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam]

Opera: 
=======
OPR Extension: (Avira Browser Safety) - C:\Users\wobro\AppData\Roaming\Opera Software\Opera Stable\Extensions\dalelnnofafalcmkmnhdbigbjjkloabo [2019-12-30]
OPR Extension: (Avira Password Manager) - C:\Users\wobro\AppData\Roaming\Opera Software\Opera Stable\Extensions\ngohaaocccbohaffogpbgfpmpgbcgccg [2019-12-30]
OPR Extension: (Free Avira Phantom VPN – Unblock Websites) - C:\Users\wobro\AppData\Roaming\Opera Software\Opera Stable\Extensions\pcgkmkjdikhiodinhloioejnpjgmfigd [2019-12-30]

==================== Dienste (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 SonosLibraryService; C:\Program Files (x86)\Sonos\SonosLibraryService.exe [28160 2020-09-09] () [Datei ist nicht signiert]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe [2467088 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe [128376 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert]
R3 GeneStor; C:\WINDOWS\System32\drivers\GeneStor.sys [181824 2019-12-27] (GENESYS LOGIC, INC. -> Genesys Logic)
S3 optousb; C:\WINDOWS\system32\DRIVERS\optousb.sys [27264 2013-03-11] (Microsoft Windows Hardware Compatibility Publisher -> OPTO ELECTRONICS CO.,LTD.)
S3 optovcm; C:\WINDOWS\system32\DRIVERS\optovcm.sys [34432 2013-03-11] (Microsoft Windows Hardware Compatibility Publisher -> OPTO ELECTRONICS CO.,LTD.)
S3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [45056 2019-12-04] (Avira Operations GmbH & Co. KG -> The OpenVPN Project)
R1 RrNetCapFilterDriver; C:\WINDOWS\system32\DRIVERS\RrNetCapFilterDriver.sys [34608 2019-01-30] (Audials AG -> Audials AG)
S3 tbhsd; C:\WINDOWS\system32\drivers\tbhsd.sys [57648 2019-01-30] (Audials AG -> RapidSolution Software AG)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-11-06] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429288 2020-11-06] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2020-11-06] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat (erstellte) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2020-11-08 09:47 - 2020-11-08 09:48 - 000016340 _____ C:\Users\wobro\Desktop\FRST.txt
2020-11-08 09:47 - 2020-11-08 09:48 - 000000000 ____D C:\FRST
2020-11-08 09:47 - 2020-11-08 09:46 - 002298368 _____ (Farbar) C:\Users\wobro\Desktop\FRST64.exe
2020-11-08 09:46 - 2020-11-08 09:46 - 002298368 _____ (Farbar) C:\Users\wobro\Downloads\FRST64.exe
2020-11-08 09:44 - 2020-11-08 09:44 - 000002311 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-11-08 09:44 - 2020-11-08 09:44 - 000002270 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-11-08 09:44 - 2020-11-08 09:44 - 000002270 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-11-08 09:44 - 2020-11-08 09:44 - 000000000 ____D C:\Program Files\Google
2020-11-08 09:41 - 2020-11-08 09:41 - 001317080 _____ (Google LLC) C:\Users\wobro\Downloads\ChromeSetup.exe
2020-11-08 09:41 - 2020-11-08 09:41 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-11-08 09:41 - 2020-11-08 09:41 - 000000997 _____ C:\Users\Public\Desktop\Firefox.lnk
2020-11-08 09:41 - 2020-11-08 09:41 - 000000997 _____ C:\ProgramData\Desktop\Firefox.lnk
2020-11-08 09:41 - 2020-11-08 09:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2020-11-08 09:40 - 2020-11-08 09:46 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-11-08 09:40 - 2020-11-08 09:40 - 000334048 _____ (Mozilla) C:\Users\wobro\Downloads\Firefox Installer.exe
2020-11-07 09:32 - 2020-11-07 09:32 - 000000000 ____D C:\Users\wobro\Desktop\Old Firefox Data
2020-11-07 09:18 - 2020-11-07 09:18 - 007411912 _____ (VS Revo Group ) C:\Users\wobro\Downloads\revo21setup.exe
2020-11-07 09:18 - 2020-11-07 09:18 - 000001083 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2020-11-07 09:18 - 2020-11-07 09:18 - 000001083 _____ C:\ProgramData\Desktop\Revo Uninstaller.lnk
2020-11-07 09:18 - 2020-11-07 09:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2020-11-07 09:18 - 2020-11-07 09:18 - 000000000 ____D C:\Program Files\VS Revo Group
2020-11-07 08:52 - 2020-11-07 08:52 - 001098933 _____ C:\Users\wobro\Downloads\eprimo_nachricht_18018084.pdf
2020-11-05 21:52 - 2020-11-05 21:52 - 000062047 _____ C:\Users\wobro\Downloads\Briefmarken.1Stk.05.11.2020_2152.pdf
2020-11-05 21:49 - 2020-11-05 21:49 - 000042537 _____ C:\Users\wobro\Downloads\TicketReturn.pdf
2020-11-03 11:47 - 2020-11-03 11:47 - 000051105 _____ C:\Users\wobro\Downloads\Konto_755079-Auszug_2020_010.PDF
2020-10-23 16:32 - 2020-10-23 16:32 - 000078124 _____ C:\Users\wobro\Downloads\20201023_5490_9047_Robin_Weber.PDF
2020-10-18 15:50 - 2020-10-18 15:50 - 000045268 _____ C:\Users\wobro\Downloads\Briefmarken.1Stk.18.10.2020_1650.pdf
2020-10-17 08:17 - 2020-10-17 08:17 - 032612336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 031598928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 026273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 024264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 023448576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 019870208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 018767360 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 018080768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 011498496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 009499136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 008897752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 008226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007765504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007616000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007534680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007099904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 006421504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 005998616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 005820416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 005337504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004828672 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004783832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004523008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004433640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004363840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004314624 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004281856 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004275712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 003664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 003376840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 003335680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-10-17 08:17 - 2020-10-17 08:17 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-10-17 08:17 - 2020-10-17 08:17 - 002689024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002520056 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002425144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002398720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002267424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001812872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001721856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001681408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001618152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001557816 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 001545848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001541224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001449472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001418752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001344512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001342976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001255744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 001238528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001234432 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 001185864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001062400 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001003336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000977920 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000961704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000920888 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000884736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000863744 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000837120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000805168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000804352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000800072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000773712 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000760640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000747312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000688960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000688128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000684832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000627712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000607336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000578424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000547328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000530912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000521096 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmdial32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000482304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000416864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000413232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000407872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizeng.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000377344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000329528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PktMon.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000329504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000303288 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.FileExplorer.Common.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000275288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shlwapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-10-17 08:17 - 2020-10-17 08:17 - 000224576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000218936 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mlang.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-10-17 08:17 - 2020-10-17 08:17 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\net1.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.HardwareId.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netprofm.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000171568 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000171440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xmllite.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupcln.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000166280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasman.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\net1.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000143056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000142008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000135496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxlib.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvEmulation.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\logman.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000118584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\migisol.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000117056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000111024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\provmigrate.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000104248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PktMon.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2020-10-17 08:17 - 2020-10-17 08:17 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logman.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000095552 _____ (Microsoft Corporation) C:\WINDOWS\system32\vid.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000095024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edputil.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000093112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpnsp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbssysprep.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MuiUnattend.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spinf.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\auditpolcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provmigrate.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pnrpnsp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MitigationConfiguration.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntlanman.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptext.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\auditpolcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000058848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000057144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmLpac.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\relog.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\typeperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.SecurityMitigationsBroker.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\relog.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapprovp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\typeperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\auditpol.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.SecurityMitigationsBroker.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000039720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iri.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000037688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininitext.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dusmapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winrnr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\auditpol.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpupdate.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000027320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\version.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\drprov.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\npmproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hid.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiougc.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpupdate.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\linkinfo.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secur32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscdll.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davhlpr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000021312 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ktmw32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drprov.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EsdSip.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmsprep.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wowreg32.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmiso8601utils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000009279 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-10-17 08:17 - 2020-10-17 08:17 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\normaliz.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3r.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 017542144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 014758400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 010841400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 010336904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 008009880 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 007986616 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 007632808 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 007266128 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006365280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006204928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006195712 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006070904 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005998616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005871560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005783288 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005431000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005371544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005057024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004752896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004732928 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004645368 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004629320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 004590560 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 004517376 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004025344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Controls.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004012688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 003917824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003893248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003858944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003821072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003815936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 003811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003779392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 003750912 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003706880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003537520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003506480 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003493888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Controls.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003436544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003386368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003307008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003305984 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003232056 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 003134464 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003066880 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002983736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 002978816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002942976 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 002920304 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002873344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002827776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002809776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002757120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 002648576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002634112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002621720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002607104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002592056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002568704 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002541568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002503520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002485928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002451968 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002428416 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002377728 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 002322304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002318336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002250240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002206208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002189824 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002179584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002178600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002107872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002104320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002024248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002007352 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001978664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001963752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001963712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001954816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001952256 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001932760 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001883696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001871272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001837568 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001836544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001827840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001827128 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001822256 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-10-17 08:16 - 2020-10-17 08:16 - 001784480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001765888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001765184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001751952 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001730048 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001715200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001695760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001695728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001673728 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001663136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001650176 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001641960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001598032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001590072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001563520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001554624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001531904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001526272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001515520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001509728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001478464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 001468928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001456640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001450304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001434624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001414656 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001411552 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001400208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001393472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-10-17 08:16 - 2020-10-17 08:16 - 001391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001389352 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001361920 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001360936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001337696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001333248 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001330688 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001324032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001315640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001280312 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001277952 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001276928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001255424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001253624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001240064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001237536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001228800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001212696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001212232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001210120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001198296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001192096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001182520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001181208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2020-10-17 08:16 - 2020-10-17 08:16 - 001160192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001148416 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001146368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001141984 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001140736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001137472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001128536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001111040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001108288 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001104896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001092392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001089856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 001070400 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001068640 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001068352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 001047432 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001044880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001042432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001033496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001025768 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001021096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001011768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001001984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001000408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000995128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Facilitator.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000994256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000988008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000979768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000979272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000978768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000972288 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000969728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000966864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000964264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000956216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000942408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000939448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000937472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000934400 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000924528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000913776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000907776 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000907448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000903984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000891472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000885248 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000882136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000873272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000872776 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000860672 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000859400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000857088 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000852288 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000844984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000843896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000843264 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000831032 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000828432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000821056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000809272 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000803328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000797448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000788168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000783992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000782656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000779360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000775480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000775256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000764976 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
         

Alt 08.11.2020, 10:20   #2
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



FRST Teil 2
Code:
ATTFilter
2020-10-17 08:16 - 2020-10-17 08:16 - 000763904 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000763328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000763192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000761280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000759296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000756680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000756656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000751496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000748360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000747520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000725600 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000708088 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000705560 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000705008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000698280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000686408 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000676096 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000672976 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatq.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000672064 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000660592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntimewindows.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000645120 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000644576 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\UiaManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000637360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000635832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000634760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000634696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000632544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntime.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000630096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000628120 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000624480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000606880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000605696 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000603464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000603448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000602432 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000602192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000598336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000594464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000586792 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000586048 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000585704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000583616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000583608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdial32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000578376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000577952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-10-17 08:16 - 2020-10-17 08:16 - 000560376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp110_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000548544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000546976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000539264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000537696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000529208 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000528904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000523712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000521016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UiaManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000508720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000507192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000504552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clbcatq.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000502584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-10-17 08:16 - 2020-10-17 08:16 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000495840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000488104 _____ (Microsoft Corporation) C:\WINDOWS\system32\coml2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000488064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000487048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000482104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000477512 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000475696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000474424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000473600 _____ (Microsoft Corporation) C:\WINDOWS\system32\HrtfApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000469920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000459264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000454968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000454016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000429712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000427200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000425272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-10-17 08:16 - 2020-10-17 08:16 - 000420936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000420456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000419432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000418800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000418416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000414200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000411448 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000410064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000408000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp110_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000403384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wbemcomn.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000401728 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000397728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000395592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShellCommonCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000389432 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000385240 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000384512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000383488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000382728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.FileExplorer.Common.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000377856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000376032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coml2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000374496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000374080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000374072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000371376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000361040 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000354344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000352784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000351200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HrtfApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000342424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shlwapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000337768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AarSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000333144 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000332600 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000326656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000318736 _____ (Microsoft Corporation) C:\WINDOWS\system32\capauthz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000311920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000305272 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000297984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000295464 _____ (Microsoft Corporation) C:\WINDOWS\system32\powrprof.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000293864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000293184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000288672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000287680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000287544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000286016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000271664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000270640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000268080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powrprof.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000260928 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000260816 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000259264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000258880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdscore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsldpc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000253008 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000252616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\capauthz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000249664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinREAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mlang.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuceffects.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\fidocredprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000241144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000230904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000230728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000230392 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000229176 _____ (Microsoft Corporation) C:\WINDOWS\system32\convertvhd.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000228152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.System.UserProfile.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000225088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000219016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000218112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000216376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msls31.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000215352 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSrv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000213344 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000211736 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsldpc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000208696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000207608 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NetAdapterCx.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000207168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdscore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000207160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000203544 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000198792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB7.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000196784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000195232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000195136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000191656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntmarta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000190976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Winlangdb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000190040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fidocredprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000186472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000185912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000185448 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptnet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000181048 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000180040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000180032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000176656 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmidcom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000176448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000175608 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47mrm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000173016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuceffects.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageOverlayUtil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000171992 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000171024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000167888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000166200 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000165376 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000164232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000163216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000162704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161672 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pacer.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidpolicyconverter.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000160064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000160056 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000157024 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000155976 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000155960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000153376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000152904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntmarta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000152376 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadWamExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000151864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000149272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DSCache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000147264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000147232 _____ (Microsoft Corporation) C:\WINDOWS\system32\cabinet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000147200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000146232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000146216 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\eShims.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTWorkQ.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145208 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Winlangdb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000143096 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000141008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000141008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000139960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000137896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmidcom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000136328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptnet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000134976 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000134800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LanguageOverlayUtil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000133744 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000133440 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000132736 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000130128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000128616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47mrm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSAssessment.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000126024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000122392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevDispItemProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000119608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadWamExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cabinet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000118584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000117800 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000117216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000116536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DSCache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000115192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000115008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetDriverInstall.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2020-10-17 08:16 - 2020-10-17 08:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2020-10-17 08:16 - 2020-10-17 08:16 - 000111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000110008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkQoSPolicyCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000109504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000108352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000107416 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000107376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MuiUnattend.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000103288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuntimeBroker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2020-10-17 08:16 - 2020-10-17 08:16 - 000102720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevDispItemProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.ServiceHostBuilder.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000099656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\atl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097672 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097088 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsCtfMonitor.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000096032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\spinf.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000095496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000093488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000092960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000090432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000090408 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcEpMap.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MitigationConfiguration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000083744 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\samcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\colbact.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082176 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\execmodelproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetDriverInstall.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\bfsvc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\deploymentcsps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000076976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000076952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spopk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\djoin.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.ServiceHostBuilder.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncobjapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\TempSignedLicenseExchangeTask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsCtfMonitor.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000071784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcacli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070968 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NapiNSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000069752 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068408 _____ (Microsoft Corporation) C:\WINDOWS\system32\virtdisk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\threadpoolwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\colbact.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wtsapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mskeyprotect.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000064824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000064072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PnPUnattend.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000061960 _____ (Microsoft Corporation) C:\WINDOWS\system32\coloradapterclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000061752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguageProfileCallback.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000060464 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000059448 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncobjapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc_os.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\virtdisk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\tokenbinding.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000057664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000057360 _____ (Microsoft Corporation) C:\WINDOWS\system32\svchost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\threadpoolwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagnosticdataquery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcacli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NapiNSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\amsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mmcss.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000052672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wtsapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ResourcePolicyClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000051120 _____ (Microsoft Corporation) C:\WINDOWS\system32\iri.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sfc_os.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mskeyprotect.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmiclnt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrnr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Websocket.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IndirectKmd.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000047016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\svchost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000046392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coloradapterclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguageProfileCallback.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\execmodelproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000042328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000041816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\atlthunk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmiclnt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tokenbinding.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\hid.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Websocket.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32topl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000035640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000034152 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnscacheugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000033064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltLib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\linkinfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000031528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031496 _____ (Microsoft Corporation) C:\WINDOWS\system32\version.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltMC.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.TimeBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsparse.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030480 _____ (Microsoft Corporation) C:\WINDOWS\system32\avrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxstrace.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000029456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsrole.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\secur32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000028360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32topl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\davhlpr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000027848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fltLib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000027336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\avrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbtugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000026608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IntelTA.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000025848 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\httpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.TimeBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ktmw32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fltMC.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000024296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerEnc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000024288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsrole.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregtask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsparse.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemEventsBrokerClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mobilenetworking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000021312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000021280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidtel.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000020640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerEnc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshqos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasacd.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000020160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000019776 _____ (Microsoft Corporation) C:\WINDOWS\system32\backgroundTaskHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000019256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dllhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000019144 _____ (Microsoft Corporation) C:\WINDOWS\system32\psapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsregtask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mobilenetworking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wowreg32.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000017728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\backgroundTaskHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000017600 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrss.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000017016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshqos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmsgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmiso8601utils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsiproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSHTCPIP.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wship6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfoext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000011784 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000011272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sfc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wship6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSHTCPIP.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUS.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUS.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\normaliz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shimeng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneServiceRes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3r.dll
2020-10-13 18:03 - 2020-10-13 18:03 - 000062054 _____ C:\Users\wobro\Downloads\Briefmarken.1Stk.13.10.2020_1903.pdf
2020-10-11 17:33 - 2020-11-04 17:36 - 000000000 ____D C:\AdwCleaner
2020-10-11 09:19 - 2020-10-11 09:19 - 008447152 _____ (Malwarebytes) C:\Users\wobro\Desktop\adwcleaner_8.0.8.exe

==================== Ein Monat (geänderte) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2020-11-08 09:47 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2020-11-08 09:46 - 2020-10-04 11:59 - 000003618 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-11-08 09:46 - 2020-10-04 11:59 - 000003394 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-11-08 09:46 - 2020-10-04 00:46 - 000000306 __RSH C:\ProgramData\ntuser.pol
2020-11-08 09:44 - 2019-02-06 20:32 - 000000000 ____D C:\ProgramData\Mozilla
2020-11-08 09:43 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-11-08 09:43 - 2019-01-04 19:57 - 000000000 ____D C:\Program Files (x86)\Google
2020-11-08 09:43 - 2019-01-04 19:36 - 000000000 ____D C:\Users\wobro\AppData\LocalLow\Mozilla
2020-11-08 09:43 - 2019-01-04 19:09 - 000000000 __SHD C:\Users\wobro\IntelGraphicsProfiles
2020-11-08 09:42 - 2020-10-04 11:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-11-08 09:42 - 2020-10-04 11:53 - 000008192 ___SH C:\DumpStack.log.tmp
2020-11-08 09:42 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-11-08 09:42 - 2018-09-29 20:39 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-11-08 09:41 - 2020-10-04 11:59 - 000003688 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-11-08 09:41 - 2020-10-04 11:59 - 000003464 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-11-08 09:41 - 2019-01-04 19:36 - 000000000 ____D C:\Users\wobro\AppData\Roaming\Mozilla
2020-11-08 09:41 - 2019-01-04 19:36 - 000000000 ____D C:\Users\wobro\AppData\Local\Mozilla
2020-11-08 09:37 - 2020-10-04 12:03 - 001722998 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-11-08 09:37 - 2019-12-07 15:50 - 000743546 _____ C:\WINDOWS\system32\perfh007.dat
2020-11-08 09:37 - 2019-12-07 15:50 - 000149968 _____ C:\WINDOWS\system32\perfc007.dat
2020-11-08 08:46 - 2020-10-04 10:39 - 000000699 _____ C:\Users\wobro\Desktop\ESET Online Scanner.lnk
2020-11-08 08:46 - 2020-10-04 10:38 - 000000827 _____ C:\Users\wobro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-11-07 22:44 - 2019-01-04 20:55 - 000000000 ____D C:\ProgramData\Sonos,_Inc
2020-11-07 09:47 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-11-07 09:47 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-11-07 09:43 - 2020-10-01 18:11 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2020-11-07 08:45 - 2020-10-04 11:53 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-11-06 18:47 - 2019-01-04 21:03 - 000000000 ____D C:\Users\wobro\AppData\Local\Spotify
2020-11-06 18:34 - 2019-01-04 20:46 - 000000000 ____D C:\Users\wobro\AppData\Roaming\Spotify
2020-11-06 08:47 - 2018-09-29 19:58 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-11-04 17:28 - 2020-10-04 10:38 - 015012440 _____ (ESET spol. s r.o.) C:\Users\wobro\Downloads\esetonlinescanner.exe
2020-11-04 17:23 - 2019-01-06 15:23 - 000000000 ____D C:\Users\wobro\AppData\Roaming\vlc
2020-11-04 10:12 - 2020-04-18 13:22 - 000000000 ____D C:\Users\wobro\AppData\Roaming\TIDAL
2020-11-01 16:25 - 2020-10-04 01:21 - 000000000 ___DC C:\WINDOWS\Panther
2020-10-30 15:02 - 2019-01-04 19:54 - 000795000 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2020-10-29 16:09 - 2020-10-04 11:59 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1677736377-56833510-259484278-1001
2020-10-29 16:09 - 2020-10-04 10:54 - 000002424 _____ C:\Users\wobro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-10-29 16:09 - 2019-01-04 19:11 - 000000000 ___RD C:\Users\wobro\OneDrive
2020-10-23 18:44 - 2020-04-18 13:22 - 000000000 ____D C:\Users\wobro\AppData\Local\TIDAL
2020-10-17 10:04 - 2020-10-04 11:53 - 000284664 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-10-17 10:03 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2020-10-17 08:19 - 2019-12-07 15:54 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2020-10-17 08:19 - 2019-12-07 15:54 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2020-10-17 08:19 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp

==================== SigCheck ============================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

==================== Ende von FRST.txt ========================
         
__________________


Alt 08.11.2020, 10:22   #3
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



Addition
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 06-11-2020
durchgeführt von wobro (08-11-2020 09:48:52)
Gestartet von C:\Users\wobro\Desktop
Windows 10 Home Version 2004 19041.572 (X64) (2020-10-04 11:00:01)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-1677736377-56833510-259484278-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1677736377-56833510-259484278-503 - Limited - Disabled)
Gast (S-1-5-21-1677736377-56833510-259484278-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1677736377-56833510-259484278-504 - Limited - Disabled)
wobro (S-1-5-21-1677736377-56833510-259484278-1001 - Administrator - Enabled) => C:\Users\wobro

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Avira Antivirus (Enabled - Up to date) {33CF8AA2-FA06-4AD4-98AB-332D53DD7FFB}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

7-Zip 18.06 (x64) (HKLM\...\7-Zip) (Version: 18.06 - Igor Pavlov)
Audials (HKLM-x32\...\{77CED785-A1A4-4F4F-B0DD-4FC2F33F6A56}) (Version: 19.1.6.0 - Audials AG)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Canon MP270 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP270_series) (Version:  - )
CyberLink PowerDVD 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.8216.01 - CyberLink Corp.)
Epic Games Launcher (HKLM-x32\...\{50D3E17D-0AFC-4617-AB00-DDE3099545FA}) (Version: 1.1.183.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 86.0.4240.183 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1818.12.0.1130 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.4973 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 16.0.2.1086 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.49.166.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{df682aff-4294-4ad1-aaa7-276931d5781f}) (Version: 1.49.166.0 - Intel Corporation) Hidden
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00001050-0200-1031-84C8-B8D95FA3C8C3}) (Version: 20.50.1 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{55d73ea7-6354-42db-8831-02d048ae57f8}) (Version: 10.1.17541.8066 - Intel(R) Corporation) Hidden
Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{2D79E334-B178-45B9-A2A6-7A60A084C268}) (Version: 16.8.0.1000 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{1e9d8bcf-827c-4e01-a82f-86e201de2a84}) (Version: 20.50.3 - Intel Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 85.0.564.68 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.137.99 - )
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.7969.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\OneDriveSetup.exe) (Version: 20.169.0823.0008 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 82.0.2 (x64 de) (HKLM\...\Mozilla Firefox 82.0.2 (x64 de)) (Version: 82.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 82.0.2 - Mozilla)
Mozilla Thunderbird 78.4.1 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 78.4.1 (x86 de)) (Version: 78.4.1 - Mozilla)
Opticon USB Drivers Installer (HKLM-x32\...\Opticon USB Installer) (Version:  - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.26.328.2018 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8425 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.1.0 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.1.0 - VS Revo Group, Ltd.)
ScanClient 3.4 (HKLM-x32\...\ScanClient_is1) (Version:  - GfK SE)
Sonos Controller (HKLM-x32\...\{7BBA9BF8-05DF-47D8-8880-82A9B99505B9}) (Version: 57.3.81090 - Sonos, Inc.)
Spotify (HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\Spotify) (Version: 1.1.45.621.gdddebadc - Spotify AB)
TIDAL (HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\TIDAL) (Version: 2.23.0 - TIDAL Music AS)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{B2E25355-C24E-4E7D-8AD3-455D59810838}) (Version: 2.57.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-3) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-4) (Version: 1.0.65.1 - LunarG, Inc.) Hidden

Packages:
=========
Acer Collection S -> C:\Program Files\WindowsApps\AcerIncorporated.AcerCollectionS_1.0.3004.0_x64__48frkmn4z8aw4 [2019-01-04] (Acer Incorporated)
Acer Product Registration -> C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3013.0_x64__48frkmn4z8aw4 [2019-12-10] (Acer Incorporated)
Care Center -> C:\Program Files\WindowsApps\AcerIncorporated.AcerCareCenter_3.0.3007.0_x64__48frkmn4z8aw4 [2018-09-29] (Acer Incorporated)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa [2020-10-22] (Apple Inc.) [Startup Task]
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-13] (Microsoft Corporation) [MS Ad]
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Movie & Audio Studio -> C:\Program Files\WindowsApps\MAGIXSoftwareGmbH.MovieAudioStudio_1.1.4.0_x64__awcgk3qbzve1y [2018-09-29] (MAGIX Software GmbH)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2020-07-20] (Netflix, Inc.)
PhotoDirector for acer -> C:\Program Files\WindowsApps\CyberLinkCorp.ac.PhotoDirectorforacerDesktop_8.0.5229.0_x64__ypz87dpxkv292 [2019-06-12] (CYBERLINK COM CORP)
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_3.21.1.0_x64__nfy108tqq3p12 [2020-08-26] (Thumbmunkeys Ltd)
PowerDirector for acer -> C:\Program Files\WindowsApps\CyberLinkCorp.ac.PowerDirectorforacerDesktop_14.0.4304.0_x64__ypz87dpxkv292 [2018-09-29] (CYBERLINK COM CORP)
QuickAccess -> C:\Program Files\WindowsApps\AcerIncorporated.QuickAccess_3.0.3009.0_x64__48frkmn4z8aw4 [2019-10-05] (Acer Incorporated)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.2.169.0_x64__dt26b99r8h8gj [2019-06-17] (Realtek Semiconductor Corp)
User Experience Improvement Program -> C:\Program Files\WindowsApps\AcerIncorporated.UserExperienceImprovementProgram_4.0.3002.0_x64__48frkmn4z8aw4 [2019-01-04] (Acer Incorporated)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

ShellIconOverlayIdentifiers: [  OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [Datei ist nicht signiert] [Datei wird verwendet]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Keine Datei
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Keine Datei
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [Datei ist nicht signiert] [Datei wird verwendet]
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> Keine Datei
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Keine Datei
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> Keine Datei
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\igfxDTCM.dll [2018-03-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Keine Datei
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Keine Datei

==================== Codecs (Nicht auf der Ausnahmeliste) ====================

==================== Verknüpfungen & WMI ========================

==================== Geladene Module (Nicht auf der Ausnahmeliste) =============

2020-11-08 09:46 - 2020-11-08 09:46 - 000010752 _____ () [Datei ist nicht signiert] C:\Program Files\Google\Chrome\Application\VERSION.dll
2019-01-06 15:14 - 2018-12-30 08:00 - 000077824 _____ (Igor Pavlov) [Datei ist nicht signiert] C:\Program Files\7-Zip\7-zip.dll
2018-12-03 21:19 - 2018-12-03 21:19 - 000126976 _____ (Intel Corporation) [Datei ist nicht signiert] C:\Program Files\Intel\OptaneShellExtensions\iaStorAfsServiceApi.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================

==================== Internet Explorer (Nicht auf der Ausnahmeliste) ==========

HKU\S-1-5-21-1677736377-56833510-259484278-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer17win10.msn.com/?pc=ACTE
HKU\S-1-5-21-1677736377-56833510-259484278-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE

==================== Hosts Inhalt: =========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2018-04-12 00:38 - 2018-04-12 00:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

2019-07-23 23:56 - 2019-07-23 23:57 - 000000445 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Andere Bereiche ===========================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\nodejs\
HKU\S-1-5-21-1677736377-56833510-259484278-1001\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
 ist aktiviert.

Network Binding:
=============
Ethernet: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) 
WLAN: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) 

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

HKLM\...\StartupApproved\Run: => "ACPW13DE"
HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\StartupApproved\Run: => "Amazon Photos"
HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\StartupApproved\Run: => "ACDSeeCommanderPro13"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [{287A8F31-08BD-460D-B8F3-3F14F8E65988}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe => Keine Datei
FirewallRules: [{91618747-F247-4D58-B75A-362AC2829FF8}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe => Keine Datei
FirewallRules: [{5BDBC46A-0925-4926-9B35-1A2FE120148C}] => (Block) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe => Keine Datei
FirewallRules: [UDP Query User{8425DCF9-2E8B-4A60-A9FA-765A8A1E665F}C:\users\wobro\appdata\local\tidal\app-2.21.0\tidal.exe] => (Allow) C:\users\wobro\appdata\local\tidal\app-2.21.0\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{EF318878-A378-4D7A-848E-390033DA6CCA}C:\users\wobro\appdata\local\tidal\app-2.21.0\tidal.exe] => (Allow) C:\users\wobro\appdata\local\tidal\app-2.21.0\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{D056F00A-92D2-49FF-B878-F9DE5354BE14}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A604692B-9779-490C-9746-3209CD7E3148}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{699BD5AB-0C0A-4B33-975D-CCF03A8E3EF2}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{21C2242C-4538-4307-A760-2F8DEAD086C6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [UDP Query User{BD16FAA8-0317-4572-9623-071CB6378283}D:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{7D1661CC-D6CD-4903-852B-CE6A91221B22}D:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{4B8FD66A-FA75-46FB-93C5-B52EC78832C0}D:\games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{D55FC52F-551F-4747-8263-7CA91478B3D6}D:\games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{0BCC2599-5DC3-479E-ABCD-DAEED7E3A97B}] => (Allow) LPort=31931
FirewallRules: [{D0885363-5E96-4EDC-B169-2CF9EAA8D86E}] => (Allow) LPort=14714
FirewallRules: [{6726C732-449C-4DDD-9C52-8B2C21259559}] => (Allow) LPort=12972
FirewallRules: [{20173419-739A-44DD-B683-725163448E62}] => (Allow) C:\Program Files (x86)\Audials\Audials 2019\Audials.exe (Audials AG -> Audials AG)
FirewallRules: [UDP Query User{4E921497-7CB4-4620-9A83-B0D89E901B28}C:\users\wobro\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\wobro\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{40E2CA47-E68A-45D2-9800-16DC30F743D1}C:\users\wobro\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\wobro\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{E8A34165-4932-4C89-83A4-ABBB2206259C}C:\users\wobro\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\wobro\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{D2F3E65E-B770-4574-A419-1A88DE58B7DB}C:\users\wobro\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\wobro\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CA127C7D-1FAC-47D3-B102-B803157F5AA5}] => (Allow) LPort=3445
FirewallRules: [{3A1368B6-553A-465C-B578-EE806DE902FA}] => (Allow) C:\Program Files (x86)\Sonos\Sonos.exe (Sonos, Inc. -> Sonos, Inc.)
FirewallRules: [{B6AA0302-089F-44F5-AA8B-F64645194C2C}] => (Allow) C:\Program Files (x86)\Sonos\Sonos.exe (Sonos, Inc. -> Sonos, Inc.)
FirewallRules: [{4955C696-A545-40BC-A183-DFC559DCE387}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVDMovie.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{31BA7236-3BA5-4840-9885-1417AD842BF6}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{F5F77A6C-542A-447C-A9D1-8A0C76E4BD89}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation -> )
FirewallRules: [{8E981DAA-D6E8-4394-813E-E67E8B1467F6}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{F2D8C77E-23B1-443E-B11D-9B22304E0453}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{7B4ADA20-8E2D-43D6-8409-16F6D4FF5D2B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{6827537A-C6E1-4157-93F5-77A8CEFAF914}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{4D9292A7-CD7F-4594-8F70-661E1BB8B1FD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5E2ED9C5-AFEE-470B-8AA5-E59170A6D11B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3E75CC8A-DA53-4B7A-81CC-551542A713A5}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1013CB94-7220-4075-9A67-758B2CF5C5AB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{22474D1C-D67E-412E-9228-5C971878AEAA}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{10017E92-FBD2-430D-A1CE-2ED4182F7DE7}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8717C72B-F3F8-4F2B-A747-6EBCCC82F14A}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{EC078361-EAFB-44A4-B7C8-2EDAA9F23957}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{EC4C1773-C3BC-42F7-BA55-E5D501E1B537}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B00A03C1-26BA-4BC6-8261-2E59293D6BBD}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{61DD0AFC-0F9E-44A6-966E-EA2BAACC1077}C:\users\wobro\appdata\local\tidal\app-2.23.0\tidal.exe] => (Allow) C:\users\wobro\appdata\local\tidal\app-2.23.0\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{DFBE672D-BBBE-4364-A556-0CFE4F177A28}C:\users\wobro\appdata\local\tidal\app-2.23.0\tidal.exe] => (Allow) C:\users\wobro\appdata\local\tidal\app-2.23.0\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{F428A55C-DBCE-430F-961C-FEC0CA2BF5AB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.13328.20292.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6CD3DB40-898C-4E16-A2B5-887BEEB8DAEC}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{D9A7BA4C-26A6-4679-9FB5-08469B99E8E5}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6A4EB2D0-B127-4ED3-8B40-AB1D2A495EBC}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Wiederherstellungspunkte =========================

ACHTUNG: Systemwiederherstellung ist deaktiviert (Total:118.12 GB) (Free:43.92 GB) (37%)

==================== Fehlerhafte Geräte im Gerätemanager ============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Fehlereinträge in der Ereignisanzeige: ========================

Applikationsfehler:
==================
Error: (11/08/2020 09:43:10 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname DESKTOP-UG2PJTF.local already in use; will try DESKTOP-UG2PJTF-2.local instead

Error: (11/08/2020 09:43:10 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister    4 DESKTOP-UG2PJTF.local. Addr 192.168.2.110

Error: (11/08/2020 09:43:10 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.110:5353   16 DESKTOP-UG2PJTF.local. AAAA FD91:DAB6:A2B2:0001:CDB6:71AF:822B:FE6A

Error: (11/08/2020 09:43:10 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Resetting to Probing:   16 DESKTOP-UG2PJTF.local. AAAA FE80:0000:0000:0000:CDB6:71AF:822B:FE6A

Error: (11/08/2020 09:43:10 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.110:5353   16 DESKTOP-UG2PJTF.local. AAAA FD91:DAB6:A2B2:0001:CDB6:71AF:822B:FE6A

Error: (11/08/2020 09:43:10 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Resetting to Probing:    4 DESKTOP-UG2PJTF.local. Addr 192.168.2.110

Error: (11/08/2020 09:43:10 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.110:5353   16 DESKTOP-UG2PJTF.local. AAAA FD91:DAB6:A2B2:0001:CDB6:71AF:822B:FE6A

Error: (11/08/2020 09:38:32 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname DESKTOP-UG2PJTF.local already in use; will try DESKTOP-UG2PJTF-2.local instead


Systemfehler:
=============
Error: (11/08/2020 09:46:17 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1096) (User: NT-AUTORITÄT)
Description: Fehler bei der Verarbeitung der Gruppenrichtlinie. Es wurde versucht, registrierungsbasierte Richtlinieneinstellungen für das Gruppenrichtlinienobjekt "LocalGPO" zu lesen. Die Gruppenrichtlinieneinstellungen dürfen nicht erzwungen werden, bis dieses Ereignis behoben ist. Weitere Informationen über den Dateinamen und -pfad, der den Fehler verursacht hat, können den Ereignisdetails entnommen werden.

Error: (11/08/2020 09:42:32 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\system32\IntelWifiIhv08.dll

Error: (11/08/2020 09:42:32 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\system32\IntelWifiIhv08.dll

Error: (11/08/2020 09:42:27 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\system32\IntelWifiIhv08.dll

Error: (11/08/2020 09:42:22 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) Content Protection HECI Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (11/08/2020 09:42:22 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (11/08/2020 09:42:22 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.

Error: (11/08/2020 09:42:22 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.


Windows Defender:
===================================
Date: 2020-11-07 09:07:31.6940000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {B67A64C1-F5D5-4762-A973-B54B70774B12}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-11-04 17:08:33.7710000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {B1376BB6-A7E6-4C91-ADC7-D64D4718364C}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-11-01 20:18:11.0120000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {859604C3-0355-4EAF-A893-44150BD74E85}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-10-31 17:48:15.3770000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {4A006C2D-DE53-406E-8DA1-B488B2D74611}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-10-30 20:29:48.1600000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {C08BB3AF-CB38-46A2-9DD0-9D76C43380EF}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

==================== Speicherinformationen =========================== 

BIOS: American Megatrends Inc R01-A3 05/16/2018
Hauptplatine: Acer Aspire XC-885
Prozessor: Intel(R) Core(TM) i3-8100 CPU @ 3.60GHz
Prozentuale Nutzung des RAM: 50%
Installierter physikalischer RAM: 8078.81 MB
Verfügbarer physikalischer RAM: 3985.7 MB
Summe virtueller Speicher: 9358.81 MB
Verfügbarer virtueller Speicher: 5140.41 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:118.12 GB) (Free:43.92 GB) NTFS
Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:855.74 GB) NTFS

\\?\Volume{93b290e0-403a-46a7-9fd6-06b31e72a107}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.56 GB) NTFS
\\?\Volume{c9f9707f-6bcc-49cc-8cfc-d917d3b36835}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32

==================== MBR & Partitionstabelle ====================

==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 65F4191F)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 9397DC32)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt =======================
         
AdwCleaner Log

Code:
ATTFilter
# -------------------------------
# Malwarebytes AdwCleaner 8.0.8.0
# -------------------------------
# Build:    10-08-2020
# Database: 2020-09-29.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    11-08-2020
# Duration: 00:00:01
# OS:       Windows 10 Home
# Cleaned:  1
# Failed:   0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

Deleted       C:\Windows\Installer\{3A16BBE0-4FD6-4140-8E12-01B7DC4D76F3}\{8D17650F-4B5A-4205-A160-E95609997532}.XPI

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] remove_file_ntuser
[+] remove_wingrouppolicy_registry
[+] remove_regKey_googleupdatepolicy
[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1406 octets] - [11/10/2020 18:33:48]
AdwCleaner[S01].txt - [1467 octets] - [12/10/2020 19:20:25]
AdwCleaner[S02].txt - [1528 octets] - [13/10/2020 18:48:30]
AdwCleaner[S03].txt - [1589 octets] - [14/10/2020 18:18:07]
AdwCleaner[S04].txt - [1650 octets] - [17/10/2020 09:24:36]
AdwCleaner[S05].txt - [1711 octets] - [18/10/2020 16:51:49]
AdwCleaner[S06].txt - [1772 octets] - [20/10/2020 16:13:55]
AdwCleaner[S07].txt - [1833 octets] - [21/10/2020 17:32:08]
AdwCleaner[S08].txt - [1894 octets] - [24/10/2020 16:39:52]
AdwCleaner[S09].txt - [1955 octets] - [26/10/2020 18:12:39]
AdwCleaner[S10].txt - [2016 octets] - [30/10/2020 15:04:59]
AdwCleaner[S11].txt - [2077 octets] - [02/11/2020 11:53:37]
AdwCleaner[S12].txt - [2247 octets] - [04/11/2020 17:28:18]
AdwCleaner[C12].txt - [2515 octets] - [04/11/2020 17:36:12]
AdwCleaner[S13].txt - [2260 octets] - [04/11/2020 17:37:54]
AdwCleaner[S14].txt - [2321 octets] - [04/11/2020 19:49:42]
AdwCleaner[S15].txt - [2382 octets] - [04/11/2020 23:50:41]
AdwCleaner[S16].txt - [2552 octets] - [07/11/2020 09:03:45]
AdwCleaner[C16].txt - [2820 octets] - [07/11/2020 09:11:03]
AdwCleaner[S17].txt - [2565 octets] - [07/11/2020 09:14:37]
AdwCleaner[S18].txt - [2735 octets] - [07/11/2020 09:22:20]
AdwCleaner[C18].txt - [3003 octets] - [07/11/2020 09:26:45]
AdwCleaner[S19].txt - [2748 octets] - [07/11/2020 09:28:34]
AdwCleaner[S20].txt - [2918 octets] - [07/11/2020 09:31:19]
AdwCleaner[C20].txt - [3186 octets] - [07/11/2020 09:33:25]
AdwCleaner[S21].txt - [2931 octets] - [07/11/2020 09:34:48]
AdwCleaner[S22].txt - [3101 octets] - [07/11/2020 09:37:49]
AdwCleaner[C22].txt - [3369 octets] - [07/11/2020 09:42:44]
AdwCleaner[S23].txt - [3223 octets] - [07/11/2020 09:56:01]
AdwCleaner[C23].txt - [3491 octets] - [07/11/2020 09:57:39]
AdwCleaner[S24].txt - [3236 octets] - [07/11/2020 23:23:01]
AdwCleaner[S25].txt - [3297 octets] - [08/11/2020 08:46:31]
AdwCleaner[S26].txt - [3467 octets] - [08/11/2020 09:22:26]
AdwCleaner[C26].txt - [3735 octets] - [08/11/2020 09:31:55]
AdwCleaner[S27].txt - [3589 octets] - [08/11/2020 09:37:37]
AdwCleaner[C27].txt - [3857 octets] - [08/11/2020 09:37:49]
AdwCleaner[S28].txt - [3602 octets] - [08/11/2020 09:38:59]
AdwCleaner[S29].txt - [3663 octets] - [08/11/2020 09:39:43]
AdwCleaner[S30].txt - [3833 octets] - [08/11/2020 09:42:03]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C30].txt ##########
         
__________________

Alt 08.11.2020, 10:48   #4
M-K-D-B
/// TB-Ausbilder
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen







Mein Name ist Matthias und ich werde dir bei der Analyse und der eventuell notwendigen Bereinigung deines Computers helfen.



Ich analysiere gerade dein System und melde mich in Kürze mit weiteren Anweisungen.

Alt 08.11.2020, 11:03   #5
M-K-D-B
/// TB-Ausbilder
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen




WARNUNG VOR AUDACITY.DE !!!
Du hast dich bei der Installation der Software audacity mit Malware infiziert.
Bitte anschauen:

Warnung vor audacity.de - eine gemeine Falle !!!







Schritt 1
Google Chrome ist mit Malware infiziert und muss komplett entfernen werden.
  • Deinstalliere über Start > Einstellungen > Apps bzw. Start > Systemsteuerung > Programme deinstallieren die folgenden Programme:
    • Google Chrome
  • Setze bei der Deinstallation auch einen Haken vor Auch die Browserdaten löschen.
  • Starte den Rechner im Anschluss neu auf.
  • Gib eine kurze Rückmeldung, ob die Deinstallation erfolgreich war.





Schritt 2
  • Schließe alle offenen Programme und Internet Browser, damit keine Daten verloren gehen.
  • Kopiere den gesamten Inhalt der folgenden Code-Box:
    Code:
    ATTFilter
    Start::
    CloseProcesses:
    AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
    AS: Avira Antivirus (Enabled - Up to date) {33CF8AA2-FA06-4AD4-98AB-332D53DD7FFB}
    S3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [45056 2019-12-04] (Avira Operations GmbH & Co. KG -> The OpenVPN Project)
    C:\WINDOWS\System32\drivers\phantomtap.sys
    Task: {13257998-11A9-496A-A11A-1AAF10D8239A} - \EOSv3 Scheduler onTime -> Keine Datei <==== ACHTUNG
    Task: {6276162C-A688-4DD3-95EB-0E2C0509093F} - \EOSv3 Scheduler onLogOn -> Keine Datei <==== ACHTUNG
    C:\Users\AllUserName\AppData\Local\Google\Chrome
    DeleteKey: HKLM\SOFTWARE\Google\Chrome
    DeleteKey: HKLM\SOFTWARE\WOW6432Node\Google\Chrome
    DeleteKey: HKCU\SOFTWARE\Google\Chrome
    Task: {71F21C7A-B7A8-4A97-A4B5-D4423661D5D8} - System32\Tasks\CommonLogRAS-Medientreiber => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) -> C:\WINDOWS\Installer\{493DF0B0-2E91-47FC-8F46-6DB48D8D2B70}\{1F6EBB0B-29ED-4AE6-A0CD-E4D3AC29E54C} <==== ACHTUNG
    Task: {F4E930AA-BE41-45A9-B642-96D855C78EA0} - System32\Tasks\Lokaler Distributed WAP-Push-Nachrichten => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) -> "C:\ProgramData\Package Cache\{5F2DB4C5-1C3C-4B94-933C-E2E6884FD7C3}\{83B6C039-81E4-448D-A415-BCD718DE5FDE}" <==== ACHTUNG
    CMD: type "C:\ProgramData\ntuser.pol"
    C:\ProgramData\ntuser.pol
    C:\WINDOWS\system32\GroupPolicy\Machine
    C:\WINDOWS\system32\GroupPolicy\GPT.ini
    C:\WINDOWS\SysWOW64\GroupPolicy\Machine
    C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini
    DeleteKey: HKLM\SOFTWARE\Policies\Google
    DeleteKey: HKLM\SOFTWARE\Policies\Mozilla
    DeleteKey: HKLM\SOFTWARE\Policies\Microsoft\Edge
    DeleteKey: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender
    C:\Users\AllUserName\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dbchccfceccngbeaacpaegllaaoakjni
    FF user.js: detected! => C:\Users\AllUserName\AppData\Roaming\Mozilla\Firefox\Profiles\63u0l9x2.default-release\user.js [2020-11-08]
    FF HKLM\...\Firefox\Extensions: [{8D17650F-4B5A-4205-A160-E95609997532}] - C:\WINDOWS\Installer\{3A16BBE0-4FD6-4140-8E12-01B7DC4D76F3}\{8D17650F-4B5A-4205-A160-E95609997532}.xpi
    FF HKLM-x32\...\Firefox\Extensions: [{8D17650F-4B5A-4205-A160-E95609997532}] - C:\WINDOWS\Installer\{3A16BBE0-4FD6-4140-8E12-01B7DC4D76F3}\{8D17650F-4B5A-4205-A160-E95609997532}.xpi
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js
    C:\Program Files (x86)\nodejs
    DeleteKey: HKLM\SOFTWARE\Node.js
    DeleteKey: HKLM\SOFTWARE\WOW6432Node\Node.js
    DeleteKey: HKLM\SOFTWARE\Classes\Installer\Products\4D45993E1218CF443A3DFD6652D48B19
    DeleteKey: HKLM\SOFTWARE\Classes\Installer\Products\27AC50E0DD8DF2342ACC8800434A5877
    DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4D45993E1218CF443A3DFD6652D48B19
    DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\27AC50E0DD8DF2342ACC8800434A5877
    DeleteKey: HKU\.DEFAULT\Software\Node.js
    DeleteKey: HKCU\SOFTWARE\Node.js
    DeleteKey: HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E39954D4-8121-44FC-A3D3-DF66254DB891}
    DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{77754e9b-264b-4d8d-b981-e4135c1ecb0c}
    DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{793c9b44-3d6b-4f57-b5d7-4ff80adcf9a2}
    DeleteKey: HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{793c9b44-3d6b-4f57-b5d7-4ff80adcf9a2}
    StartBatch:
    FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}.xpi" RD /S /Q "%%a" )
    FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\c????????????????????????????????rx" RD /S /Q "%%a" )
    FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\x????????????????????????????????ml" RD /S /Q "%%a" )
    FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}" RD /S /Q "%%a" )
    FOR /D %%a IN ("%ProgramData%\Package Cache\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}" RD /S /Q "%%a" )
    EndBatch: 
    CMD: ipconfig /flushdns
    CMD: netsh winsock reset
    CMD: netsh advfirewall reset
    CMD: netsh advfirewall set allprofiles state ON
    CMD: Bitsadmin /Reset /Allusers
    powershell: Set-MpPreference -PUAProtection Enabled
    Hosts:
    RemoveProxy:
    SystemRestore: On 
    EmptyTemp:
    End::
             
  • Starte nun FRST und klicke direkt den Reparieren Button.
    Wichtig: Du brauchst den Inhalt der Code-Box nirgends einfügen, da sich FRST den Code aus der Zwischenablage holt!
  • Das Tool führt die gewünschten Schritte aus und erstellt eine fixlog.txt im selben Verzeichnis, in dem sich FRST befindet.
  • Gegebenenfalls muss dein Rechner neu gestartet werden.
  • Poste mir den Inhalt der fixlog.txt mit deiner nächsten Antwort.





Schritt 3
  • Starte FRST erneut. Vergewissere dich, dass vor Addition.txt ein Haken gesetzt ist und drücke auf Untersuchen.
  • FRST erstellt wieder zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.





Bitte poste mit deiner nächsten Antwort:
  • eine Rückmeldung bezüglich der Deinstallationen
  • die Logdatei des FRST-Fix (fixlog.txt)
  • die beiden neuen Logdateien von FRST (FRST.txt und Addition.txt)


Alt 08.11.2020, 11:20   #6
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



Hallo Matthias und vielen Dank für die Annahme meines Problems.
Danke für die Info zu Audacity.

Google Chrome lies sich problemlos entfernen (incl. Browserdaten), keine Fehlermeldung o.Ä.

Anbei die neuen Logs.

FRST-Fix
Code:
ATTFilter
Entfernungsergebnis von Farbar Recovery Scan Tool (x64) Version: 06-11-2020
durchgeführt von wobro (08-11-2020 11:11:18) Run:1
Gestartet von C:\Users\wobro\Desktop
Geladene Profile: wobro
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
CloseProcesses:
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Avira Antivirus (Enabled - Up to date) {33CF8AA2-FA06-4AD4-98AB-332D53DD7FFB}
S3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [45056 2019-12-04] (Avira Operations GmbH & Co. KG -> The OpenVPN Project)
C:\WINDOWS\System32\drivers\phantomtap.sys
Task: {13257998-11A9-496A-A11A-1AAF10D8239A} - \EOSv3 Scheduler onTime -> Keine Datei <==== ACHTUNG
Task: {6276162C-A688-4DD3-95EB-0E2C0509093F} - \EOSv3 Scheduler onLogOn -> Keine Datei <==== ACHTUNG
C:\Users\Default\AppData\Local\Google\Chrome
C:\Users\wobro\AppData\Local\Google\Chrome
DeleteKey: HKLM\SOFTWARE\Google\Chrome
DeleteKey: HKLM\SOFTWARE\WOW6432Node\Google\Chrome
DeleteKey: HKCU\SOFTWARE\Google\Chrome
Task: {71F21C7A-B7A8-4A97-A4B5-D4423661D5D8} - System32\Tasks\CommonLogRAS-Medientreiber => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) -> C:\WINDOWS\Installer\{493DF0B0-2E91-47FC-8F46-6DB48D8D2B70}\{1F6EBB0B-29ED-4AE6-A0CD-E4D3AC29E54C} <==== ACHTUNG
Task: {F4E930AA-BE41-45A9-B642-96D855C78EA0} - System32\Tasks\Lokaler Distributed WAP-Push-Nachrichten => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) -> "C:\ProgramData\Package Cache\{5F2DB4C5-1C3C-4B94-933C-E2E6884FD7C3}\{83B6C039-81E4-448D-A415-BCD718DE5FDE}" <==== ACHTUNG
CMD: type "C:\ProgramData\ntuser.pol"
C:\ProgramData\ntuser.pol
C:\WINDOWS\system32\GroupPolicy\Machine
C:\WINDOWS\system32\GroupPolicy\GPT.ini
C:\WINDOWS\SysWOW64\GroupPolicy\Machine
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini
DeleteKey: HKLM\SOFTWARE\Policies\Google
DeleteKey: HKLM\SOFTWARE\Policies\Mozilla
DeleteKey: HKLM\SOFTWARE\Policies\Microsoft\Edge
DeleteKey: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender
C:\Users\Default\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dbchccfceccngbeaacpaegllaaoakjni
C:\Users\wobro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dbchccfceccngbeaacpaegllaaoakjni
FF user.js: detected! => C:\Users\Default\AppData\Roaming\Mozilla\Firefox\Profiles\63u0l9x2.default-release\user.js [2020-11-08]
FF user.js: detected! => C:\Users\wobro\AppData\Roaming\Mozilla\Firefox\Profiles\63u0l9x2.default-release\user.js [2020-11-08]
FF HKLM\...\Firefox\Extensions: [{8D17650F-4B5A-4205-A160-E95609997532}] - C:\WINDOWS\Installer\{3A16BBE0-4FD6-4140-8E12-01B7DC4D76F3}\{8D17650F-4B5A-4205-A160-E95609997532}.xpi
FF HKLM-x32\...\Firefox\Extensions: [{8D17650F-4B5A-4205-A160-E95609997532}] - C:\WINDOWS\Installer\{3A16BBE0-4FD6-4140-8E12-01B7DC4D76F3}\{8D17650F-4B5A-4205-A160-E95609997532}.xpi
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js
C:\Program Files (x86)\nodejs
DeleteKey: HKLM\SOFTWARE\Node.js
DeleteKey: HKLM\SOFTWARE\WOW6432Node\Node.js
DeleteKey: HKLM\SOFTWARE\Classes\Installer\Products\4D45993E1218CF443A3DFD6652D48B19
DeleteKey: HKLM\SOFTWARE\Classes\Installer\Products\27AC50E0DD8DF2342ACC8800434A5877
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4D45993E1218CF443A3DFD6652D48B19
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\27AC50E0DD8DF2342ACC8800434A5877
DeleteKey: HKU\.DEFAULT\Software\Node.js
DeleteKey: HKCU\SOFTWARE\Node.js
DeleteKey: HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E39954D4-8121-44FC-A3D3-DF66254DB891}
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{77754e9b-264b-4d8d-b981-e4135c1ecb0c}
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{793c9b44-3d6b-4f57-b5d7-4ff80adcf9a2}
DeleteKey: HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Perflib\_V2Providers\{793c9b44-3d6b-4f57-b5d7-4ff80adcf9a2}
StartBatch:
FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}.xpi" RD /S /Q "%%a" )
FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\c????????????????????????????????rx" RD /S /Q "%%a" )
FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\x????????????????????????????????ml" RD /S /Q "%%a" )
FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}" RD /S /Q "%%a" )
FOR /D %%a IN ("%ProgramData%\Package Cache\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}" RD /S /Q "%%a" )
EndBatch: 
CMD: ipconfig /flushdns
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: Bitsadmin /Reset /Allusers
powershell: Set-MpPreference -PUAProtection Enabled
Hosts:
RemoveProxy:
SystemRestore: On 
EmptyTemp:

*****************

Prozesse erfolgreich geschlossen.
"AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}" => erfolgreich entfernt
"AS: Avira Antivirus (Enabled - Up to date) {33CF8AA2-FA06-4AD4-98AB-332D53DD7FFB}" => erfolgreich entfernt
HKLM\System\CurrentControlSet\Services\phantomtap => erfolgreich entfernt
phantomtap => Dienst erfolgreich entfernt
C:\WINDOWS\System32\drivers\phantomtap.sys => erfolgreich verschoben
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{13257998-11A9-496A-A11A-1AAF10D8239A}" => erfolgreich entfernt
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{13257998-11A9-496A-A11A-1AAF10D8239A}" => erfolgreich entfernt
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EOSv3 Scheduler onTime" => nicht gefunden
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6276162C-A688-4DD3-95EB-0E2C0509093F}" => erfolgreich entfernt
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6276162C-A688-4DD3-95EB-0E2C0509093F}" => erfolgreich entfernt
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EOSv3 Scheduler onLogOn" => nicht gefunden
"C:\Users\Default\AppData\Local\Google\Chrome" => nicht gefunden
"C:\Users\wobro\AppData\Local\Google\Chrome" => nicht gefunden
"HKLM\SOFTWARE\Google\Chrome" => erfolgreich entfernt
HKLM\SOFTWARE\WOW6432Node\Google\Chrome => erfolgreich entfernt
"HKCU\SOFTWARE\Google\Chrome" => erfolgreich entfernt
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{71F21C7A-B7A8-4A97-A4B5-D4423661D5D8}" => erfolgreich entfernt
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71F21C7A-B7A8-4A97-A4B5-D4423661D5D8}" => erfolgreich entfernt
C:\WINDOWS\System32\Tasks\CommonLogRAS-Medientreiber => erfolgreich verschoben
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CommonLogRAS-Medientreiber" => erfolgreich entfernt
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F4E930AA-BE41-45A9-B642-96D855C78EA0}" => erfolgreich entfernt
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4E930AA-BE41-45A9-B642-96D855C78EA0}" => erfolgreich entfernt
C:\WINDOWS\System32\Tasks\Lokaler Distributed WAP-Push-Nachrichten => erfolgreich verschoben
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lokaler Distributed WAP-Push-Nachrichten" => erfolgreich entfernt

========= type "C:\ProgramData\ntuser.pol" =========

P R e g        [   S   o   f   t   w   a   r   e   \   P   o   l   i   c   i   e   s   \   M   i   c   r   o   s   o   f   t   \   W   i   n   d   o   w   s   \   G   r   o   u   p       P   o   l   i   c   y       O   b   j   e   c   t   s   \   R   i   c   h   t   l   i   n   i   e   n       d   e   r       l   o   k   a   l   e   n       G   r   u   p   p   e       ;   *   *   C   o   m   m   e   n   t   :   G   P   O       N   a   m   e   :       R   i   c   h   t   l   i   n   i   e   n       d   e   r       l   o   k   a   l   e   n       G   r   u   p   p   e       ;          ;           ;   ]   
========= Ende von CMD: =========

 C : \ P r o g r a m D a t a \ n t u s e r . p o l   = >   e r f o l g r e i c h   v e r s c h o b e n 
 
 C : \ W I N D O W S \ s y s t e m 3 2 \ G r o u p P o l i c y \ M a c h i n e   = >   e r f o l g r e i c h   v e r s c h o b e n 
 
 C : \ W I N D O W S \ s y s t e m 3 2 \ G r o u p P o l i c y \ G P T . i n i   = >   e r f o l g r e i c h   v e r s c h o b e n 
 
 " C : \ W I N D O W S \ S y s W O W 6 4 \ G r o u p P o l i c y \ M a c h i n e "   = >   n i c h t   g e f u n d e n 
 
 C : \ W I N D O W S \ S y s W O W 6 4 \ G r o u p P o l i c y \ G P T . i n i   = >   e r f o l g r e i c h   v e r s c h o b e n 
 
 H K L M \ S O F T W A R E \ P o l i c i e s \ G o o g l e   = >   e r f o l g r e i c h   e n t f e r n t 
 
 H K L M \ S O F T W A R E \ P o l i c i e s \ M o z i l l a   = >   n i c h t   g e f u n d e n 
 
 H K L M \ S O F T W A R E \ P o l i c i e s \ M i c r o s o f t \ E d g e   = >   e r f o l g r e i c h   e n t f e r n t 
 
 H K L M \ S O F T W A R E \ P o l i c i e s \ M i c r o s o f t \ W i n d o w s   D e f e n d e r   = >   e r f o l g r e i c h   e n t f e r n t 
 
 " C : \ U s e r s \ D e f a u l t \ A p p D a t a \ L o c a l \ M i c r o s o f t \ E d g e \ U s e r   D a t a \ D e f a u l t \ E x t e n s i o n s \ d b c h c c f c e c c n g b e a a c p a e g l l a a o a k j n i "   = >   n i c h t   g e f u n d e n 
 
 C : \ U s e r s \ w o b r o \ A p p D a t a \ L o c a l \ M i c r o s o f t \ E d g e \ U s e r   D a t a \ D e f a u l t \ E x t e n s i o n s \ d b c h c c f c e c c n g b e a a c p a e g l l a a o a k j n i   = >   e r f o l g r e i c h   v e r s c h o b e n 
 
 " C : \ U s e r s \ D e f a u l t \ A p p D a t a \ R o a m i n g \ M o z i l l a \ F i r e f o x \ P r o f i l e s \ 6 3 u 0 l 9 x 2 . d e f a u l t - r e l e a s e \ u s e r . j s "   = >   n i c h t   g e f u n d e n 
 
 C : \ U s e r s \ w o b r o \ A p p D a t a \ R o a m i n g \ M o z i l l a \ F i r e f o x \ P r o f i l e s \ 6 3 u 0 l 9 x 2 . d e f a u l t - r e l e a s e \ u s e r . j s   = >   e r f o l g r e i c h   v e r s c h o b e n 
 
 " H K L M \ S o f t w a r e \ M o z i l l a \ F i r e f o x \ E x t e n s i o n s \ \ { 8 D 1 7 6 5 0 F - 4 B 5 A - 4 2 0 5 - A 1 6 0 - E 9 5 6 0 9 9 9 7 5 3 2 } "   = >   e r f o l g r e i c h   e n t f e r n t 
 
 " H K L M \ S o f t w a r e \ W o w 6 4 3 2 N o d e \ M o z i l l a \ F i r e f o x \ E x t e n s i o n s \ \ { 8 D 1 7 6 5 0 F - 4 B 5 A - 4 2 0 5 - A 1 6 0 - E 9 5 6 0 9 9 9 7 5 3 2 } "   = >   e r f o l g r e i c h   e n t f e r n t 
 
 C : \ P r o g r a m D a t a \ M i c r o s o f t \ W i n d o w s \ S t a r t   M e n u \ P r o g r a m s \ N o d e . j s   = >   e r f o l g r e i c h   v e r s c h o b e n 
 
 C : \ P r o g r a m   F i l e s   ( x 8 6 ) \ n o d e j s   = >   e r f o l g r e i c h   v e r s c h o b e n 
 
 H K L M \ S O F T W A R E \ N o d e . j s   = >   n i c h t   g e f u n d e n 
 
 H K L M \ S O F T W A R E \ W O W 6 4 3 2 N o d e \ N o d e . j s   = >   e r f o l g r e i c h   e n t f e r n t 
 
 H K L M \ S O F T W A R E \ C l a s s e s \ I n s t a l l e r \ P r o d u c t s \ 4 D 4 5 9 9 3 E 1 2 1 8 C F 4 4 3 A 3 D F D 6 6 5 2 D 4 8 B 1 9   = >   n i c h t   g e f u n d e n 
 
 H K L M \ S O F T W A R E \ C l a s s e s \ I n s t a l l e r \ P r o d u c t s \ 2 7 A C 5 0 E 0 D D 8 D F 2 3 4 2 A C C 8 8 0 0 4 3 4 A 5 8 7 7   = >   e r f o l g r e i c h   e n t f e r n t 
 
 H K L M \ S O F T W A R E \ M i c r o s o f t \ W i n d o w s \ C u r r e n t V e r s i o n \ I n s t a l l e r \ U s e r D a t a \ S - 1 - 5 - 1 8 \ P r o d u c t s \ 4 D 4 5 9 9 3 E 1 2 1 8 C F 4 4 3 A 3 D F D 6 6 5 2 D 4 8 B 1 9   = >   n i c h t   g e f u n d e n 
 
 H K L M \ S O F T W A R E \ M i c r o s o f t \ W i n d o w s \ C u r r e n t V e r s i o n \ I n s t a l l e r \ U s e r D a t a \ S - 1 - 5 - 1 8 \ P r o d u c t s \ 2 7 A C 5 0 E 0 D D 8 D F 2 3 4 2 A C C 8 8 0 0 4 3 4 A 5 8 7 7   = >   e r f o l g r e i c h   e n t f e r n t 
 
 H K U \ . D E F A U L T \ S o f t w a r e \ N o d e . j s   = >   n i c h t   g e f u n d e n 
 
 H K C U \ S O F T W A R E \ N o d e . j s   = >   e r f o l g r e i c h   e n t f e r n t 
 
 H K L M \ S o f t w a r e \ W O W 6 4 3 2 N o d e \ M i c r o s o f t \ W i n d o w s \ C u r r e n t V e r s i o n \ U n i n s t a l l \ { E 3 9 9 5 4 D 4 - 8 1 2 1 - 4 4 F C - A 3 D 3 - D F 6 6 2 5 4 D B 8 9 1 }   = >   n i c h t   g e f u n d e n 
 
 H K L M \ S O F T W A R E \ M i c r o s o f t \ W i n d o w s \ C u r r e n t V e r s i o n \ W I N E V T \ P u b l i s h e r s \ { 7 7 7 5 4 e 9 b - 2 6 4 b - 4 d 8 d - b 9 8 1 - e 4 1 3 5 c 1 e c b 0 c }   = >   e r f o l g r e i c h   e n t f e r n t 
 
 H K L M \ S O F T W A R E \ M i c r o s o f t \ W i n d o w s   N T \ C u r r e n t V e r s i o n \ P e r f l i b \ _ V 2 P r o v i d e r s \ { 7 9 3 c 9 b 4 4 - 3 d 6 b - 4 f 5 7 - b 5 d 7 - 4 f f 8 0 a d c f 9 a 2 }   = >   e r f o l g r e i c h   e n t f e r n t 
 
 H K L M \ S O F T W A R E \ W O W 6 4 3 2 N o d e \ M i c r o s o f t \ W i n d o w s   N T \ C u r r e n t V e r s i o n \ P e r f l i b \ _ V 2 P r o v i d e r s \ { 7 9 3 c 9 b 4 4 - 3 d 6 b - 4 f 5 7 - b 5 d 7 - 4 f f 8 0 a d c f 9 a 2 }   = >   n i c h t   g e f u n d e n 
 
 
 
 = = = = = = = = =   B a t c h :   = = = = = = = = = 
 
 
 
 = = = = = = = = =   E n d e   v o n   B a t c h :   = = = = = = = = = 
 
 
 
 
 
 = = = = = = = = =   i p c o n f i g   / f l u s h d n s   = = = = = = = = = 
 
 
 
 
 
 W i n d o w s - I P - K o n f i g u r a t i o n 
 
 
 
 D e r   D N S - A u f l  s u n g s c a c h e   w u r d e   g e l e e r t . 
 
 
 
 = = = = = = = = =   E n d e   v o n   C M D :   = = = = = = = = = 
 
 
 
 
 
 = = = = = = = = =   n e t s h   w i n s o c k   r e s e t   = = = = = = = = = 
 
 
 
 
 
 D e r   W i n s o c k - K a t a l o g   w u r d e   z u r  c k g e s e t z t . 
 
 S i e   m  s s e n   d e n   C o m p u t e r   n e u   s t a r t e n ,   u m   d e n   V o r g a n g   a b z u s c h l i e á e n . 
 
 
 
 
 
 = = = = = = = = =   E n d e   v o n   C M D :   = = = = = = = = = 
 
 
 
 
 
 = = = = = = = = =   n e t s h   a d v f i r e w a l l   r e s e t   = = = = = = = = = 
 
 
 
 O K . 
 
 
 
 
 
 = = = = = = = = =   E n d e   v o n   C M D :   = = = = = = = = = 
 
 
 
 
 
 = = = = = = = = =   n e t s h   a d v f i r e w a l l   s e t   a l l p r o f i l e s   s t a t e   O N   = = = = = = = = = 
 
 
 
 O K . 
 
 
 
 
 
 = = = = = = = = =   E n d e   v o n   C M D :   = = = = = = = = = 
 
 
 
 
 
 = = = = = = = = =   B i t s a d m i n   / R e s e t   / A l l u s e r s   = = = = = = = = = 
 
 
 
 
 
 B I T S A D M I N   v e r s i o n   3 . 0 
 
 B I T S   a d m i n i s t r a t i o n   u t i l i t y . 
 
 ( C )   C o p y r i g h t   M i c r o s o f t   C o r p . 
 
 
 
 { 0 7 F A 1 5 3 5 - 0 8 4 7 - 4 E E C - 8 6 F 1 - C 7 E B 5 C 0 5 D 4 F 7 }   c a n c e l e d . 
 
 1   o u t   o f   1   j o b s   c a n c e l e d . 
 
 
 
 = = = = = = = = =   E n d e   v o n   C M D :   = = = = = = = = = 
 
 
 
 
 
 = = = = = = = = =   S e t - M p P r e f e r e n c e   - P U A P r o t e c t i o n   E n a b l e d   = = = = = = = = = 
 
 
 
 
 
 = = = = = = = = =   E n d e   v o n   P o w e r s h e l l :   = = = = = = = = = 
 
 
 
 C : \ W i n d o w s \ S y s t e m 3 2 \ D r i v e r s \ e t c \ h o s t s   = >   e r f o l g r e i c h   v e r s c h o b e n 
 
 H o s t s   e r f o l g r e i c h   w i e d e r h e r g e s t e l l t . 
 
 
 
 = = = = = = = = =   R e m o v e P r o x y :   = = = = = = = = = 
 
 
 
 H K L M \ S O F T W A R E \ P o l i c i e s \ M i c r o s o f t \ I n t e r n e t   E x p l o r e r   = >   e r f o l g r e i c h   e n t f e r n t 
 
 " H K U \ . D E F A U L T \ S O F T W A R E \ M i c r o s o f t \ W i n d o w s \ C u r r e n t V e r s i o n \ I n t e r n e t   S e t t i n g s \ C o n n e c t i o n s \ \ D e f a u l t C o n n e c t i o n S e t t i n g s "   = >   e r f o l g r e i c h   e n t f e r n t 
 
 " H K U \ . D E F A U L T \ S O F T W A R E \ M i c r o s o f t \ W i n d o w s \ C u r r e n t V e r s i o n \ I n t e r n e t   S e t t i n g s \ C o n n e c t i o n s \ \ S a v e d L e g a c y S e t t i n g s "   = >   e r f o l g r e i c h   e n t f e r n t 
 
 " H K U \ S - 1 - 5 - 2 1 - 1 6 7 7 7 3 6 3 7 7 - 5 6 8 3 3 5 1 0 - 2 5 9 4 8 4 2 7 8 - 1 0 0 1 \ S O F T W A R E \ M i c r o s o f t \ W i n d o w s \ C u r r e n t V e r s i o n \ I n t e r n e t   S e t t i n g s \ C o n n e c t i o n s \ \ D e f a u l t C o n n e c t i o n S e t t i n g s "   = >   e r f o l g r e i c h   e n t f e r n t 
 
 " H K U \ S - 1 - 5 - 2 1 - 1 6 7 7 7 3 6 3 7 7 - 5 6 8 3 3 5 1 0 - 2 5 9 4 8 4 2 7 8 - 1 0 0 1 \ S O F T W A R E \ M i c r o s o f t \ W i n d o w s \ C u r r e n t V e r s i o n \ I n t e r n e t   S e t t i n g s \ C o n n e c t i o n s \ \ S a v e d L e g a c y S e t t i n g s "   = >   e r f o l g r e i c h   e n t f e r n t 
 
 
 
 
 
 = = = = = = = = =   E n d e   v o n   R e m o v e P r o x y :   = = = = = = = = = 
 
 
 
 S y s t e m R e s t o r e :   O n   = >   a b g e s c h l o s s e n 
 
 
 
 = = = = = = = = = = =   E m p t y T e m p :   = = = = = = = = = = 
 
 
 
 B I T S   t r a n s f e r   q u e u e   = >   1 0 2 4 8 1 9 2   B 
 
 D O M S t o r e ,   I E   R e c o v e r y ,   A p p C a c h e ,   F e e d s   C a c h e ,   T h u m b c a c h e ,   I c o n C a c h e   = >   8 8 1 0 7 8 1 4   B 
 
 J a v a ,   F l a s h ,   S t e a m   h t m l c a c h e   = >   0   B 
 
 W i n d o w s / s y s t e m / d r i v e r s   = >   5 3 6 4 8 5 4 8   B 
 
 E d g e   = >   8 7 8 0 9 2   B 
 
 C h r o m e   = >   0   B 
 
 F i r e f o x   = >   2 6 5 7 2 9 4 9   B 
 
 O p e r a   = >   2 1 6 3 2 5 6 2   B 
 
 
 
 T e m p ,   I E   c a c h e ,   h i s t o r y ,   c o o k i e s ,   r e c e n t : 
 
 D e f a u l t   = >   0   B 
 
 U s e r s   = >   0   B 
 
 P r o g r a m D a t a   = >   0   B 
 
 P u b l i c   = >   0   B 
 
 s y s t e m p r o f i l e   = >   0   B 
 
 s y s t e m p r o f i l e 3 2   = >   0   B 
 
 L o c a l S e r v i c e   = >   0   B 
 
 N e t w o r k S e r v i c e   = >   2 6 3 0 0   B 
 
 w o b r o   = >   1 9 6 8 5 5 7 2 0   B 
 
 
 
 R e c y c l e B i n   = >   6 4 9 9 1 8 5 5   B 
 
 E m p t y T e m p :   = >   4 4 1 . 5   M B   t e m p o r ä r e   D a t e i e n   e n t f e r n t . 
 
 
 
 = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = 
 
 
 
 
 
 D a s   S y s t e m   m u s s t e   n e u   g e s t a r t e t   w e r d e n . 
 
 
 
 = = = =   E n d e   v o n   F i x l o g   1 1 : 1 1 : 5 5   = = = =
         
FRST Teil 1
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 06-11-2020
durchgeführt von wobro (Administrator) auf DESKTOP-UG2PJTF (Acer Aspire XC-885) (08-11-2020 11:14:04)
Gestartet von C:\Users\wobro\Desktop
Geladene Profile: wobro
Platform: Windows 10 Home Version 2004 19041.572 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser nicht gefunden!
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_8559c34713c70ce4\RstMwService.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2009.4.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12010.1001.3.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\NisSrv.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>

==================== Registry (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [833824 2019-01-31] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2018-02-13] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon MP270 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9X.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP270 series: C:\WINDOWS\system32\CNMLM9X.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {42FF6684-2898-4444-B82C-7C4E6F7FB279} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {68A8BD84-F9E1-477D-BBED-9A1830E889E5} - System32\Tasks\Oem\AcerJumpstartTask => C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe
Task: {6C8520B9-4073-477B-AF0B-D5E6314EE591} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [474368 2018-08-03] (Acer Incorporated -> Acer Incorporated)
Task: {784F08BD-CA1B-461F-8D36-75039B4FDDEE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {86262482-804F-414B-AF09-1A66431E500D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {889B71AA-4FF1-4AE9-A79E-B2944AB74D92} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [667856 2020-10-28] (Mozilla Corporation -> Mozilla Foundation)
Task: {A66AFA32-927A-436C-90B2-7583D7F061CE} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe
Task: {E4CB09E3-172B-401B-9FE3-5B194864BEA9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)


==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{98c45136-e5d5-43f7-8b10-ea1b25fbe759}: [DhcpNameServer] 192.168.2.1

Edge: 
======
Edge Profile: C:\Users\wobro\AppData\Local\Microsoft\Edge\User Data\Default [2020-11-08]
Edge Extension: ( ) - C:\Users\wobro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ondgniaopjjkjajdfglodnlekbciejpc [2020-11-08]

FireFox:
========
FF DefaultProfile: js4pzuw4.default
FF ProfilePath: C:\Users\wobro\AppData\Roaming\Mozilla\Firefox\Profiles\js4pzuw4.default [2020-11-08]
FF ProfilePath: C:\Users\wobro\AppData\Roaming\Mozilla\Firefox\Profiles\63u0l9x2.default-release [2020-11-08]
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)

Opera: 
=======
OPR Extension: (Avira Browser Safety) - C:\Users\wobro\AppData\Roaming\Opera Software\Opera Stable\Extensions\dalelnnofafalcmkmnhdbigbjjkloabo [2019-12-30]
OPR Extension: (Avira Password Manager) - C:\Users\wobro\AppData\Roaming\Opera Software\Opera Stable\Extensions\ngohaaocccbohaffogpbgfpmpgbcgccg [2019-12-30]
OPR Extension: (Free Avira Phantom VPN – Unblock Websites) - C:\Users\wobro\AppData\Roaming\Opera Software\Opera Stable\Extensions\pcgkmkjdikhiodinhloioejnpjgmfigd [2019-12-30]

==================== Dienste (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 SonosLibraryService; C:\Program Files (x86)\Sonos\SonosLibraryService.exe [28160 2020-09-09] () [Datei ist nicht signiert]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe [2467088 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe [128376 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert]
R3 GeneStor; C:\WINDOWS\System32\drivers\GeneStor.sys [181824 2019-12-27] (GENESYS LOGIC, INC. -> Genesys Logic)
S3 optousb; C:\WINDOWS\system32\DRIVERS\optousb.sys [27264 2013-03-11] (Microsoft Windows Hardware Compatibility Publisher -> OPTO ELECTRONICS CO.,LTD.)
S3 optovcm; C:\WINDOWS\system32\DRIVERS\optovcm.sys [34432 2013-03-11] (Microsoft Windows Hardware Compatibility Publisher -> OPTO ELECTRONICS CO.,LTD.)
R1 RrNetCapFilterDriver; C:\WINDOWS\system32\DRIVERS\RrNetCapFilterDriver.sys [34608 2019-01-30] (Audials AG -> Audials AG)
S3 tbhsd; C:\WINDOWS\system32\drivers\tbhsd.sys [57648 2019-01-30] (Audials AG -> RapidSolution Software AG)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-11-06] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429288 2020-11-06] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2020-11-06] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat (erstellte) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2020-11-08 11:12 - 2020-11-08 11:12 - 000000008 __RSH C:\ProgramData\ntuser.pol
2020-11-08 11:11 - 2020-11-08 11:11 - 000019024 _____ C:\Users\wobro\Desktop\Fixlog.txt
2020-11-08 09:48 - 2020-11-08 09:49 - 000032480 _____ C:\Users\wobro\Desktop\Addition.txt
2020-11-08 09:47 - 2020-11-08 11:14 - 000011109 _____ C:\Users\wobro\Desktop\FRST.txt
2020-11-08 09:47 - 2020-11-08 11:14 - 000000000 ____D C:\FRST
2020-11-08 09:47 - 2020-11-08 09:46 - 002298368 _____ (Farbar) C:\Users\wobro\Desktop\FRST64.exe
2020-11-08 09:41 - 2020-11-08 09:41 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-11-08 09:41 - 2020-11-08 09:41 - 000000997 _____ C:\Users\Public\Desktop\Firefox.lnk
2020-11-08 09:41 - 2020-11-08 09:41 - 000000997 _____ C:\ProgramData\Desktop\Firefox.lnk
2020-11-08 09:41 - 2020-11-08 09:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2020-11-08 09:40 - 2020-11-08 11:06 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-11-07 09:18 - 2020-11-07 09:18 - 000001083 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2020-11-07 09:18 - 2020-11-07 09:18 - 000001083 _____ C:\ProgramData\Desktop\Revo Uninstaller.lnk
2020-11-07 09:18 - 2020-11-07 09:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2020-11-07 09:18 - 2020-11-07 09:18 - 000000000 ____D C:\Program Files\VS Revo Group
2020-11-07 08:52 - 2020-11-07 08:52 - 001098933 _____ C:\Users\wobro\Downloads\eprimo_nachricht_18018084.pdf
2020-11-05 21:52 - 2020-11-05 21:52 - 000062047 _____ C:\Users\wobro\Downloads\Briefmarken.1Stk.05.11.2020_2152.pdf
2020-11-05 21:49 - 2020-11-05 21:49 - 000042537 _____ C:\Users\wobro\Downloads\TicketReturn.pdf
2020-11-03 11:47 - 2020-11-03 11:47 - 000051105 _____ C:\Users\wobro\Downloads\Konto_755079-Auszug_2020_010.PDF
2020-10-23 16:32 - 2020-10-23 16:32 - 000078124 _____ C:\Users\wobro\Downloads\20201023_5490_9047_Robin_Weber.PDF
2020-10-18 15:50 - 2020-10-18 15:50 - 000045268 _____ C:\Users\wobro\Downloads\Briefmarken.1Stk.18.10.2020_1650.pdf
2020-10-17 08:17 - 2020-10-17 08:17 - 032612336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 031598928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 026273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 024264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 023448576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 019870208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 018767360 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 018080768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 011498496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 009499136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 008897752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 008226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007765504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007616000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007534680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007099904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 006421504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 005998616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 005820416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 005337504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004828672 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004783832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004523008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004433640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004363840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004314624 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004281856 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004275712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 003664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 003376840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 003335680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-10-17 08:17 - 2020-10-17 08:17 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-10-17 08:17 - 2020-10-17 08:17 - 002689024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002520056 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002425144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002398720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002267424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001812872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001721856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001681408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001618152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001557816 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 001545848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001541224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001449472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001418752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001344512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001342976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001255744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 001238528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001234432 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 001185864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001062400 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001003336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000977920 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000961704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000920888 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000884736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000863744 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000837120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000805168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000804352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000800072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000773712 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000760640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000747312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000688960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000688128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000684832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000627712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000607336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000578424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000547328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000530912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000521096 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmdial32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000482304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000416864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000413232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000407872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizeng.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000377344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000329528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PktMon.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000329504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000303288 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.FileExplorer.Common.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000275288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shlwapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-10-17 08:17 - 2020-10-17 08:17 - 000224576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000218936 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mlang.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-10-17 08:17 - 2020-10-17 08:17 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\net1.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.HardwareId.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netprofm.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000171568 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000171440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xmllite.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupcln.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000166280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasman.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\net1.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000143056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000142008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000135496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxlib.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvEmulation.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\logman.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000118584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\migisol.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000117056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000111024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\provmigrate.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000104248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PktMon.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2020-10-17 08:17 - 2020-10-17 08:17 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logman.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000095552 _____ (Microsoft Corporation) C:\WINDOWS\system32\vid.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000095024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edputil.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000093112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpnsp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbssysprep.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MuiUnattend.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spinf.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\auditpolcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provmigrate.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pnrpnsp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MitigationConfiguration.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntlanman.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptext.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\auditpolcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000058848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000057144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmLpac.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\relog.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\typeperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.SecurityMitigationsBroker.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\relog.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapprovp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\typeperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\auditpol.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.SecurityMitigationsBroker.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000039720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iri.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000037688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininitext.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dusmapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winrnr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\auditpol.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpupdate.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000027320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\version.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\drprov.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\npmproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hid.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiougc.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpupdate.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\linkinfo.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secur32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscdll.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davhlpr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000021312 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ktmw32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drprov.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EsdSip.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmsprep.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wowreg32.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmiso8601utils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000009279 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-10-17 08:17 - 2020-10-17 08:17 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\normaliz.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3r.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 017542144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 014758400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 010841400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 010336904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 008009880 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 007986616 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 007632808 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 007266128 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006365280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006204928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006195712 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006070904 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005998616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005871560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005783288 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005431000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005371544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005057024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004752896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004732928 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004645368 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004629320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 004590560 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 004517376 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004025344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Controls.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004012688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 003917824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003893248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003858944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003821072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003815936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 003811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003779392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 003750912 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003706880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003537520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003506480 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003493888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Controls.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003436544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003386368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003307008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003305984 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003232056 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 003134464 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003066880 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002983736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 002978816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002942976 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 002920304 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002873344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002827776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002809776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002757120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 002648576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002634112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002621720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002607104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002592056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002568704 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002541568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002503520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002485928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002451968 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002428416 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002377728 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 002322304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002318336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002250240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002206208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002189824 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002179584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002178600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002107872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002104320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002024248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002007352 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001978664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001963752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001963712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001954816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001952256 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001932760 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001883696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001871272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001837568 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001836544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001827840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001827128 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001822256 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-10-17 08:16 - 2020-10-17 08:16 - 001784480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001765888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001765184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001751952 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001730048 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001715200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001695760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001695728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001673728 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001663136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001650176 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001641960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001598032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001590072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001563520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001554624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001531904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001526272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001515520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001509728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001478464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 001468928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001456640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001450304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001434624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001414656 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001411552 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001400208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001393472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-10-17 08:16 - 2020-10-17 08:16 - 001391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001389352 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001361920 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001360936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001337696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001333248 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001330688 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001324032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001315640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001280312 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001277952 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001276928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001255424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001253624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001240064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001237536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001228800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001212696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001212232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001210120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001198296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001192096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001182520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001181208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2020-10-17 08:16 - 2020-10-17 08:16 - 001160192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001148416 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001146368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001141984 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001140736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001137472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001128536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001111040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001108288 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001104896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001092392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001089856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 001070400 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001068640 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001068352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 001047432 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001044880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001042432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001033496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001025768 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001021096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001011768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001001984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001000408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000995128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Facilitator.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000994256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000988008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000979768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000979272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000978768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000972288 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000969728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000966864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000964264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000956216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000942408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000939448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000937472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000934400 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000924528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000913776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000907776 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000907448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000903984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000891472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000885248 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000882136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000873272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000872776 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000860672 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000859400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000857088 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000852288 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000844984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000843896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000843264 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000831032 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000828432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000821056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000809272 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000803328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000797448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000788168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000783992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000782656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000779360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000775480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000775256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000764976 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000763904 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000763328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000763192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000761280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000759296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000756680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000756656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000751496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000748360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000747520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000725600 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000708088 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000705560 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000705008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000698280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000686408 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000676096 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000672976 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatq.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000672064 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000660592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntimewindows.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000645120 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000644576 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\UiaManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000637360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000635832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000634760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000634696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000632544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntime.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000630096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000628120 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000624480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000606880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000605696 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000603464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000603448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000602432 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000602192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000598336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000594464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000586792 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000586048 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000585704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000583616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000583608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdial32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000578376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000577952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-10-17 08:16 - 2020-10-17 08:16 - 000560376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp110_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000548544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000546976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000539264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000537696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000529208 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000528904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000523712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000521016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UiaManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000508720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000507192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000504552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clbcatq.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000502584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-10-17 08:16 - 2020-10-17 08:16 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000495840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000488104 _____ (Microsoft Corporation) C:\WINDOWS\system32\coml2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000488064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000487048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000482104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000477512 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000475696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000474424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000473600 _____ (Microsoft Corporation) C:\WINDOWS\system32\HrtfApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000469920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000459264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
         

Alt 08.11.2020, 11:22   #7
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



FRST Teil 2
Code:
ATTFilter
2020-10-17 08:16 - 2020-10-17 08:16 - 000454968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000454016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000429712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000427200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000425272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-10-17 08:16 - 2020-10-17 08:16 - 000420936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000420456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000419432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000418800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000418416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000414200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000411448 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000410064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000408000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp110_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000403384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wbemcomn.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000401728 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000397728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000395592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShellCommonCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000389432 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000385240 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000384512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000383488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000382728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.FileExplorer.Common.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000377856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000376032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coml2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000374496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000374080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000374072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000371376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000361040 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000354344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000352784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000351200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HrtfApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000342424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shlwapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000337768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AarSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000333144 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000332600 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000326656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000318736 _____ (Microsoft Corporation) C:\WINDOWS\system32\capauthz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000311920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000305272 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000297984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000295464 _____ (Microsoft Corporation) C:\WINDOWS\system32\powrprof.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000293864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000293184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000288672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000287680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000287544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000286016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000271664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000270640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000268080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powrprof.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000260928 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000260816 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000259264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000258880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdscore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsldpc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000253008 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000252616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\capauthz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000249664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinREAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mlang.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuceffects.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\fidocredprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000241144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000230904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000230728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000230392 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000229176 _____ (Microsoft Corporation) C:\WINDOWS\system32\convertvhd.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000228152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.System.UserProfile.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000225088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000219016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000218112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000216376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msls31.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000215352 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSrv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000213344 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000211736 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsldpc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000208696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000207608 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NetAdapterCx.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000207168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdscore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000207160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000203544 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000198792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB7.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000196784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000195232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000195136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000191656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntmarta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000190976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Winlangdb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000190040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fidocredprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000186472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000185912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000185448 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptnet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000181048 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000180040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000180032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000176656 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmidcom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000176448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000175608 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47mrm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000173016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuceffects.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageOverlayUtil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000171992 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000171024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000167888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000166200 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000165376 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000164232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000163216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000162704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161672 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pacer.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidpolicyconverter.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000160064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000160056 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000157024 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000155976 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000155960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000153376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000152904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntmarta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000152376 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadWamExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000151864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000149272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DSCache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000147264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000147232 _____ (Microsoft Corporation) C:\WINDOWS\system32\cabinet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000147200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000146232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000146216 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\eShims.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTWorkQ.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145208 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Winlangdb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000143096 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000141008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000141008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000139960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000137896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmidcom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000136328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptnet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000134976 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000134800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LanguageOverlayUtil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000133744 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000133440 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000132736 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000130128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000128616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47mrm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSAssessment.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000126024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000122392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevDispItemProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000119608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadWamExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cabinet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000118584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000117800 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000117216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000116536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DSCache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000115192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000115008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetDriverInstall.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2020-10-17 08:16 - 2020-10-17 08:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2020-10-17 08:16 - 2020-10-17 08:16 - 000111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000110008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkQoSPolicyCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000109504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000108352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000107416 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000107376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MuiUnattend.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000103288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuntimeBroker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2020-10-17 08:16 - 2020-10-17 08:16 - 000102720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevDispItemProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.ServiceHostBuilder.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000099656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\atl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097672 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097088 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsCtfMonitor.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000096032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\spinf.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000095496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000093488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000092960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000090432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000090408 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcEpMap.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MitigationConfiguration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000083744 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\samcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\colbact.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082176 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\execmodelproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetDriverInstall.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\bfsvc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\deploymentcsps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000076976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000076952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spopk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\djoin.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.ServiceHostBuilder.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncobjapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\TempSignedLicenseExchangeTask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsCtfMonitor.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000071784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcacli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070968 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NapiNSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000069752 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068408 _____ (Microsoft Corporation) C:\WINDOWS\system32\virtdisk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\threadpoolwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\colbact.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wtsapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mskeyprotect.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000064824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000064072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PnPUnattend.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000061960 _____ (Microsoft Corporation) C:\WINDOWS\system32\coloradapterclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000061752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguageProfileCallback.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000060464 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000059448 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncobjapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc_os.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\virtdisk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\tokenbinding.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000057664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000057360 _____ (Microsoft Corporation) C:\WINDOWS\system32\svchost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\threadpoolwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagnosticdataquery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcacli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NapiNSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\amsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mmcss.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000052672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wtsapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ResourcePolicyClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000051120 _____ (Microsoft Corporation) C:\WINDOWS\system32\iri.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sfc_os.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mskeyprotect.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmiclnt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrnr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Websocket.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IndirectKmd.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000047016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\svchost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000046392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coloradapterclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguageProfileCallback.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\execmodelproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000042328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000041816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\atlthunk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmiclnt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tokenbinding.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\hid.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Websocket.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32topl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000035640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000034152 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnscacheugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000033064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltLib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\linkinfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000031528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031496 _____ (Microsoft Corporation) C:\WINDOWS\system32\version.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltMC.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.TimeBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsparse.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030480 _____ (Microsoft Corporation) C:\WINDOWS\system32\avrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxstrace.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000029456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsrole.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\secur32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000028360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32topl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\davhlpr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000027848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fltLib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000027336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\avrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbtugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000026608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IntelTA.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000025848 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\httpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.TimeBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ktmw32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fltMC.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000024296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerEnc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000024288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsrole.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregtask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsparse.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemEventsBrokerClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mobilenetworking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000021312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000021280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidtel.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000020640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerEnc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshqos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasacd.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000020160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000019776 _____ (Microsoft Corporation) C:\WINDOWS\system32\backgroundTaskHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000019256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dllhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000019144 _____ (Microsoft Corporation) C:\WINDOWS\system32\psapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsregtask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mobilenetworking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wowreg32.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000017728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\backgroundTaskHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000017600 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrss.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000017016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshqos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmsgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmiso8601utils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsiproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSHTCPIP.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wship6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfoext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000011784 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000011272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sfc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wship6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSHTCPIP.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUS.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUS.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\normaliz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shimeng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneServiceRes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3r.dll
2020-10-13 18:03 - 2020-10-13 18:03 - 000062054 _____ C:\Users\wobro\Downloads\Briefmarken.1Stk.13.10.2020_1903.pdf
2020-10-11 17:33 - 2020-11-04 17:36 - 000000000 ____D C:\AdwCleaner
2020-10-11 09:19 - 2020-10-11 09:19 - 008447152 _____ (Malwarebytes) C:\Users\wobro\Desktop\adwcleaner_8.0.8.exe

==================== Ein Monat (geänderte) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2020-11-08 11:13 - 2019-01-04 19:36 - 000000000 ____D C:\Users\wobro\AppData\LocalLow\Mozilla
2020-11-08 11:12 - 2020-10-04 11:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-11-08 11:12 - 2020-10-04 11:53 - 000008192 ___SH C:\DumpStack.log.tmp
2020-11-08 11:12 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-11-08 11:12 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-11-08 11:12 - 2019-01-04 19:09 - 000000000 __SHD C:\Users\wobro\IntelGraphicsProfiles
2020-11-08 11:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2020-11-08 11:11 - 2018-09-29 20:03 - 000000000 ____D C:\ProgramData\Package Cache
2020-11-08 11:11 - 2018-04-12 00:38 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2020-11-08 11:09 - 2020-10-04 12:03 - 001722998 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-11-08 11:09 - 2019-12-07 15:50 - 000743546 _____ C:\WINDOWS\system32\perfh007.dat
2020-11-08 11:09 - 2019-12-07 15:50 - 000149968 _____ C:\WINDOWS\system32\perfc007.dat
2020-11-08 11:09 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2020-11-08 11:09 - 2019-01-04 19:57 - 000000000 ____D C:\Users\wobro\AppData\Local\Google
2020-11-08 11:09 - 2019-01-04 19:57 - 000000000 ____D C:\Program Files (x86)\Google
2020-11-08 10:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-11-08 09:44 - 2019-02-06 20:32 - 000000000 ____D C:\ProgramData\Mozilla
2020-11-08 09:42 - 2018-09-29 20:39 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-11-08 09:41 - 2020-10-04 11:59 - 000003688 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-11-08 09:41 - 2020-10-04 11:59 - 000003464 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-11-08 09:41 - 2019-01-04 19:36 - 000000000 ____D C:\Users\wobro\AppData\Roaming\Mozilla
2020-11-08 09:41 - 2019-01-04 19:36 - 000000000 ____D C:\Users\wobro\AppData\Local\Mozilla
2020-11-08 08:46 - 2020-10-04 10:39 - 000000699 _____ C:\Users\wobro\Desktop\ESET Online Scanner.lnk
2020-11-08 08:46 - 2020-10-04 10:38 - 000000827 _____ C:\Users\wobro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-11-07 22:44 - 2019-01-04 20:55 - 000000000 ____D C:\ProgramData\Sonos,_Inc
2020-11-07 09:47 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-11-07 09:43 - 2020-10-01 18:11 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2020-11-07 08:45 - 2020-10-04 11:53 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-11-06 18:47 - 2019-01-04 21:03 - 000000000 ____D C:\Users\wobro\AppData\Local\Spotify
2020-11-06 18:34 - 2019-01-04 20:46 - 000000000 ____D C:\Users\wobro\AppData\Roaming\Spotify
2020-11-06 08:47 - 2018-09-29 19:58 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-11-04 17:28 - 2020-10-04 10:38 - 015012440 _____ (ESET spol. s r.o.) C:\Users\wobro\Downloads\esetonlinescanner.exe
2020-11-04 17:23 - 2019-01-06 15:23 - 000000000 ____D C:\Users\wobro\AppData\Roaming\vlc
2020-11-04 10:12 - 2020-04-18 13:22 - 000000000 ____D C:\Users\wobro\AppData\Roaming\TIDAL
2020-11-01 16:25 - 2020-10-04 01:21 - 000000000 ___DC C:\WINDOWS\Panther
2020-10-30 15:02 - 2019-01-04 19:54 - 000795000 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2020-10-29 16:09 - 2020-10-04 11:59 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1677736377-56833510-259484278-1001
2020-10-29 16:09 - 2020-10-04 10:54 - 000002424 _____ C:\Users\wobro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-10-29 16:09 - 2019-01-04 19:11 - 000000000 ___RD C:\Users\wobro\OneDrive
2020-10-23 18:44 - 2020-04-18 13:22 - 000000000 ____D C:\Users\wobro\AppData\Local\TIDAL
2020-10-17 10:04 - 2020-10-04 11:53 - 000284664 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-10-17 10:03 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2020-10-17 08:19 - 2019-12-07 15:54 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2020-10-17 08:19 - 2019-12-07 15:54 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2020-10-17 08:19 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp

==================== SigCheck ============================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

==================== Ende von FRST.txt ========================
         
Addition
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 06-11-2020
durchgeführt von wobro (08-11-2020 11:14:57)
Gestartet von C:\Users\wobro\Desktop
Windows 10 Home Version 2004 19041.572 (X64) (2020-10-04 11:00:01)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-1677736377-56833510-259484278-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1677736377-56833510-259484278-503 - Limited - Disabled)
Gast (S-1-5-21-1677736377-56833510-259484278-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1677736377-56833510-259484278-504 - Limited - Disabled)
wobro (S-1-5-21-1677736377-56833510-259484278-1001 - Administrator - Enabled) => C:\Users\wobro

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

7-Zip 18.06 (x64) (HKLM\...\7-Zip) (Version: 18.06 - Igor Pavlov)
Audials (HKLM-x32\...\{77CED785-A1A4-4F4F-B0DD-4FC2F33F6A56}) (Version: 19.1.6.0 - Audials AG)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Canon MP270 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP270_series) (Version:  - )
CyberLink PowerDVD 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.8216.01 - CyberLink Corp.)
Epic Games Launcher (HKLM-x32\...\{50D3E17D-0AFC-4617-AB00-DDE3099545FA}) (Version: 1.1.183.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1818.12.0.1130 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.4973 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 16.0.2.1086 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.49.166.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{df682aff-4294-4ad1-aaa7-276931d5781f}) (Version: 1.49.166.0 - Intel Corporation) Hidden
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00001050-0200-1031-84C8-B8D95FA3C8C3}) (Version: 20.50.1 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{55d73ea7-6354-42db-8831-02d048ae57f8}) (Version: 10.1.17541.8066 - Intel(R) Corporation) Hidden
Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{2D79E334-B178-45B9-A2A6-7A60A084C268}) (Version: 16.8.0.1000 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{1e9d8bcf-827c-4e01-a82f-86e201de2a84}) (Version: 20.50.3 - Intel Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 85.0.564.68 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.137.99 - )
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.7969.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\OneDriveSetup.exe) (Version: 20.169.0823.0008 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 82.0.2 (x64 de) (HKLM\...\Mozilla Firefox 82.0.2 (x64 de)) (Version: 82.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 82.0.2 - Mozilla)
Mozilla Thunderbird 78.4.1 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 78.4.1 (x86 de)) (Version: 78.4.1 - Mozilla)
Opticon USB Drivers Installer (HKLM-x32\...\Opticon USB Installer) (Version:  - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.26.328.2018 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8425 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.1.0 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.1.0 - VS Revo Group, Ltd.)
ScanClient 3.4 (HKLM-x32\...\ScanClient_is1) (Version:  - GfK SE)
Sonos Controller (HKLM-x32\...\{7BBA9BF8-05DF-47D8-8880-82A9B99505B9}) (Version: 57.3.81090 - Sonos, Inc.)
Spotify (HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\Spotify) (Version: 1.1.45.621.gdddebadc - Spotify AB)
TIDAL (HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\TIDAL) (Version: 2.23.0 - TIDAL Music AS)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{B2E25355-C24E-4E7D-8AD3-455D59810838}) (Version: 2.57.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-3) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-4) (Version: 1.0.65.1 - LunarG, Inc.) Hidden

Packages:
=========
Acer Collection S -> C:\Program Files\WindowsApps\AcerIncorporated.AcerCollectionS_1.0.3004.0_x64__48frkmn4z8aw4 [2019-01-04] (Acer Incorporated)
Acer Product Registration -> C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3013.0_x64__48frkmn4z8aw4 [2019-12-10] (Acer Incorporated)
Care Center -> C:\Program Files\WindowsApps\AcerIncorporated.AcerCareCenter_3.0.3007.0_x64__48frkmn4z8aw4 [2018-09-29] (Acer Incorporated)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa [2020-10-22] (Apple Inc.) [Startup Task]
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-13] (Microsoft Corporation) [MS Ad]
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Movie & Audio Studio -> C:\Program Files\WindowsApps\MAGIXSoftwareGmbH.MovieAudioStudio_1.1.4.0_x64__awcgk3qbzve1y [2018-09-29] (MAGIX Software GmbH)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2020-07-20] (Netflix, Inc.)
PhotoDirector for acer -> C:\Program Files\WindowsApps\CyberLinkCorp.ac.PhotoDirectorforacerDesktop_8.0.5229.0_x64__ypz87dpxkv292 [2019-06-12] (CYBERLINK COM CORP)
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_3.21.1.0_x64__nfy108tqq3p12 [2020-08-26] (Thumbmunkeys Ltd)
PowerDirector for acer -> C:\Program Files\WindowsApps\CyberLinkCorp.ac.PowerDirectorforacerDesktop_14.0.4304.0_x64__ypz87dpxkv292 [2018-09-29] (CYBERLINK COM CORP)
QuickAccess -> C:\Program Files\WindowsApps\AcerIncorporated.QuickAccess_3.0.3009.0_x64__48frkmn4z8aw4 [2019-10-05] (Acer Incorporated)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.2.169.0_x64__dt26b99r8h8gj [2019-06-17] (Realtek Semiconductor Corp)
User Experience Improvement Program -> C:\Program Files\WindowsApps\AcerIncorporated.UserExperienceImprovementProgram_4.0.3002.0_x64__48frkmn4z8aw4 [2019-01-04] (Acer Incorporated)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

ShellIconOverlayIdentifiers: [  OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [Datei ist nicht signiert] [Datei wird verwendet]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Keine Datei
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Keine Datei
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [Datei ist nicht signiert] [Datei wird verwendet]
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> Keine Datei
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Keine Datei
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> Keine Datei
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\igfxDTCM.dll [2018-03-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Keine Datei
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Keine Datei

==================== Codecs (Nicht auf der Ausnahmeliste) ====================

==================== Verknüpfungen & WMI ========================

==================== Geladene Module (Nicht auf der Ausnahmeliste) =============

2019-01-06 15:14 - 2018-12-30 08:00 - 000077824 _____ (Igor Pavlov) [Datei ist nicht signiert] C:\Program Files\7-Zip\7-zip.dll
2018-12-03 21:19 - 2018-12-03 21:19 - 000126976 _____ (Intel Corporation) [Datei ist nicht signiert] C:\Program Files\Intel\OptaneShellExtensions\iaStorAfsServiceApi.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================

==================== Internet Explorer (Nicht auf der Ausnahmeliste) ==========

HKU\S-1-5-21-1677736377-56833510-259484278-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer17win10.msn.com/?pc=ACTE
HKU\S-1-5-21-1677736377-56833510-259484278-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE

==================== Hosts Inhalt: =========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2018-04-12 00:38 - 2020-11-08 11:11 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1       localhost

2019-07-23 23:56 - 2019-07-23 23:57 - 000000445 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Andere Bereiche ===========================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\nodejs\
HKU\S-1-5-21-1677736377-56833510-259484278-1001\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
 ist aktiviert.

Network Binding:
=============
Ethernet: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) 
WLAN: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) 

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

HKLM\...\StartupApproved\Run: => "ACPW13DE"
HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\StartupApproved\Run: => "Amazon Photos"
HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\StartupApproved\Run: => "ACDSeeCommanderPro13"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Wiederherstellungspunkte =========================


==================== Fehlerhafte Geräte im Gerätemanager ============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Fehlereinträge in der Ereignisanzeige: ========================

Applikationsfehler:
==================
Error: (11/08/2020 11:12:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname DESKTOP-UG2PJTF.local already in use; will try DESKTOP-UG2PJTF-2.local instead

Error: (11/08/2020 11:12:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister    4 DESKTOP-UG2PJTF.local. Addr 192.168.2.110

Error: (11/08/2020 11:12:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.110:5353   16 DESKTOP-UG2PJTF.local. AAAA FD91:DAB6:A2B2:0001:CDB6:71AF:822B:FE6A

Error: (11/08/2020 11:12:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Resetting to Probing:   16 DESKTOP-UG2PJTF.local. AAAA FE80:0000:0000:0000:CDB6:71AF:822B:FE6A

Error: (11/08/2020 11:12:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.110:5353   16 DESKTOP-UG2PJTF.local. AAAA FD91:DAB6:A2B2:0001:CDB6:71AF:822B:FE6A

Error: (11/08/2020 11:12:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Resetting to Probing:    4 DESKTOP-UG2PJTF.local. Addr 192.168.2.110

Error: (11/08/2020 11:12:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.110:5353   16 DESKTOP-UG2PJTF.local. AAAA FD91:DAB6:A2B2:0001:CDB6:71AF:822B:FE6A

Error: (11/08/2020 11:03:52 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname DESKTOP-UG2PJTF.local already in use; will try DESKTOP-UG2PJTF-2.local instead


Systemfehler:
=============
Error: (11/08/2020 11:12:05 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\system32\IntelWifiIhv08.dll

Error: (11/08/2020 11:12:05 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\system32\IntelWifiIhv08.dll

Error: (11/08/2020 11:12:03 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\system32\IntelWifiIhv08.dll

Error: (11/08/2020 11:11:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Installer" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (11/08/2020 11:11:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (11/08/2020 11:11:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) Management and Security Application Local Management Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (11/08/2020 11:11:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (11/08/2020 11:11:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.


Windows Defender:
===================================
Date: 2020-11-07 09:07:31.6940000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {B67A64C1-F5D5-4762-A973-B54B70774B12}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-11-04 17:08:33.7710000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {B1376BB6-A7E6-4C91-ADC7-D64D4718364C}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-11-01 20:18:11.0120000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {859604C3-0355-4EAF-A893-44150BD74E85}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-10-31 17:48:15.3770000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {4A006C2D-DE53-406E-8DA1-B488B2D74611}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-10-30 20:29:48.1600000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {C08BB3AF-CB38-46A2-9DD0-9D76C43380EF}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

==================== Speicherinformationen =========================== 

BIOS: American Megatrends Inc R01-A3 05/16/2018
Hauptplatine: Acer Aspire XC-885
Prozessor: Intel(R) Core(TM) i3-8100 CPU @ 3.60GHz
Prozentuale Nutzung des RAM: 38%
Installierter physikalischer RAM: 8078.81 MB
Verfügbarer physikalischer RAM: 4994.18 MB
Summe virtueller Speicher: 9358.81 MB
Verfügbarer virtueller Speicher: 6449.73 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:118.12 GB) (Free:46.5 GB) NTFS
Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:855.74 GB) NTFS

\\?\Volume{93b290e0-403a-46a7-9fd6-06b31e72a107}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.56 GB) NTFS
\\?\Volume{c9f9707f-6bcc-49cc-8cfc-d917d3b36835}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32

==================== MBR & Partitionstabelle ====================

==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 65F4191F)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 9397DC32)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt =======================
         

Alt 08.11.2020, 11:40   #8
M-K-D-B
/// TB-Ausbilder
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



Gut gemacht.






Schritt 1
  • Schließe alle offenen Programme und Internet Browser, damit keine Daten verloren gehen.
  • Kopiere den gesamten Inhalt der folgenden Code-Box:
    Code:
    ATTFilter
    Start::
    C:\Users\AllUserName\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ondgniaopjjkjajdfglodnlekbciejpc
    ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Keine Datei
    ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Keine Datei
    ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> Keine Datei
    ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Keine Datei
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> Keine Datei
    ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Keine Datei
    ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Keine Datei
    StartBatch:
    FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}.xpi" RD /S /Q "%%a" )
    FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\c????????????????????????????????rx" RD /S /Q "%%a" )
    FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\x????????????????????????????????ml" RD /S /Q "%%a" )
    FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}" RD /S /Q "%%a" )
    FOR /D %%a IN ("%ProgramData%\Package Cache\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}" RD /S /Q "%%a" )
    EndBatch: 
    Reboot:
    End::
             
  • Starte nun FRST und klicke direkt den Reparieren Button.
    Wichtig: Du brauchst den Inhalt der Code-Box nirgends einfügen, da sich FRST den Code aus der Zwischenablage holt!
  • Das Tool führt die gewünschten Schritte aus und erstellt eine fixlog.txt im selben Verzeichnis, in dem sich FRST befindet.
  • Gegebenenfalls muss dein Rechner neu gestartet werden.
  • Poste mir den Inhalt der fixlog.txt mit deiner nächsten Antwort.





Schritt 2
  • Starte FRST erneut. Kopiere den Inhalt der folgenden Code-Box oben in das Suchfeld:
    Code:
    ATTFilter
    SearchAll: ondgniaopjjkjajdfglodnlekbciejpc;dbchccfceccngbeaacpaegllaaoakjni;nodejs
             
  • Klicke auf den Button Datei-Suche.
  • FRST beginnt mit dem Suchlauf. Das kann einige Zeit dauern, bitte gedulde dich!
  • Am Ende wird eine Textdatei Search.txt erstellt.
  • Poste mir deren Inhalt mit deiner nächsten Antwort.





Schritt 3
  • Starte FRST erneut. Vergewissere dich, dass vor Addition.txt ein Haken gesetzt ist und drücke auf Untersuchen.
  • FRST erstellt wieder zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.





Bitte poste mit deiner nächsten Antwort:
  • die Logdatei des FRST-Fix (fixlog.txt)
  • die Logdatei des FRST-Suchlaufs (Search.txt)
  • die beiden neuen Logdateien von FRST (FRST.txt und Addition.txt)

Alt 08.11.2020, 11:55   #9
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



Danke

FRST-Fix
Code:
ATTFilter
Entfernungsergebnis von Farbar Recovery Scan Tool (x64) Version: 06-11-2020
durchgeführt von wobro (08-11-2020 11:41:45) Run:2
Gestartet von C:\Users\wobro\Desktop
Geladene Profile: wobro
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
C:\Users\Default\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ondgniaopjjkjajdfglodnlekbciejpc
C:\Users\wobro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ondgniaopjjkjajdfglodnlekbciejpc
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Keine Datei
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Keine Datei
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> Keine Datei
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Keine Datei
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> Keine Datei
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Keine Datei
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Keine Datei
StartBatch:
FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}.xpi" RD /S /Q "%%a" )
FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\c????????????????????????????????rx" RD /S /Q "%%a" )
FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\x????????????????????????????????ml" RD /S /Q "%%a" )
FOR /D %%a IN ("%WINDIR%\Installer\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}" RD /S /Q "%%a" )
FOR /D %%a IN ("%ProgramData%\Package Cache\{????????-????-????-????-????????????}") DO ( IF EXIST "%%a\{????????-????-????-????-????????????}" RD /S /Q "%%a" )
EndBatch: 
Reboot:

*****************

"C:\Users\Default\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ondgniaopjjkjajdfglodnlekbciejpc" => nicht gefunden
C:\Users\wobro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ondgniaopjjkjajdfglodnlekbciejpc => erfolgreich verschoben
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => erfolgreich entfernt
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => erfolgreich entfernt
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => erfolgreich entfernt
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => erfolgreich entfernt
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => erfolgreich entfernt
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => erfolgreich entfernt
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => erfolgreich entfernt
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => erfolgreich entfernt

========= Batch: =========

========= Ende von Batch: =========



Das System musste neu gestartet werden.

==== Ende von Fixlog 11:41:45 ====
         
search Teil 1
Code:
ATTFilter
Farbar Recovery Scan Tool (x64) Version: 06-11-2020
durchgeführt von wobro (08-11-2020 11:43:57)
Gestartet von C:\Users\wobro\Desktop
Start-Modus: Normal

================== Datei-Suche: "SearchAll: ondgniaopjjkjajdfglodnlekbciejpc;dbchccfceccngbeaacpaegllaaoakjni;nodejs" =============

Datei:
========
C:\Users\wobro\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\https___nodejs_org_download_release_v6_10_3_docs_api_
[2020-11-03 11:29][2020-11-03 11:29] 000037014 _____ () F4D300B0BD343E1F12326A96EE562B87 [Datei ist nicht signiert]

C:\Users\wobro\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\http___nodejs_org_
[2020-11-03 11:29][2020-11-03 11:29] 000037014 _____ () F4D300B0BD343E1F12326A96EE562B87 [Datei ist nicht signiert]

C:\Users\wobro\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\{7C5A40EF-A0FB-4BFC-874A-C0F2E0B9FA8E}_nodejs_node_exe
[2020-11-03 11:29][2020-11-03 11:29] 000037014 _____ () D02C3A619CC4A5E5C38D3CD648A03996 [Datei ist nicht signiert]


Ordner:
========
2020-11-08 09:40 - 2020-11-08 09:40 _____ C:\FRST\Quarantine\C\Users\wobro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dbchccfceccngbeaacpaegllaaoakjni
2020-11-08 11:10 - 2020-11-08 11:10 _____ C:\FRST\Quarantine\C\Users\wobro\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ondgniaopjjkjajdfglodnlekbciejpc
2020-06-03 18:51 - 2020-06-03 18:51 _____ C:\FRST\Quarantine\C\Program Files (x86)\nodejs

Registry:
========

===================== Suchergebnis für "ondgniaopjjkjajdfglodnlekbciejpc" ==========

[HKEY_USERS\S-1-5-21-1677736377-56833510-259484278-1001\SOFTWARE\Microsoft\Edge\PreferenceMACs\Default\extensions.settings]
"ondgniaopjjkjajdfglodnlekbciejpc"="E028457E46FE3D07A69BD6397F99812A7F004994A58E4C431F77D935E31FA481"


===================== Suchergebnis für "dbchccfceccngbeaacpaegllaaoakjni" ==========


===================== Suchergebnis für "nodejs" ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\html\doc\cli\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\html\doc\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\html\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\is-safe-integer\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\keys\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\jodid25519\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\jodid25519\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\sntp\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\sntp\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\config-chain\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\config-chain\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\json-schema\draft-02\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\json-schema\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-package-data\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-package-data\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read\node_modules\mute-stream\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read\node_modules\mute-stream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\extsprintf\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\fill\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\is-fullwidth-code-point\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\string-width\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\test\fixtures\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\node_modules\isarray\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\from\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\hoek\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\abbrev\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\verror\tests\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\verror\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\text-table\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\text-table\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\node_modules\es6-iterator\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\reg-exp\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\console-control-strings\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\object\set-prototype-of\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\object\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\mkdirp\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\function\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\function\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\json-parse-helpfulerror\node_modules\jju\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\json-parse-helpfulerror\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\json-parse-helpfulerror\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\editor\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\editor\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\node_modules\generate-object-property\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\test\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\columnify\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\delegates\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\are-we-there-yet\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\reg-exp\#\unicode\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\reg-exp\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\reg-exp\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\node_modules\util-deprecate\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\debug\node_modules\ms\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\debug\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\debug\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\tanh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\reg-exp\#\replace\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\reg-exp\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\cmd-shim\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\man\man1\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\man\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\wide-align\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\wide-align\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\splice\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\lib\install\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\test\json-schema-draft4\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\commander\node_modules\graceful-readlink\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\commander\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\commander\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\tar\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\tar\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\chalk\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-package-data\test\fixtures\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\set-blocking\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\path-is-absolute\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\node_modules\process-nextick-args\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fs-write-stream-atomic\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fs-write-stream-atomic\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\test\slow\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\minimatch\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lockfile\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\node_modules\string_decoder\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\umask\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-installed\test\fixtures\grandparent-peer\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-installed\test\fixtures\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-installed\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-installed\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\sign\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fs-vacuum\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fs-vacuum\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-license\node_modules\spdx-expression-parse\node_modules\spdx-exceptions\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-license\node_modules\spdx-expression-parse\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-license\node_modules\spdx-expression-parse\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-license\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-license\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\pylib\gyp\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\pylib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\man\man7\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\pylib\gyp\generator\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\concat\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\are-we-there-yet\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\which\node_modules\isexe\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\which\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\which\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\osenv\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\osenv\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\node_modules\xtend\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\test\broken-under-nyc-and-travis\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\is-finite\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\lib\utils\completion\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\lib\utils\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\mkdirp\node_modules\minimist\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\mkdirp\node_modules\minimist\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\mkdirp\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\test\fixtures\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\node_modules\buffer-shims\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\entries\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\assert-plus\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\man\man5\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\imul\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\test\fixtures\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\columnify\node_modules\wcwidth\node_modules\defaults\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\columnify\node_modules\wcwidth\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\columnify\node_modules\wcwidth\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\columnify\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\object\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\html\doc\files\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\debuglog\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\@@iterator\"=""
         
search Teil 2
Code:
ATTFilter
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-installed\test\fixtures\extraneous-detected\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\node_modules\jsonpointer\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\minimatch\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\minimatch\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-name\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\combined-stream\node_modules\delayed-stream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\combined-stream\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\combined-stream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\assert-plus\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\are-we-there-yet\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\form-data\node_modules\asynckit\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\form-data\node_modules\asynckit\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\form-data\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\form-data\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\doc\cli\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\doc\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\values\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\semver\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\wide-align\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\mime-types\node_modules\mime-db\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\mime-types\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\mime-types\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\signal-exit\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\slide\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\slide\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-cache-filename\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\normalize\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\test\network\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\date\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\retry\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\retry\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\columnify\node_modules\wcwidth\node_modules\defaults\node_modules\clone\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\columnify\node_modules\wcwidth\node_modules\defaults\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\reg-exp\#\split\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\tough-cookie\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\tough-cookie\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\d\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\d\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\ansicolors\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\ansicolors\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\balanced-match\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\minimatch\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\minimatch\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\inherits\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\from\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\ends-with\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\tools\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\ini\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\lib\formats\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\aproba\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\node_modules\es6-iterator\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\osenv\node_modules\os-homedir\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\osenv\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\node_modules\number-is-nan\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\string-width\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\html\doc\misc\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\tar\node_modules\block-stream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\tar\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\node_modules\core-util-is\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\node_modules\core-util-is\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\lib\schemas\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._createcache\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-cmd-shim\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\object-assign\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\node_modules\util-deprecate\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\hypot\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\doc\misc\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\node_modules\isarray\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._bindcallback\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\from-code-point\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\mkdirp\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-package-arg\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\asap\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\reg-exp\#\unicode\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\code-point-at\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-install-checks\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-install-checks\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\function\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\node_modules\core-util-is\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\node-uuid\benchmark\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\node-uuid\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\promzard\example\npm-init\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\promzard\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\promzard\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\normalize\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\text-table\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\object-assign\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\sinh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\error\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\chownr\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\sorted-object\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\sorted-object\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\aws-sign2\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\are-we-there-yet\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\archy\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\archy\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\scripts\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\stringstream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\tar\node_modules\block-stream\bench\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\chalk\node_modules\supports-color\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\chalk\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\unpipe\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\concat\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\acosh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\json-schema\draft-04\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\isstream\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\node_modules\generate-object-property\node_modules\is-property\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\node_modules\generate-object-property\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\unique-filename\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\fstream-ignore\node_modules\minimatch\node_modules\brace-expansion\node_modules\balanced-match\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\fstream-ignore\node_modules\minimatch\node_modules\brace-expansion\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\fstream-ignore\node_modules\minimatch\node_modules\brace-expansion\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\fstream-ignore\node_modules\minimatch\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\fstream-ignore\node_modules\minimatch\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\fstream-ignore\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\fstream-ignore\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash.restparam\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\cmd-shim\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\node_modules\brace-expansion\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\code-point-at\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\balanced-match\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\retry\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\retry\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._baseuniq\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\lib\cache\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-package-data\node_modules\is-builtin-module\node_modules\builtin-modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-package-data\node_modules\is-builtin-module\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-package-data\node_modules\is-builtin-module\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-package-data\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\slice\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\qs\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\qs\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\epsilon\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\delegates\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\pinkie-promise\node_modules\pinkie\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\pinkie-promise\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\pinkie-promise\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\test\fixtures\config\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\filter\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\lib\install\action\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-package-data\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\lib\config\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\config-chain\node_modules\proto-list\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\config-chain\node_modules\proto-list\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\config-chain\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\string-width\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\tanh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\json-schema\draft-03\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\dezalgo\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\qs\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\has-color\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash.without\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\filter\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-user-validate\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-user-validate\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\node_modules\es6-iterator\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\unique-filename\node_modules\unique-slug\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\unique-filename\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\@@iterator\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\asn1\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\asn1\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\chalk\node_modules\has-ansi\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\json-stringify-safe\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\date\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\ansi-regex\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\nopt\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\tunnel-agent\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-git-url\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\json-schema\draft-03\examples\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\object\set-prototype-of\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\balanced-match\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\minimatch\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\retry\test\integration\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\retry\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\tools\emacs\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\path-is-inside\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\path-is-inside\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\@@iterator\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\set-blocking\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\node_modules\generate-function\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\trunc\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-installed\node_modules\util-extend\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-installed\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\iterable\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\test\fixtures\bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\hypot\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\promzard\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\log2\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\console-control-strings\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\imurmurhash\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\set-blocking\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\is-finite\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\log1p\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash.clonedeep\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\opener\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-package-arg\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\are-we-there-yet\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-license\node_modules\spdx-correct\node_modules\spdx-license-ids\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-license\node_modules\spdx-correct\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-license\node_modules\spdx-correct\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\caseless\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\a\x\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\a\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\reg-exp\#\match\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\node_modules\process-nextick-args\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\sha\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\once\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\of\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\node_modules\core-util-is\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\cbrt\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\node_modules\number-is-nan\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\"=""
         

Alt 08.11.2020, 11:57   #10
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



search Teil 3
Code:
ATTFilter
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\is-nan\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\node_modules\brace-expansion\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\atanh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\aws4\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\uid-number\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash.uniq\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\changelogs\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\hoek\test\modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\hoek\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\repeat\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-license\node_modules\spdx-expression-parse\node_modules\spdx-license-ids\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\log2\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\max-safe-integer\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\date\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\buildbot\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\tar\node_modules\block-stream\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\lib\dist-tags\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-tree\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\sign\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\has-unicode\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\fstream-ignore\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\imul\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\unique-filename\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\columnify\node_modules\wcwidth\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\map\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\is-safe-integer\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\slice\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\json-parse-helpfulerror\node_modules\jju\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\ecc-jsbn\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\signal-exit\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\dashdash\etc\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\dashdash\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\doc\wg-meetings\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\doc\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\is-typedarray\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\log10\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\boolean\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\test\fixtures\readmes\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\reg-exp\#\search\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\bcrypt-pbkdf\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\reg-exp\#\search\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\tools\Xcode\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\date\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\cryptiles\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\html\static\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\of\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\are-we-there-yet\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\graceful-fs\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\min-safe-integer\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\osenv\node_modules\os-tmpdir\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\forever-agent\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\tar\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\hoek\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\trunc\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\is-fullwidth-code-point\node_modules\number-is-nan\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\is-fullwidth-code-point\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\is-fullwidth-code-point\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\has-color\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\node_modules\isarray\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\strip-ansi\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\fs.realpath\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\asinh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream\examples\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\doc\wg-meetings\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\doc\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\rimraf\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\sntp\examples\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\inflight\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lockfile\test\fixtures\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lockfile\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\boom\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\boom\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\retry\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\node_modules\number-is-nan\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\path-is-absolute\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\realize-package-specifier\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\is-nan\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\delegates\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\asinh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\node_modules\util-deprecate\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\dist\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\find\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\asn1\tst\ber\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\asn1\tst\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\has-color\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\cosh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\reg-exp\#\sticky\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._cacheindexof\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\buildbot\commit_queue\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\jsbn\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\reg-exp\#\match\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\iferr\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\iferr\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\node_modules\string_decoder\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\fround\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\expm1\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\example\init\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\node_modules\process-nextick-args\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\node_modules\string_decoder\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\console-control-strings\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\reg-exp\#\replace\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\extend\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\starts-with\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\object\assign\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash.union\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\chalk\node_modules\escape-string-regexp\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\log10\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\find\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\cryptiles\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\oauth-sign\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._baseindexof\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\acosh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\asn1\lib\ber\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._baseuniq\node_modules\lodash._createset\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._baseuniq\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\verror\examples\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\unique-filename\node_modules\unique-slug\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\write-file-atomic\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\clz32\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\man\man1\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\man\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\retry\test\integration\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\delegates\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\node-uuid\bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\delegates\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\fill\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\ecc-jsbn\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\realize-package-specifier\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\path-is-absolute\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\expm1\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\cosh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\from-code-point\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\function\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\object\keys\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\wrappy\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\atanh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\epsilon\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\tweetnacl\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\json-schema\draft-00\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\wide-align\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\min-safe-integer\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\hosted-git-info\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\clz32\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\json-schema\draft-01\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\doc\files\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._baseuniq\node_modules\lodash._root\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-name\node_modules\builtins\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-name\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\images\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\typedarray\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\json-schema\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\is-fullwidth-code-point\node_modules\number-is-nan\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\is-fullwidth-code-point\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\is-fullwidth-code-point\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\getpass\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\mkdirp\bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\object\keys\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\nopt\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\test\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._getnative\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\object-assign\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\dezalgo\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\mkdirp\examples\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\bin\node-gyp-bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\semver\bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\@@iterator\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\node-uuid\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\object\assign\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\tar\examples\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\node_modules\brace-expansion\node_modules\balanced-match\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\error\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\error\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\ansistyles\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\raw\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\wide-align\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\repeat\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\data\win\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\data\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\tools\Xcode\Specifications\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\copy-within\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\sinh\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\copy-within\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\reg-exp\#\split\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\is-integer\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\starts-with\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\columnify\node_modules\wcwidth\docs\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\b\x\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\b\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\b\y\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-installed\test\fixtures\grandparent-peer-dev\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\retry\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\typedarray\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\keys\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\entries\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\reg-exp\#\sticky\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\form-data\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\is-fullwidth-code-point\node_modules\number-is-nan\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\is-fullwidth-code-point\node_modules\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\boom\images\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\cbrt\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\splice\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\max-safe-integer\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\raw\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\hoek\images\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\are-we-there-yet\test\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\are-we-there-yet\test\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\log1p\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\values\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\fround\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\map\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\contains\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\ends-with\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\@org\y\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\@org\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\is-integer\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\find-index\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\tools\emacs\testdata\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\chalk\node_modules\ansi-styles\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-cmd-shim\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\samples\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\cryptiles\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\find-index\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\node_modules\core-util-is\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\@org\x\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\boom\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\@scope\x\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\@scope\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\retry\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\combined-stream\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-installed\test\fixtures\extraneous-dev-dep\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\contains\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\extsprintf\examples\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\boolean\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\fstream-ignore\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\doc\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\json-schema\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-git-url\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\test\fixtures\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\combined-stream\node_modules\delayed-stream\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\signal-exit\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\typedarray\test\server\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\typedarray\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\ansistyles\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\archy\examples\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\iterable\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\node_modules\es6-iterator\test\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\extsprintf\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\which\node_modules\isexe\test\"=""
         

Alt 08.11.2020, 11:58   #11
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



search Teil 4
Code:
ATTFilter
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\json-stringify-safe\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\which\bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\umask\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\doc\wg-meetings\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\sntp\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\mkdirp\node_modules\minimist\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\lib\internal\streams\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\lib\internal\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\dashdash\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\nopt\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\@scope\y\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\verror\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readdir-scoped-modules\test\fixtures\a\y\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\src\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\nopt\examples\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\json-parse-helpfulerror\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\nopt\bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\wide-align\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\delegates\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\error\#\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\bin\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\node_modules\core-util-is\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\.github\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\getpass\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\qs\dist\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-name\test\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\node_modules\fstream-ignore\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\example\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\are-we-there-yet\test\lib\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0005936CA3FC17E4E8A9228EA5A36476]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream\lib\reader.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\000C10879FFDD7B46BCF30DD7CF4F50C]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\is-finite\implement.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\000E370A52B32894E9341636E8212905]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\read-json.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\000F33EFA73563F45A2FF3C5F17C6319]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\entries\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\001A57DC84AF8254BAFAEEB3D81586E1]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\number\min-safe-integer\is-implemented.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\001FB3E0B202F524E99E90B0D07A55CE]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\004CE4DDA2D0A6D458EA99850D8B7F56]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\ecc-jsbn\test.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0058FA0695DF27340AFA3E3CDFA7199E]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\getpass\LICENSE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0076E13B1E2D5854F99CD06E9B72541B]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\repeat\shim.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\007A74E2FD72A494B879A13E0F201969]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\node_modules\xtend\LICENCE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\007C1AA8231EA69499E14849E074F608]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\combined-stream\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\008AE6F4889FFFD4BBD084A0B310FAA0]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\minimatch\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0090C9AA25200C8489847A15BE10FCFF]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._createcache\LICENSE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0092C59C9FC1C6C44975D606C69798FF]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\node_modules\generate-object-property\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0092F1821647D9747BF02A89F6134612]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\has-color\readme.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00ADBAC5EDD7CCF4CAB9605BF3EF4BED]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\concat\is-implemented.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00B7FBCB04D08D745961E8CE913CB6D3]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\console-control-strings\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00B933DF7E369A14C8010CA61358C0DA]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00C5A609DDD32914DA17BC9C48480B0D]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\doc\cli\npm-restart.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00CACD52A0EA62B48AB68729FEA2398C]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream\lib\proxy-writer.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00D8ECF08EA96DF4C964120A452BAFB6]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\man\man7\npm-registry.7"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E435C7C95364D47AA1ACB4479371AA]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\network\outdated-symlink.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00F2904F078593F4BA3013342F6DE4CA]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\trunc\implement.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0192BD0A98C02864C801F08D54128C4B]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\fround\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\019AC0EDA7827984FBF4765B898805F0]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\LICENSE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\019F3E99AAA23B4478603699FFD60CEF]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\d\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01C608EAA9DBBF545B78253279C34120]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\tar\lib\parse.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01CCF0F65F9BECB4BA0DC4A91235E397]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\d\.npmignore"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01CF9B5E888ADAC49B210CE6E4A0132C]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\d\LICENCE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01D0076D0868E1D4D9A339B24E38C5AA]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\pinkie-promise\node_modules\pinkie\license"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01D20038114CBA345B8C44970D4C9393]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\LICENSE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01DE09CBB7CF91C409C2D6E69627C732]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\inherits\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01FD6CEC80E5B9F4F9BA17EB07EC1EAB]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\bitbucket-https-url-with-creds-package.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01FF638643580CF4995D2406E7F23BBB]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\lib\formats\rfc4253.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0206B31A2CCB1CB4B8FC0071ABC2F033]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\array\#\group.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\020E96F55A99A2A4483E1250373D2526]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\tools\emacs\run-unit-tests.sh"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0218CCE911EC6C140B70544CF95A28B9]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\cbrt\implement.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02290E3DE2B31EA418C38E920D74935A]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\test\00-setup.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0251F8B595142BA41B5F3E6FF079874E]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\validate-npm-package-name\node_modules\builtins\.travis.yml"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\026F3150225EBAD48BFDC1D9D7AEF927]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\ends-with\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0280B46FEAD175641B8A2DA83327AD93]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\scripts\gen-changelog"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0296B4717CAD09742B8F4E9338893818]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\LICENSE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02AD1FDF543A70F49AB082E87B7FC210]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\string-width\readme.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02BFEAD6084AA54449EAA6A5E9E482CC]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-installed\test\noargs.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02D5BB4A42A13E94B9C96B8F49DB7BC5]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\graceful-fs\graceful-fs.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02E3306CAEC6D964DB670285FB072F01]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\chalk\node_modules\has-ansi\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02E7DC8C3004F6748A5F190C85009FB8]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\html\doc\cli\npm-update.html"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F3045800E52A34291FF187B4A468AA]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\peer-deps-invalid.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02FEA0E24CE65944EA7810267C7777AF]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\chalk\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0302856E404238C4D93E5F0B2B0C5C7E]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\.travis.yml"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0309D1F20F474F94FBFDEEAE85F57A74]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\man\man1\npm-restart.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03103DC37CE5B5E4EAF2A3ADA38941B7]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\node_modules\verror\lib\verror.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03122477E27CDA54CA70B9C06FBD4F85]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\node_modules\isarray\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\031A117470A1935459DDA39EC9C615F5]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\node_modules\util-deprecate\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0322588F8C785B44588AB1C08755E7B2]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\log1p\is-implemented.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0362B497BBB57484F862641371405493]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\html\doc\cli\npm-docs.html"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0371BFCD44CACAF4EA76B41DCF3BFB12]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\test\json-schema-draft4\minItems.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03793D3CF24AD514695EFF6260D59D51]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\add-remote-git-get-resolved.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0385E0610DBEF9F4DA223391A82FE2E7]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\normalize-package-data\node_modules\is-builtin-module\node_modules\builtin-modules\license"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0388F6598A588C14DB8E7D8A355794FA]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\assert-plus\CHANGES.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03890036AA0EF7549940E225FA3F12C0]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\asap\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0389D4F8B7CBFCF49910247AFE53F6E1]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\starts-with\is-implemented.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03C3D635A5D4B0F47857912A4D7EE161]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\unit-deps-replaceModule.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03CCADBBB58339C4CA5B8AC15E5E7DE5]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\asn1\.travis.yml"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03D07899AF5476B4FA10995494BA08A7]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\tanh\shim.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03D7582070D61B745AF63FCE15F4E1DF]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\lib\find-node-directory.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03E8AF128194C4F489C0B46A4FCD0B73]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\retry\License"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\042E189E0A0E2C04CAF290CAE6465DBF]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\043EF163884A50C4588CCCACF89058A2]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0443C0D47E8298941A7CFA5A3E860464]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\LICENSE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04452F7E1A3528D4FAB47F53D9D7CF25]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\test\json-schema-draft4\anyOf.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0463B893DC811744BBBD145D6C83FB59]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\strip-ansi\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\046D9DA835E097140944A343F4CBDA11]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\man\man1\npm-run-script.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\048D8A7FC8D09C94AAC902F88E84F1CA]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\node_modules\util-deprecate\browser.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0490A630DB88D6B4E86B016E023C3DDD]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\lib\algs.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0497D2A5AAD0D7146B6E42842A987385]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\columnify\node_modules\wcwidth\node_modules\defaults\LICENSE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04A0049F30AA8B14BAFE3A6A39CBFDA2]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fs-vacuum\test\no-entries-file-no-purge.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04B7193ABF586EB4491CA4FDA7253468]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\cruft-test.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04D724081FDCB1643AAD62AB37AD78D2]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\html\index.html"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04E7B6A211431BB448B020C57332B5ED]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\ignore-install-link.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04EAED13CA7D1DD45B1BAE46C9B00C43]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\outdated-include-devdependencies.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0510C888F87EAF942832BE26753A4489]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\doc\cli\npm-search.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\05300FB4184CFA04FA4A51F13520FB9C]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\forever-agent\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\053CF54734F416240989217E2FAA6D88]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\lib\request.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0546B0AE66356EA4993776DF246588D3]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\node_modules\number-is-nan\readme.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\055469CB2621E784CBEF755685B13863]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\umask\test\simple.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0564936011C1A674E8CF12AF5A5EA31E]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\hoek\test\escaper.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\057AD2894798F74428743FF7B8FBD627]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\forever-agent\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\05890F8C7B104D94BAFC302E599A7B45]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\osenv\test\unix.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\058CC3A33BBEC654E8802B343F3C9776]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\delegates\test\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\05D586FB89612474BB659B992433FC4F]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\map\implement.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\05EB20F4B2A775C49A133B6335C57053]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\lib\ping.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\06142CA87EA65D04AB382ABABB1C6EF5]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\duplex.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0626B0DD67F13D742A6437C7D552FB23]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\are-we-there-yet\node_modules\delegates\.npmignore"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0635DDDFEB5C7D04586D87EC8D99FDAA]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\node_modules\glob\LICENSE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\06365CCC246C4F94EAD3AF3B4CFC6644]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\publish-access-scoped.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\06395B08B6943B64C848F629B4DEE50A]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\mime-types\node_modules\mime-db\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\06448D2A2FC7BAD4CA97F5BDAE9CDEEE]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\bcrypt-pbkdf\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0654D4ACC2E2034439811B29C8CEB019]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lodash._baseuniq\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\06594ABBBAFB80B428A46D2ABEA5CC1E]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\lib\logout.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0677334C943C5804CA23186FB9B2C2F7]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\raw\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\067C0D87726C86D449ED28EDDC187488]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\lib\install\access-error.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\069C3BF10F801F3459B4CFD0F650DC9B]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\common-tap.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\06A896FCD7701D34FB8F9C9374027E62]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\bl\node_modules\readable-stream\node_modules\isarray\test.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\06A9FDF0CE7424C49AF0FB4CEE7F8E40]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\pylib\gyp\generator\xcode.py"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\06AD80399F6479E459E2912924D01BA0]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\shrinkwrap-prod-dependency-also.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\06B4E61C666449549B89162F24D8D905]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\unpipe\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\071A1B622D255FB4F9073FF67F5100E5]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\@@iterator\shim.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0735BC4A6C5E4984F8B4772E27220FD9]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\atanh\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0736A4971E1B5B248B9377AC460F4FD0]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\ls-top-errors.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\075F21CAD5F9F004DBE278FD7D19279F]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\stringstream\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\076E807034375A34B9951F6FFD3802FB]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\fround\is-implemented.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\078AE68281F6D064B9CDDE1B54FA9AE3]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\glob\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07929ED7ACD960B469E3865608906C5C]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\prepublish.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07B2CA7663DAEBA45A180C72E35D99E1]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\retry\.npmignore"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07BBCD34FA11A37469955879C99966FD]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\object\map.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07DA0DBDB082E2145B3D348CC78F1201]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\object\validate-array-like.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07DB13A2944937E44ADE0734A0FC5B0D]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\locker.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0802C2BE17A224E4E8765A84D60DAF4C]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\html\doc\misc\npm-disputes.html"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080B2AEEB333BE44A96881A47E92B011]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\images\logo.png"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\081307AA1AF979F439490A98C637D1D7]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\gyp\OWNERS"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0828148F432F72E46A24CA1F5842FA7A]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\chalk\node_modules\ansi-styles\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\083F6F03034013E4F96387DB506AF4D2]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\function\identity.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\084EBC704EBDF424D8A142B513D367C0]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\doc\cli\npm-tag.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\086F91766B3065D4F9B23CD37CB1F4D7]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\math\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\087266DF4CC60E94089B0E9B6A9DCCEE]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\test\deprecate.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0879D30F65FE5C34BBE23674271AB16D]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\to-pos-integer.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08AC95C2FDBE490439B5E06DB5F73AE9]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\object\is.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08C5C5E42FCADB74C948C94C8015DB3A]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\test\json-schema-draft4\multipleOf.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08D03509E7C01A04582371C2A5267080]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\mkdirp\test\chmod.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08DEB031E7152C54FA038B9ACA51FFF3]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\test\config-defaults.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08DEB0D2DD4982E47BF109E697586EA3]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\test\is-symbol.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\090EFB0598E9F424BA671B831D92CC78]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\test\json-schema-draft4\additionalProperties.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\091077D7464240D4BB2243D002510E5D]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\hawk\node_modules\boom\LICENSE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0911E190B379F884F8B3E3FC0F0E2A21]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\tweetnacl\COPYING.txt"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0919720404F719E4E88D154B09AE4923]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\plumbing.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\092CC79369EA41548A795525F1AEA3D8]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\shrinkwrap-optional-dependency.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\09462654E61DF7742822B027657A735D]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\node_modules\is-my-json-valid\node_modules\generate-object-property\node_modules\is-property\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\09664C9A9B030A04595037D5F4A42B14]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\string-width\node_modules\code-point-at\node_modules\number-is-nan\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\09877573582E0C442BBD34BD20455547]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\fstream-npm\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\098B01DF360A24E4EA3536CCF2A20D45]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\mkdirp\test\race.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\09A607F1903F0FA41B0706104918F729]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\date\#\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\09ADD2CB872E06141965E90BE75BABD4]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\jsbn\example.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\09B436B3E78BCC2499F52EDFCA6830B0]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\promzard\test\validate.input"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\09EE7361004360A42828C832A3810E4E]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\minimatch\node_modules\brace-expansion\node_modules\concat-map\README.markdown"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\09F8EA176A964304B81098BB6646BB4F]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\imul\implement.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0A033121F3C3F524A8EE7C7F52C0381F]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-json\test\fixtures\readmes\README"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0A33F14C50773C24688765E44D5E43C7]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\npmlog\node_modules\gauge\node_modules\signal-exit\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0A709A1EB33FC64469F64E73068EB08F]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\html\doc\misc\removing-npm.html"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0AC0061B46339F847ACD9E3E57CB095B]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\object\find.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0AC1F207638B427429183D0389D2D5A1]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\string\#\indent.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0AC90A4547E82E248B72CAB02FF56F0A]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\math\trunc\is-implemented.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0ACA51379CB1CA34FA21487A2A1D8C76]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\date\valid-date.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0ADBE006AF9150F48882FFFCE762F8FF]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\install-cli-production-nosave.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0AE0CE9581BCE614CAB057BB13519F2E]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\test\dist-tags-rm.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0AF0E1C886D7BAA47B763893046CFC79]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\config-edit.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0AFE73CEF2A340A4D80E2A4C49DD1F55]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\number\is-integer\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B50F74445928AA4AAB840275B078057]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\sync.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B5996EA77E20D44582B2312FA03A1EF]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\implement.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B5BFD4B54B2D8F4DA66A241872D2A9C]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\opener\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B65434429E5BE34CB7CAFB2C261E57B]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\glob\node_modules\minimatch\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B6F51F19C3C91249815E5FD14580DF0]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\function\noop.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B8E5603DFF17E4459051256D7B38B3A]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\test\adduser-update.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B9CBBEDDF5E34D4B81CD8421D82A9AB]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\readable-stream\lib\_stream_passthrough.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BD7BFD0D9635894BA901177B81DC827]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\render-template.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BEAE04F0D28EE945A0ED7E0ED05B6BD]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\check-engine-reqs.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BECF0AF1DD1F6C489E10F8921DB469D]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\man\man1\npm-tag.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BF13B9282CF1E742A731E464AD7C49E]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\CHANGELOG.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BFD0A94EB0827A4A9F699FAB1D68A86]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\lib\install\report-optional-failure.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C2C98A1399AD1646B34C5E48437D887]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\npmlog\node_modules\gauge\node_modules\string-width\readme.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C3438DFA1F134444AACBAB5C8E28BD2]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\reg-exp\#\replace\is-implemented.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C370917D2D235148A6EA73E73F5D307]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\jsprim\lib\jsprim.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C43A6AA7E5AD5543B93BFA710A43898]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\object\flatten.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C502A2F3240AC74EB6385D216D781E1]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\extend\LICENSE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C751F870DA22E142938D8B75139EA15]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\lib\fetch-package-metadata.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C9C2D9CF18EAB148B674FA90B3B9DAE]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\aproba\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CA022AC49C489F469826A5F6E2858B6]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\http-signature\node_modules\sshpk\node_modules\asn1\tst\ber\writer.test.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CC95147A2C4E6640A79B05B250FF839]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\nopt\bin\nopt.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CDE861FB8B8251488315F2603D7862E]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\form-data\node_modules\asynckit\lib\defer.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CEF737048DCDB34E9760DA343295701]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\#\uncapitalize.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0D35761892CF20846A8FC279677173BD]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\map-to-registry.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0D455A0F445F7BC4BBFE5678627C0CFB]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\har-validator\lib\schemas\response.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0D56EC75DB46F354DB289F9638C7E833]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\init-package-json\node_modules\promzard\test\exports.input"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0D677ED50ECC7484CBD7BCBE4649E655]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\iterable\validate-object.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0D6B839EB2AB911499368906164AF5ED]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\concat-stream\node_modules\readable-stream\node_modules\string_decoder\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0D800AC02233F7A408BD53377110C77B]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\realize-package-specifier\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0D9F6997CFB67ED4098515110DF473BC]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\lockfile\lockfile.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DB8D341199C84A419E417C0BE84E3DF]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\config-meta.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DD8D4FF27A61E248919775E6C106073]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\function\#\copy.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DDFB8690AC68AE4898DB08574E4F62A]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\rm-linked.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DE01A48815605B4C8013A222CC7B700]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\request\node_modules\qs\lib\utils.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DE07BB133F5A494BBAE2BCE8DB3B882]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npmlog\node_modules\gauge\node_modules\wide-align\README.md"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DF4F31EB76FE6746B4C79260D696CFE]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\lib\install\is-registry-specifier.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E07E911CA0B90E49A45832DF86485FE]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\object\mixin-prototypes.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E093C490C5BF2F4DB8A8DBDA681EA1D]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\no-global-warns.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E30F25EF16194141AF37BC791DD5D79]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\lib\install\copy-tree.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3CD0910B899C64A9A45F21A649BB4C]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\object\is-array-like.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D26E8D2A1DB84796EC7E1DCB62E33]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\install-actions.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E4A077B64BF74942BDBABD460BEA3D9]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\d\package.json"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E60506E43CB189419CCFEF59F4D42BE]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\text-table\index.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E722271FBF92384EB758C399F16CBDD]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\npm-registry-client\node_modules\retry\lib\retry.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E772EA9C6237AB498B10703E51B90FA]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\array\#\@@iterator\is-implemented.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E8D2DF8680771549A3C6A54510169D0]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\read-package-tree\rpt.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0EA6F459431DB334AB3B11A95E9AE793]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\add-named-update-protocol-port.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0EB6558AC4DEB7E4A96FF786278B4E01]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\test\string\format-method.js"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0EC91ABCC36DF5C4C88F0AD2CC7F88D9]
"27AC50E0DD8DF2342ACC8800434A5877"="C:\Program Files (x86)\nodejs\node_modules\npm\test\tap\install-package-json-order.js"
         

Alt 08.11.2020, 11:59   #12
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



Search ewig lang ..
ich habe sie mal als 7z angehängt, ist das ok so?
Angehängte Dateien
Dateityp: 7z Search.7z (107,1 KB, 13x aufgerufen)

Geändert von wobrobber (08.11.2020 um 12:05 Uhr)

Alt 08.11.2020, 12:06   #13
M-K-D-B
/// TB-Ausbilder
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



Ja, passt so.

Fehlen nur noch FRST.txt und Addition.txt.

Alt 08.11.2020, 12:06   #14
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



FRST 1
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 06-11-2020
durchgeführt von wobro (Administrator) auf DESKTOP-UG2PJTF (Acer Aspire XC-885) (08-11-2020 11:47:51)
Gestartet von C:\Users\wobro\Desktop
Geladene Profile: wobro
Platform: Windows 10 Home Version 2004 19041.572 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: FF
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_8559c34713c70ce4\RstMwService.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2009.4.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12010.1001.3.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\NisSrv.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <6>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>

==================== Registry (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [833824 2019-01-31] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2018-02-13] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon MP270 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9X.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP270 series: C:\WINDOWS\system32\CNMLM9X.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {42FF6684-2898-4444-B82C-7C4E6F7FB279} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {68A8BD84-F9E1-477D-BBED-9A1830E889E5} - System32\Tasks\Oem\AcerJumpstartTask => C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe
Task: {6C8520B9-4073-477B-AF0B-D5E6314EE591} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [474368 2018-08-03] (Acer Incorporated -> Acer Incorporated)
Task: {784F08BD-CA1B-461F-8D36-75039B4FDDEE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {86262482-804F-414B-AF09-1A66431E500D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {889B71AA-4FF1-4AE9-A79E-B2944AB74D92} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [667856 2020-10-28] (Mozilla Corporation -> Mozilla Foundation)
Task: {A66AFA32-927A-436C-90B2-7583D7F061CE} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe
Task: {E4CB09E3-172B-401B-9FE3-5B194864BEA9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)


==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{98c45136-e5d5-43f7-8b10-ea1b25fbe759}: [DhcpNameServer] 192.168.2.1

Edge: 
======
Edge Profile: C:\Users\wobro\AppData\Local\Microsoft\Edge\User Data\Default [2020-11-08]

FireFox:
========
FF DefaultProfile: js4pzuw4.default
FF ProfilePath: C:\Users\wobro\AppData\Roaming\Mozilla\Firefox\Profiles\js4pzuw4.default [2020-11-08]
FF ProfilePath: C:\Users\wobro\AppData\Roaming\Mozilla\Firefox\Profiles\63u0l9x2.default-release [2020-11-08]
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)

Opera: 
=======
OPR Extension: (Avira Browser Safety) - C:\Users\wobro\AppData\Roaming\Opera Software\Opera Stable\Extensions\dalelnnofafalcmkmnhdbigbjjkloabo [2019-12-30]
OPR Extension: (Avira Password Manager) - C:\Users\wobro\AppData\Roaming\Opera Software\Opera Stable\Extensions\ngohaaocccbohaffogpbgfpmpgbcgccg [2019-12-30]
OPR Extension: (Free Avira Phantom VPN – Unblock Websites) - C:\Users\wobro\AppData\Roaming\Opera Software\Opera Stable\Extensions\pcgkmkjdikhiodinhloioejnpjgmfigd [2019-12-30]

==================== Dienste (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 SonosLibraryService; C:\Program Files (x86)\Sonos\SonosLibraryService.exe [28160 2020-09-09] () [Datei ist nicht signiert]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe [2467088 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe [128376 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert]
R3 GeneStor; C:\WINDOWS\System32\drivers\GeneStor.sys [181824 2019-12-27] (GENESYS LOGIC, INC. -> Genesys Logic)
S3 optousb; C:\WINDOWS\system32\DRIVERS\optousb.sys [27264 2013-03-11] (Microsoft Windows Hardware Compatibility Publisher -> OPTO ELECTRONICS CO.,LTD.)
S3 optovcm; C:\WINDOWS\system32\DRIVERS\optovcm.sys [34432 2013-03-11] (Microsoft Windows Hardware Compatibility Publisher -> OPTO ELECTRONICS CO.,LTD.)
R1 RrNetCapFilterDriver; C:\WINDOWS\system32\DRIVERS\RrNetCapFilterDriver.sys [34608 2019-01-30] (Audials AG -> Audials AG)
S3 tbhsd; C:\WINDOWS\system32\drivers\tbhsd.sys [57648 2019-01-30] (Audials AG -> RapidSolution Software AG)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-11-06] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429288 2020-11-06] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2020-11-06] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat (erstellte) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2020-11-08 11:47 - 2020-11-08 11:48 - 000011338 _____ C:\Users\wobro\Desktop\FRST.txt
2020-11-08 11:43 - 2020-11-08 11:47 - 001283661 _____ C:\Users\wobro\Desktop\Search.txt
2020-11-08 11:12 - 2020-11-08 11:12 - 000000008 __RSH C:\ProgramData\ntuser.pol
2020-11-08 11:11 - 2020-11-08 11:41 - 000003282 _____ C:\Users\wobro\Desktop\Fixlog.txt
2020-11-08 09:47 - 2020-11-08 11:48 - 000000000 ____D C:\FRST
2020-11-08 09:47 - 2020-11-08 09:46 - 002298368 _____ (Farbar) C:\Users\wobro\Desktop\FRST64.exe
2020-11-08 09:41 - 2020-11-08 09:41 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-11-08 09:41 - 2020-11-08 09:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2020-11-08 09:40 - 2020-11-08 11:06 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-11-07 09:18 - 2020-11-07 09:18 - 000001083 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2020-11-07 09:18 - 2020-11-07 09:18 - 000001083 _____ C:\ProgramData\Desktop\Revo Uninstaller.lnk
2020-11-07 09:18 - 2020-11-07 09:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2020-11-07 09:18 - 2020-11-07 09:18 - 000000000 ____D C:\Program Files\VS Revo Group
2020-11-07 08:52 - 2020-11-07 08:52 - 001098933 _____ C:\Users\wobro\Downloads\eprimo_nachricht_18018084.pdf
2020-11-05 21:52 - 2020-11-05 21:52 - 000062047 _____ C:\Users\wobro\Downloads\Briefmarken.1Stk.05.11.2020_2152.pdf
2020-11-05 21:49 - 2020-11-05 21:49 - 000042537 _____ C:\Users\wobro\Downloads\TicketReturn.pdf
2020-11-03 11:47 - 2020-11-03 11:47 - 000051105 _____ C:\Users\wobro\Downloads\Konto_755079-Auszug_2020_010.PDF
2020-10-23 16:32 - 2020-10-23 16:32 - 000078124 _____ C:\Users\wobro\Downloads\20201023_5490_9047_Robin_Weber.PDF
2020-10-18 15:50 - 2020-10-18 15:50 - 000045268 _____ C:\Users\wobro\Downloads\Briefmarken.1Stk.18.10.2020_1650.pdf
2020-10-17 08:17 - 2020-10-17 08:17 - 032612336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 031598928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 026273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 024264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 023448576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 019870208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 018767360 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 018080768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 011498496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 009499136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 008897752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 008226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007765504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007616000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007534680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 007099904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 006421504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 005998616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 005820416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 005337504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004828672 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004783832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004523008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004433640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004363840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004314624 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004281856 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 004275712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 003664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 003376840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 003335680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-10-17 08:17 - 2020-10-17 08:17 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-10-17 08:17 - 2020-10-17 08:17 - 002689024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002520056 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002425144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002398720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 002267424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001812872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001721856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001681408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001618152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001557816 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 001545848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001541224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001449472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001418752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001344512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001342976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001255744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 001238528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001234432 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 001185864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001062400 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 001003336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000977920 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000961704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000920888 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000884736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000863744 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000837120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000805168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000804352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000800072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000773712 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000760640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000747312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000688960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000688128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000684832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000627712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000607336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000578424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000547328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000530912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000521096 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmdial32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000482304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000416864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000413232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000407872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizeng.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000377344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000329528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PktMon.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000329504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000303288 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.FileExplorer.Common.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000275288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shlwapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-10-17 08:17 - 2020-10-17 08:17 - 000224576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000218936 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mlang.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-10-17 08:17 - 2020-10-17 08:17 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\net1.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.HardwareId.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netprofm.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000171568 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000171440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xmllite.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupcln.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000166280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasman.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\net1.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000143056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000142008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000135496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxlib.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvEmulation.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\logman.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000118584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\migisol.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000117056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000111024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\provmigrate.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000104248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PktMon.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2020-10-17 08:17 - 2020-10-17 08:17 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logman.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000095552 _____ (Microsoft Corporation) C:\WINDOWS\system32\vid.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000095024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edputil.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000093112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2020-10-17 08:17 - 2020-10-17 08:17 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpnsp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbssysprep.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MuiUnattend.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spinf.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\auditpolcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provmigrate.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pnrpnsp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MitigationConfiguration.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntlanman.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptext.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\auditpolcore.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000058848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000057144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmLpac.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtutils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\relog.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\typeperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.SecurityMitigationsBroker.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\relog.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapprovp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\typeperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\auditpol.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.SecurityMitigationsBroker.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000039720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iri.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000037688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininitext.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dusmapi.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credui.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winrnr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\auditpol.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpupdate.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000027320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\version.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\drprov.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\npmproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hid.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiougc.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpupdate.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\linkinfo.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secur32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscdll.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskperf.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davhlpr.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000021312 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ktmw32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmproxy.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drprov.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EsdSip.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmsprep.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wowreg32.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2020-10-17 08:17 - 2020-10-17 08:17 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmiso8601utils.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000009279 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-10-17 08:17 - 2020-10-17 08:17 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\normaliz.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3r.dll
2020-10-17 08:17 - 2020-10-17 08:17 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 017542144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 014758400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 010841400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 010336904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 008009880 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 007986616 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 007632808 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 007266128 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006365280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006204928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006195712 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 006070904 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005998616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005871560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005783288 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005431000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005371544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 005057024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004752896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004732928 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004645368 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004629320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 004590560 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 004517376 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004025344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Controls.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 004012688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 003917824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003893248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003858944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003821072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003815936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 003811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003779392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 003750912 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003706880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003537520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003506480 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003493888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Controls.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003436544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003386368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003307008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003305984 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003232056 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 003134464 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 003066880 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002983736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 002978816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002942976 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 002920304 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002873344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002827776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002809776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002757120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 002648576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002634112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002621720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002607104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002592056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002568704 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002541568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002503520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002485928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002451968 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002428416 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002377728 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 002322304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002318336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002250240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002206208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002189824 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002179584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002178600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002107872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002104320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002024248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 002007352 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001978664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001963752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001963712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001954816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001952256 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001932760 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001883696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001871272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001837568 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001836544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001827840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001827128 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001822256 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-10-17 08:16 - 2020-10-17 08:16 - 001784480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001765888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001765184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001751952 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001730048 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001715200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001695760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001695728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001673728 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001663136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001650176 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001641960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001598032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001590072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001563520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001554624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001531904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001526272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001515520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001509728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001478464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 001468928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001456640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001450304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001434624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001414656 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001411552 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001400208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001393472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-10-17 08:16 - 2020-10-17 08:16 - 001391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001389352 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001361920 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001360936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001337696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001333248 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001330688 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001324032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001315640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001280312 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001277952 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001276928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001255424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001253624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001240064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001237536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001228800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001212696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001212232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001210120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001198296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 001192096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001182520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001181208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2020-10-17 08:16 - 2020-10-17 08:16 - 001160192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001148416 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001146368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001141984 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001140736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001137472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001128536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001111040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001108288 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001104896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001092392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001089856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 001070400 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001068640 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001068352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 001047432 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001044880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001042432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001033496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001025768 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001021096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001011768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001001984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 001000408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000995128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Facilitator.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000994256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000988008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000979768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000979272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000978768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000972288 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000969728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000966864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000964264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000956216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000942408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000939448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000937472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000934400 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000924528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000913776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000907776 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000907448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000903984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000891472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000885248 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000882136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000873272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000872776 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000860672 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000859400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000857088 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000852288 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000844984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000843896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000843264 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000831032 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000828432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000821056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000809272 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000803328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000797448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000788168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000783992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000782656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000779360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000775480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000775256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000764976 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000763904 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000763328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000763192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000761280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000759296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000756680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000756656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000751496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000748360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000747520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000725600 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000708088 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000705560 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000705008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000698280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000686408 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000676096 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000672976 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatq.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000672064 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000660592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntimewindows.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000645120 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000644576 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\UiaManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000637360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000635832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000634760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000634696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000632544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntime.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000630096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000628120 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000624480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000606880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000605696 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000603464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000603448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000602432 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000602192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000598336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000594464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000586792 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000586048 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000585704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000583616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000583608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdial32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000578376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000577952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-10-17 08:16 - 2020-10-17 08:16 - 000560376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp110_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000548544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000546976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000539264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000537696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000529208 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000528904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000523712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000521016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UiaManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000508720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000507192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000504552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clbcatq.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000502584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-10-17 08:16 - 2020-10-17 08:16 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000495840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000488104 _____ (Microsoft Corporation) C:\WINDOWS\system32\coml2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000488064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000487048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000482104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000477512 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000475696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000474424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000473600 _____ (Microsoft Corporation) C:\WINDOWS\system32\HrtfApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000469920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
         

Alt 08.11.2020, 12:08   #15
wobrobber
 
Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Standard

Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen



FRST 2
Code:
ATTFilter
2020-10-17 08:16 - 2020-10-17 08:16 - 000468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000459264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000454968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000454016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000429712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000427200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000425272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-10-17 08:16 - 2020-10-17 08:16 - 000420936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000420456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000419432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000418800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000418416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000414200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000411448 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000410064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000408000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp110_win.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000403384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wbemcomn.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000401728 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000397728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000395592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShellCommonCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000389432 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000385240 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000384512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000383488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000382728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.FileExplorer.Common.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000377856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000376032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coml2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000374496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000374080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000374072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000371376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000361040 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000354344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000352784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000351200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HrtfApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000342424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shlwapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000337768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AarSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000333144 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000332600 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000326656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000318736 _____ (Microsoft Corporation) C:\WINDOWS\system32\capauthz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000311920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000305272 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000297984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000295464 _____ (Microsoft Corporation) C:\WINDOWS\system32\powrprof.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000293864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000293184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000288672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000287680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000287544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000286016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000271664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000270640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000268080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powrprof.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000260928 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000260816 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000259264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000258880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdscore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsldpc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000253008 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000252616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\capauthz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000249664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinREAgent.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mlang.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuceffects.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\fidocredprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000241144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreCommonProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000230904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000230728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000230392 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000229176 _____ (Microsoft Corporation) C:\WINDOWS\system32\convertvhd.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000228152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.System.UserProfile.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000225088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000219016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000218112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000216376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msls31.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000215352 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSrv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000213344 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000211736 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsldpc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000208696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000207608 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NetAdapterCx.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000207168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdscore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000207160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000203544 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000198792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB7.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000196784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000195232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000195136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000191656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntmarta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000190976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Winlangdb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000190040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fidocredprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000186472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000185912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000185448 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptnet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000181048 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000180040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000180032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000176656 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmidcom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000176448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000175608 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47mrm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000173016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuceffects.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageOverlayUtil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000171992 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000171024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000167888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000166200 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000165376 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000164232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000163216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000162704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161672 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000161608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pacer.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidpolicyconverter.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000160064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000160056 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000157024 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000155976 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000155960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000153376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000152904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntmarta.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000152376 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadWamExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000151864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000149272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DSCache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000147264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000147232 _____ (Microsoft Corporation) C:\WINDOWS\system32\cabinet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000147200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000146232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000146216 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\eShims.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTWorkQ.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000145208 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Winlangdb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000143096 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000141008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000141008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000139960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000137896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmidcom.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000136328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptnet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000134976 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000134800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LanguageOverlayUtil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000133744 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000133440 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000132736 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000130128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000128616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47mrm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSAssessment.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000126024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000122392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevDispItemProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcmapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000119608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadWamExtension.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cabinet.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000118584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000117800 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000117216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000116536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DSCache.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000115192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000115008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetDriverInstall.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2020-10-17 08:16 - 2020-10-17 08:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2020-10-17 08:16 - 2020-10-17 08:16 - 000111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000110008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkQoSPolicyCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000109504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000108352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000107416 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000107376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MuiUnattend.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000103288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuntimeBroker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2020-10-17 08:16 - 2020-10-17 08:16 - 000102720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevDispItemProvider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.ServiceHostBuilder.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000099656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\atl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdsapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097672 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000097088 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsCtfMonitor.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000096032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\spinf.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000095496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000093488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000092960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000090432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000090408 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcEpMap.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MitigationConfiguration.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000083744 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\samcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\colbact.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000082176 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\execmodelproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetDriverInstall.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\bfsvc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\deploymentcsps.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000076976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000076952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spopk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\djoin.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.ServiceHostBuilder.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncobjapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\TempSignedLicenseExchangeTask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsCtfMonitor.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000071784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcacli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070968 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samcli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NapiNSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000069752 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068408 _____ (Microsoft Corporation) C:\WINDOWS\system32\virtdisk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptsp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\threadpoolwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\colbact.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wtsapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mskeyprotect.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000064824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000064072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PnPUnattend.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000061960 _____ (Microsoft Corporation) C:\WINDOWS\system32\coloradapterclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000061752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguageProfileCallback.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000060464 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000059448 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncobjapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc_os.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000058176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\virtdisk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\tokenbinding.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000057664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000057360 _____ (Microsoft Corporation) C:\WINDOWS\system32\svchost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000056312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\threadpoolwinrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagnosticdataquery.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcacli.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NapiNSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\amsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mmcss.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000052672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel.appcore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wtsapi32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ResourcePolicyClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerSvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000051120 _____ (Microsoft Corporation) C:\WINDOWS\system32\iri.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msasn1.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000050104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sfc_os.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mskeyprotect.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmiclnt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrnr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Websocket.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IndirectKmd.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000047016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\svchost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000046392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coloradapterclient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguageProfileCallback.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\execmodelproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000042328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000041816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\atlthunk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmiclnt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tokenbinding.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\hid.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netutils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Websocket.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32topl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000035640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000034152 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnscacheugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000033064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltLib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\linkinfo.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000031528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptbase.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031496 _____ (Microsoft Corporation) C:\WINDOWS\system32\version.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltMC.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.TimeBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsparse.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscdll.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030480 _____ (Microsoft Corporation) C:\WINDOWS\system32\avrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxstrace.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000029456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsrole.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\secur32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000028360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32topl.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\davhlpr.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000027848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fltLib.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000027336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\avrt.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbtugc.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000026608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IntelTA.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000025848 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\httpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.TimeBroker.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ktmw32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fltMC.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000024296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerEnc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000024288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsrole.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregtask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsparse.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemEventsBrokerClient.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mobilenetworking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000021312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000021280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidtel.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000020640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerEnc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshqos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasacd.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000020160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000019776 _____ (Microsoft Corporation) C:\WINDOWS\system32\backgroundTaskHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000019256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dllhost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000019144 _____ (Microsoft Corporation) C:\WINDOWS\system32\psapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsregtask.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2020-10-17 08:16 - 2020-10-17 08:16 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mobilenetworking.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wowreg32.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000017728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\backgroundTaskHost.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000017600 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrss.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000017016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshqos.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmsgapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmiso8601utils.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsiproxy.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpapi.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSHTCPIP.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wship6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfoext.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000011784 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000011272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sfc.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wship6.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSHTCPIP.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe
2020-10-17 08:16 - 2020-10-17 08:16 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDUS.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDUS.DLL
2020-10-17 08:16 - 2020-10-17 08:16 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\normaliz.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shimeng.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneServiceRes.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2020-10-17 08:16 - 2020-10-17 08:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3r.dll
2020-10-13 18:03 - 2020-10-13 18:03 - 000062054 _____ C:\Users\wobro\Downloads\Briefmarken.1Stk.13.10.2020_1903.pdf
2020-10-11 17:33 - 2020-11-04 17:36 - 000000000 ____D C:\AdwCleaner
2020-10-11 09:19 - 2020-10-11 09:19 - 008447152 _____ (Malwarebytes) C:\Users\wobro\Desktop\adwcleaner_8.0.8.exe

==================== Ein Monat (geänderte) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2020-11-08 11:46 - 2020-10-04 12:03 - 001722998 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-11-08 11:46 - 2019-12-07 15:50 - 000743546 _____ C:\WINDOWS\system32\perfh007.dat
2020-11-08 11:46 - 2019-12-07 15:50 - 000149968 _____ C:\WINDOWS\system32\perfc007.dat
2020-11-08 11:46 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2020-11-08 11:42 - 2020-10-04 11:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-11-08 11:42 - 2020-10-04 11:53 - 000008192 ___SH C:\DumpStack.log.tmp
2020-11-08 11:42 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-11-08 11:42 - 2019-01-04 19:36 - 000000000 ____D C:\Users\wobro\AppData\LocalLow\Mozilla
2020-11-08 11:42 - 2019-01-04 19:09 - 000000000 __SHD C:\Users\wobro\IntelGraphicsProfiles
2020-11-08 11:41 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-11-08 11:26 - 2019-01-04 20:55 - 000000000 ____D C:\ProgramData\Sonos,_Inc
2020-11-08 11:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2020-11-08 11:11 - 2018-09-29 20:03 - 000000000 ____D C:\ProgramData\Package Cache
2020-11-08 11:11 - 2018-04-12 00:38 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2020-11-08 11:09 - 2019-01-04 19:57 - 000000000 ____D C:\Users\wobro\AppData\Local\Google
2020-11-08 11:09 - 2019-01-04 19:57 - 000000000 ____D C:\Program Files (x86)\Google
2020-11-08 10:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-11-08 09:44 - 2019-02-06 20:32 - 000000000 ____D C:\ProgramData\Mozilla
2020-11-08 09:42 - 2018-09-29 20:39 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-11-08 09:41 - 2020-10-04 11:59 - 000003688 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-11-08 09:41 - 2020-10-04 11:59 - 000003464 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-11-08 09:41 - 2019-01-04 19:36 - 000000000 ____D C:\Users\wobro\AppData\Roaming\Mozilla
2020-11-08 09:41 - 2019-01-04 19:36 - 000000000 ____D C:\Users\wobro\AppData\Local\Mozilla
2020-11-08 08:46 - 2020-10-04 10:39 - 000000699 _____ C:\Users\wobro\Desktop\ESET Online Scanner.lnk
2020-11-08 08:46 - 2020-10-04 10:38 - 000000827 _____ C:\Users\wobro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-11-07 09:47 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-11-07 09:43 - 2020-10-01 18:11 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2020-11-07 08:45 - 2020-10-04 11:53 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-11-06 18:47 - 2019-01-04 21:03 - 000000000 ____D C:\Users\wobro\AppData\Local\Spotify
2020-11-06 18:34 - 2019-01-04 20:46 - 000000000 ____D C:\Users\wobro\AppData\Roaming\Spotify
2020-11-06 08:47 - 2018-09-29 19:58 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-11-04 17:28 - 2020-10-04 10:38 - 015012440 _____ (ESET spol. s r.o.) C:\Users\wobro\Downloads\esetonlinescanner.exe
2020-11-04 17:23 - 2019-01-06 15:23 - 000000000 ____D C:\Users\wobro\AppData\Roaming\vlc
2020-11-04 10:12 - 2020-04-18 13:22 - 000000000 ____D C:\Users\wobro\AppData\Roaming\TIDAL
2020-11-01 16:25 - 2020-10-04 01:21 - 000000000 ___DC C:\WINDOWS\Panther
2020-10-30 15:02 - 2019-01-04 19:54 - 000795000 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2020-10-29 16:09 - 2020-10-04 11:59 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1677736377-56833510-259484278-1001
2020-10-29 16:09 - 2020-10-04 10:54 - 000002424 _____ C:\Users\wobro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-10-29 16:09 - 2019-01-04 19:11 - 000000000 ___RD C:\Users\wobro\OneDrive
2020-10-23 18:44 - 2020-04-18 13:22 - 000000000 ____D C:\Users\wobro\AppData\Local\TIDAL
2020-10-17 10:04 - 2020-10-04 11:53 - 000284664 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2020-10-17 10:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-10-17 10:03 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2020-10-17 08:19 - 2019-12-07 15:54 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2020-10-17 08:19 - 2019-12-07 15:54 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2020-10-17 08:19 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp

==================== SigCheck ============================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

==================== Ende von FRST.txt ========================
         
Addition

Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 06-11-2020
durchgeführt von wobro (08-11-2020 11:48:43)
Gestartet von C:\Users\wobro\Desktop
Windows 10 Home Version 2004 19041.572 (X64) (2020-10-04 11:00:01)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-1677736377-56833510-259484278-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1677736377-56833510-259484278-503 - Limited - Disabled)
Gast (S-1-5-21-1677736377-56833510-259484278-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1677736377-56833510-259484278-504 - Limited - Disabled)
wobro (S-1-5-21-1677736377-56833510-259484278-1001 - Administrator - Enabled) => C:\Users\wobro

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

7-Zip 18.06 (x64) (HKLM\...\7-Zip) (Version: 18.06 - Igor Pavlov)
Audials (HKLM-x32\...\{77CED785-A1A4-4F4F-B0DD-4FC2F33F6A56}) (Version: 19.1.6.0 - Audials AG)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Canon MP270 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP270_series) (Version:  - )
CyberLink PowerDVD 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.8216.01 - CyberLink Corp.)
Epic Games Launcher (HKLM-x32\...\{50D3E17D-0AFC-4617-AB00-DDE3099545FA}) (Version: 1.1.183.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1818.12.0.1130 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.4973 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 16.0.2.1086 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.49.166.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{df682aff-4294-4ad1-aaa7-276931d5781f}) (Version: 1.49.166.0 - Intel Corporation) Hidden
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00001050-0200-1031-84C8-B8D95FA3C8C3}) (Version: 20.50.1 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{55d73ea7-6354-42db-8831-02d048ae57f8}) (Version: 10.1.17541.8066 - Intel(R) Corporation) Hidden
Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{2D79E334-B178-45B9-A2A6-7A60A084C268}) (Version: 16.8.0.1000 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{1e9d8bcf-827c-4e01-a82f-86e201de2a84}) (Version: 20.50.3 - Intel Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 85.0.564.68 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.137.99 - )
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.7969.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\OneDriveSetup.exe) (Version: 20.169.0823.0008 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 82.0.2 (x64 de) (HKLM\...\Mozilla Firefox 82.0.2 (x64 de)) (Version: 82.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 82.0.2 - Mozilla)
Mozilla Thunderbird 78.4.1 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 78.4.1 (x86 de)) (Version: 78.4.1 - Mozilla)
Opticon USB Drivers Installer (HKLM-x32\...\Opticon USB Installer) (Version:  - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.26.328.2018 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8425 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.1.0 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.1.0 - VS Revo Group, Ltd.)
ScanClient 3.4 (HKLM-x32\...\ScanClient_is1) (Version:  - GfK SE)
Sonos Controller (HKLM-x32\...\{7BBA9BF8-05DF-47D8-8880-82A9B99505B9}) (Version: 57.3.81090 - Sonos, Inc.)
Spotify (HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\Spotify) (Version: 1.1.45.621.gdddebadc - Spotify AB)
TIDAL (HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\TIDAL) (Version: 2.23.0 - TIDAL Music AS)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{B2E25355-C24E-4E7D-8AD3-455D59810838}) (Version: 2.57.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-3) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-4) (Version: 1.0.65.1 - LunarG, Inc.) Hidden

Packages:
=========
Acer Collection S -> C:\Program Files\WindowsApps\AcerIncorporated.AcerCollectionS_1.0.3004.0_x64__48frkmn4z8aw4 [2019-01-04] (Acer Incorporated)
Acer Product Registration -> C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3013.0_x64__48frkmn4z8aw4 [2019-12-10] (Acer Incorporated)
Care Center -> C:\Program Files\WindowsApps\AcerIncorporated.AcerCareCenter_3.0.3007.0_x64__48frkmn4z8aw4 [2018-09-29] (Acer Incorporated)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12109.10002.53004.0_x64__nzyj5cx40ttqa [2020-10-22] (Apple Inc.) [Startup Task]
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-13] (Microsoft Corporation) [MS Ad]
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.13328.20292.0_x86__8wekyb3d8bbwe [2020-10-31] (Microsoft Corporation)
Movie & Audio Studio -> C:\Program Files\WindowsApps\MAGIXSoftwareGmbH.MovieAudioStudio_1.1.4.0_x64__awcgk3qbzve1y [2018-09-29] (MAGIX Software GmbH)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2020-07-20] (Netflix, Inc.)
PhotoDirector for acer -> C:\Program Files\WindowsApps\CyberLinkCorp.ac.PhotoDirectorforacerDesktop_8.0.5229.0_x64__ypz87dpxkv292 [2019-06-12] (CYBERLINK COM CORP)
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_3.21.1.0_x64__nfy108tqq3p12 [2020-08-26] (Thumbmunkeys Ltd)
PowerDirector for acer -> C:\Program Files\WindowsApps\CyberLinkCorp.ac.PowerDirectorforacerDesktop_14.0.4304.0_x64__ypz87dpxkv292 [2018-09-29] (CYBERLINK COM CORP)
QuickAccess -> C:\Program Files\WindowsApps\AcerIncorporated.QuickAccess_3.0.3009.0_x64__48frkmn4z8aw4 [2019-10-05] (Acer Incorporated)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.2.169.0_x64__dt26b99r8h8gj [2019-06-17] (Realtek Semiconductor Corp)
User Experience Improvement Program -> C:\Program Files\WindowsApps\AcerIncorporated.UserExperienceImprovementProgram_4.0.3002.0_x64__48frkmn4z8aw4 [2019-01-04] (Acer Incorporated)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

ShellIconOverlayIdentifiers: [  OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [Datei ist nicht signiert] [Datei wird verwendet]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [Datei ist nicht signiert] [Datei wird verwendet]
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_3156b3035fd88b4d\igfxDTCM.dll [2018-03-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [Datei ist nicht signiert]

==================== Codecs (Nicht auf der Ausnahmeliste) ====================

==================== Verknüpfungen & WMI ========================

==================== Geladene Module (Nicht auf der Ausnahmeliste) =============

2020-11-08 09:41 - 2020-11-08 11:06 - 000228352 _____ () [Datei ist nicht signiert] C:\Program Files\Mozilla Firefox\zlib1.dll
2018-12-03 21:19 - 2018-12-03 21:19 - 000126976 _____ (Intel Corporation) [Datei ist nicht signiert] C:\Program Files\Intel\OptaneShellExtensions\iaStorAfsServiceApi.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================

==================== Internet Explorer (Nicht auf der Ausnahmeliste) ==========

HKU\S-1-5-21-1677736377-56833510-259484278-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer17win10.msn.com/?pc=ACTE
HKU\S-1-5-21-1677736377-56833510-259484278-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE

==================== Hosts Inhalt: =========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2018-04-12 00:38 - 2020-11-08 11:11 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1       localhost

2019-07-23 23:56 - 2019-07-23 23:57 - 000000445 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Andere Bereiche ===========================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\nodejs\
HKU\S-1-5-21-1677736377-56833510-259484278-1001\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
 ist aktiviert.

Network Binding:
=============
Ethernet: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) 
WLAN: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) 

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

HKLM\...\StartupApproved\Run: => "ACPW13DE"
HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\StartupApproved\Run: => "Amazon Photos"
HKU\S-1-5-21-1677736377-56833510-259484278-1001\...\StartupApproved\Run: => "ACDSeeCommanderPro13"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [TCP Query User{6068E772-BFEE-4C92-B7BF-1D6532A44414}C:\program files (x86)\sonos\sonos.exe] => (Allow) C:\program files (x86)\sonos\sonos.exe (Sonos, Inc. -> Sonos, Inc.)
FirewallRules: [UDP Query User{04766F7D-39E3-4059-88CC-A0534FE7428A}C:\program files (x86)\sonos\sonos.exe] => (Allow) C:\program files (x86)\sonos\sonos.exe (Sonos, Inc. -> Sonos, Inc.)

==================== Wiederherstellungspunkte =========================


==================== Fehlerhafte Geräte im Gerätemanager ============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Fehlereinträge in der Ereignisanzeige: ========================

Applikationsfehler:
==================
Error: (11/08/2020 11:42:31 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname DESKTOP-UG2PJTF.local already in use; will try DESKTOP-UG2PJTF-2.local instead

Error: (11/08/2020 11:42:31 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister    4 DESKTOP-UG2PJTF.local. Addr 192.168.2.110

Error: (11/08/2020 11:42:31 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.110:5353   16 DESKTOP-UG2PJTF.local. AAAA FD91:DAB6:A2B2:0001:CDB6:71AF:822B:FE6A

Error: (11/08/2020 11:42:31 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Resetting to Probing:   16 DESKTOP-UG2PJTF.local. AAAA FE80:0000:0000:0000:CDB6:71AF:822B:FE6A

Error: (11/08/2020 11:42:31 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.110:5353   16 DESKTOP-UG2PJTF.local. AAAA FD91:DAB6:A2B2:0001:CDB6:71AF:822B:FE6A

Error: (11/08/2020 11:42:31 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Resetting to Probing:    4 DESKTOP-UG2PJTF.local. Addr 192.168.2.110

Error: (11/08/2020 11:42:31 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.110:5353   16 DESKTOP-UG2PJTF.local. AAAA FD91:DAB6:A2B2:0001:CDB6:71AF:822B:FE6A

Error: (11/08/2020 11:12:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname DESKTOP-UG2PJTF.local already in use; will try DESKTOP-UG2PJTF-2.local instead


Systemfehler:
=============
Error: (11/08/2020 11:12:05 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\system32\IntelWifiIhv08.dll

Error: (11/08/2020 11:12:05 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\system32\IntelWifiIhv08.dll

Error: (11/08/2020 11:12:03 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\system32\IntelWifiIhv08.dll

Error: (11/08/2020 11:11:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Installer" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (11/08/2020 11:11:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (11/08/2020 11:11:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) Management and Security Application Local Management Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (11/08/2020 11:11:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (11/08/2020 11:11:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.


Windows Defender:
===================================
Date: 2020-11-07 09:07:31.6940000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {B67A64C1-F5D5-4762-A973-B54B70774B12}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-11-04 17:08:33.7710000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {B1376BB6-A7E6-4C91-ADC7-D64D4718364C}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-11-01 20:18:11.0120000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {859604C3-0355-4EAF-A893-44150BD74E85}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-10-31 17:48:15.3770000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {4A006C2D-DE53-406E-8DA1-B488B2D74611}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

Date: 2020-10-30 20:29:48.1600000Z
Description: 
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {C08BB3AF-CB38-46A2-9DD0-9D76C43380EF}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM

==================== Speicherinformationen =========================== 

BIOS: American Megatrends Inc R01-A3 05/16/2018
Hauptplatine: Acer Aspire XC-885
Prozessor: Intel(R) Core(TM) i3-8100 CPU @ 3.60GHz
Prozentuale Nutzung des RAM: 47%
Installierter physikalischer RAM: 8078.81 MB
Verfügbarer physikalischer RAM: 4225.03 MB
Summe virtueller Speicher: 9358.81 MB
Verfügbarer virtueller Speicher: 5797.47 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:118.12 GB) (Free:46.35 GB) NTFS
Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:855.74 GB) NTFS

\\?\Volume{93b290e0-403a-46a7-9fd6-06b31e72a107}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.56 GB) NTFS
\\?\Volume{c9f9707f-6bcc-49cc-8cfc-d917d3b36835}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32

==================== MBR & Partitionstabelle ====================

==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 65F4191F)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 9397DC32)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt =======================
         

Thema geschlossen

Themen zu Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen
antivir, automatisch, avira, avira antivir, computer, deaktivieren, defender, entfernen, eset, firefox, forum, infos, log, namen, neue, neuen, neustart, nichts, online, programme, scan, scanner, schließen, windows, öffnen



Ähnliche Themen: Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen


  1. Malwarebytes-Fund "Adware.Appearch" lässt sich nicht dauerhaft entfernen
    Plagegeister aller Art und deren Bekämpfung - 12.09.2018 (16)
  2. Adware lässt sich nicht entfernen
    Log-Analyse und Auswertung - 21.05.2016 (4)
  3. Windows 10: DNS Unlocker Adware lässt sich nicht entfernen
    Log-Analyse und Auswertung - 15.02.2016 (23)
  4. DownloadProtect Extension Version 1.0.0.1 lasst sich nicht vom MS Internet Explorer entfernen
    Log-Analyse und Auswertung - 17.08.2015 (34)
  5. Windows 7: TremendousCoupon lässt sich nicht entfernen [Malware/Adware]
    Log-Analyse und Auswertung - 01.08.2015 (17)
  6. Adware lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 26.12.2014 (1)
  7. Download Protect 2.2.5 (Add-on) lässt sich nicht dauerhaft aus Firefox entfernen
    Log-Analyse und Auswertung - 01.10.2014 (29)
  8. DownloadProtect 2.2.1 lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 20.07.2014 (7)
  9. Windows 8.1 Adware leitet um und lässt sich nicht entfernen
    Log-Analyse und Auswertung - 12.07.2014 (24)
  10. Virus lässt sich nicht dauerhaft entfernen trotz Malware Progr. - HKCU/Software/VB an VBA Program settings/SrvID
    Plagegeister aller Art und deren Bekämpfung - 20.01.2013 (20)
  11. Infizierte Datei lässt sich nicht dauerhaft entfernen
    Plagegeister aller Art und deren Bekämpfung - 14.09.2012 (23)
  12. Adware.MyWay lässt sich nicht entfernen
    Log-Analyse und Auswertung - 28.02.2009 (2)
  13. Adware.Webprefix lässt sich nicht entfernen
    Mülltonne - 26.03.2008 (0)
  14. Adware.Win32.Stud.a <<>> lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 01.08.2007 (3)
  15. Build.exe Adware lässt sich nicht entfernen
    Log-Analyse und Auswertung - 04.04.2007 (7)
  16. Adware lässt sich nicht entfernen (2mal)
    Plagegeister aller Art und deren Bekämpfung - 06.10.2005 (8)
  17. Trojan-PSW.WIN32.Agent.am lässt sich nicht dauerhaft entfernen
    Plagegeister aller Art und deren Bekämpfung - 09.06.2005 (2)

Zum Thema Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen - Hallo liebe Community, seit einigen Tagen findet der AdwCleaner immer wieder die o.g. Bedrohung. Nach Löschung und Neustart ist der Computer nach einem neuen Suchlauf direkt nach dem Neustart sauber. - Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen...
Archiv
Du betrachtest: Windows 10 - Adware.DownloadProtect lässt sich nicht dauerhaft entfernen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.